cybersecurity

AI coding agents keep repeating decade-old security mistakes

AI coding agents keep repeating decade-old security mistakes 2026-03-13 at 08:01 By Anamarija Pogorelec Coding agents are now writing production features on real development teams, and a new report from DryRun Security shows that those agents introduce security vulnerabilities at a high rate across nearly every type of application they build. “AI coding agents can […]

AI coding agents keep repeating decade-old security mistakes Read More »

ENISA advisory examines package manager security risks

ENISA advisory examines package manager security risks 2026-03-12 at 15:24 By Anamarija Pogorelec Developers install external libraries with a single command, and that step can introduce more code than expected into a project environment. Dependency resolution inside package managers extends software supply chains across large collections of external components. ENISA’s Technical Advisory for Secure Use […]

ENISA advisory examines package manager security risks Read More »

Stop fixing OT security with IT thinking

Stop fixing OT security with IT thinking 2026-03-12 at 08:35 By Mirko Zorz In this Help Net Security interview, Ejona Preçi, Group CISO at Lindal Group, discusses the specific cybersecurity challenges in manufacturing environments. The conversation covers why standard IT security practices break down on shop floors, where PLCs and decade-old firmware were never designed […]

Stop fixing OT security with IT thinking Read More »

Does Anthropic deserve the trust of the cybersecurity community?

Does Anthropic deserve the trust of the cybersecurity community? 2026-03-12 at 08:35 By Help Net Security The cybersecurity industry runs on trust. The belief that when a vendor says they will behave a certain way, they will, that critical CVEs are in fact critical, or when companies say they’re GDPR compliant, they really are. But […]

Does Anthropic deserve the trust of the cybersecurity community? Read More »

Wireless vulnerabilities are doubling every few years

Wireless vulnerabilities are doubling every few years 2026-03-12 at 07:00 By Anamarija Pogorelec Wireless vulnerabilities are being disclosed at a rate that has no precedent in the fifteen-year history of systematic tracking. In 2025, researchers published 937 new wireless-related CVEs, an average of 2.5 per day, according to a threat report from Bastille Networks based […]

Wireless vulnerabilities are doubling every few years Read More »

Meta turns to AI to sniff out scams on Facebook, Messenger and WhatsApp

Meta turns to AI to sniff out scams on Facebook, Messenger and WhatsApp 2026-03-11 at 18:31 By Anamarija Pogorelec Meta’s new tools on Facebook, Messenger, and WhatsApp protect users from scams. They use advanced AI systems to analyze text, images, and surrounding context and identify sophisticated scam patterns. Facebook alerts for suspicious friend requests (Source: […]

Meta turns to AI to sniff out scams on Facebook, Messenger and WhatsApp Read More »

Zero trust, zero buzzwords: Here’s what it means

Zero trust, zero buzzwords: Here’s what it means 2026-03-11 at 09:21 By Help Net Security In this Help Net Security video, Murat Balaban, CEO of Zenarmor, breaks down zero trust and zero trust network access (ZTNA) without the buzzwords. The video covers why this approach matters, including the risk of lateral movement after a breach […]

Zero trust, zero buzzwords: Here’s what it means Read More »

Software vulnerabilities push credential abuse aside in cloud intrusions

Software vulnerabilities push credential abuse aside in cloud intrusions 2026-03-11 at 07:17 By Sinisa Markovic Cloud intrusions are unfolding on shorter timelines, with attackers leaning more on unpatched software and compromised identities. H2 2025 distribution of initial access vectors exploited in Google Cloud (Source: Google) Google Cloud’s Cloud Threat Horizons Report H1 2026 reflects incident […]

Software vulnerabilities push credential abuse aside in cloud intrusions Read More »

Bug bounties are broken, and the best security pros are moving on

Bug bounties are broken, and the best security pros are moving on 2026-03-10 at 08:33 By Anamarija Pogorelec Penetration testing engagements are organized as scheduled contracts with defined scope, set testing windows, and direct communication channels with client teams. Cobalt’s 2026 Pentester Profile Report describes growing preference for penetration testing as a service (PTaaS) and […]

Bug bounties are broken, and the best security pros are moving on Read More »

Airbus CSO on supply chain blind spots, space threats, and the limits of AI red-teaming

Airbus CSO on supply chain blind spots, space threats, and the limits of AI red-teaming 2026-03-10 at 08:30 By Mirko Zorz Pascal Andrei, CSO at Airbus, knows that the aerospace and defense sector is facing a threat environment that is evolving faster than most organizations can track. From sub-tier suppliers quietly becoming entry points for […]

Airbus CSO on supply chain blind spots, space threats, and the limits of AI red-teaming Read More »

The people behind cyber extortion are often in their forties

The people behind cyber extortion are often in their forties 2026-03-10 at 08:00 By Anamarija Pogorelec Many cybercrime investigations end with arrests or indictments that reveal little about the people behind the operations. When authorities do disclose demographic details, the pattern that emerges does not match the common assumption that cyber offenders are mostly very […]

The people behind cyber extortion are often in their forties Read More »

Australia, New Zealand, Tonga, Warn of Rising INC Ransom Attacks Targeting Pacific Networks

Australia, New Zealand, Tonga, Warn of Rising INC Ransom Attacks Targeting Pacific Networks 2026-03-09 at 15:37 By Ashish Khaitan Cybersecurity agencies across the Pacific region are sharing concerns about the ransomware group INC Ransom’s expanding activities and the growing influence of its affiliate network. A joint advisory issued by the Australian Cyber Security Centre (ACSC), National […]

Australia, New Zealand, Tonga, Warn of Rising INC Ransom Attacks Targeting Pacific Networks Read More »

No more soft play, President Trump warns in new cyber strategy

No more soft play, President Trump warns in new cyber strategy 2026-03-09 at 15:37 By Sinisa Markovic The White House released “President Trump’s Cyber Strategy for America,” a policy framework outlining the administration’s priorities for maintaining U.S. leadership in cyberspace. The seven-page cyber strategy commits to a coordinated, government-wide response to cyber threats that extends […]

No more soft play, President Trump warns in new cyber strategy Read More »

More AI tools, more burnout! New research explains why

More AI tools, more burnout! New research explains why 2026-03-09 at 12:58 By Anamarija Pogorelec Workflows built around multiple AI agents and constant tool switching are adding cognitive strain across large enterprises. A recent Harvard Business Review analysis describes this pattern as “AI brain fry,” a form of mental fatigue tied to intensive use and […]

More AI tools, more burnout! New research explains why Read More »

OpenAI joins the race in AI-assisted code security

OpenAI joins the race in AI-assisted code security 2026-03-09 at 11:59 By Sinisa Markovic OpenAI introduced Codex Security⁠, an AI agent that reviews codebases to find, verify, and help fix software vulnerabilities. The launch comes a few weeks after rival Anthropic unveiled its Claude Code Security tool. Codex Security (Source: OpenAI) The feature is available […]

OpenAI joins the race in AI-assisted code security Read More »

Decoding silence: How deaf and hard-of-hearing pros are breaking into cybersecurity

Decoding silence: How deaf and hard-of-hearing pros are breaking into cybersecurity 2026-03-09 at 09:01 By Mirko Zorz Stu Hirst was already a CISO when he started to go deaf. It was 2023, and the hearing loss crept in over months, enough for him to adapt, to lean on hearing aids and captions, to quietly reorganize […]

Decoding silence: How deaf and hard-of-hearing pros are breaking into cybersecurity Read More »

Open-source tool Sage puts a security layer between AI agents and the OS

Open-source tool Sage puts a security layer between AI agents and the OS 2026-03-09 at 08:06 By Anamarija Pogorelec Autonomous AI agents running on developer workstations execute shell commands, fetch URLs, and write files with little or no inspection of what they are doing. Open-source project Sage inserts an interception layer between an AI agent […]

Open-source tool Sage puts a security layer between AI agents and the OS Read More »

Product Showcase: Fing Desktop puts network visibility on your screen

Product Showcase: Fing Desktop puts network visibility on your screen 2026-03-09 at 07:48 By Anamarija Pogorelec Phones, laptops, smart TVs, cameras, and smart home equipment all use the same network. Knowing what’s connected helps users manage performance and security. Fing Desktop provides tools that identify devices, test connectivity, and analyze network activity. Account creation The […]

Product Showcase: Fing Desktop puts network visibility on your screen Read More »

New cyber module strengthens risk planning for health organizations

New cyber module strengthens risk planning for health organizations 2026-03-06 at 15:39 By Anamarija Pogorelec The Administration for Strategic Preparedness and Response’s (ASPR) new cybersecurity module in the Risk Identification and Site Criticality (RISC) 2.0 Toolkit helps organizations identify critical gaps, prioritize investments, and make informed decisions about risk mitigation to reduce disruptions to patient […]

New cyber module strengthens risk planning for health organizations Read More »

Microsoft working on Teams feature to help admins block unauthorized bots

Microsoft working on Teams feature to help admins block unauthorized bots 2026-03-06 at 15:39 By Sinisa Markovic Microsoft plans to add a new Teams feature that lets meeting admins identify and control third-party bots before they join. According to the Microsoft 365 Roadmap, the feature is scheduled to begin rolling out in May 2026 on […]

Microsoft working on Teams feature to help admins block unauthorized bots Read More »

Scroll to Top