cybersecurity

Open-source malware zeroes in on developer environments

Open-source malware zeroes in on developer environments 2026-01-29 at 08:36 By Anamarija Pogorelec Open source malware activity during 2025 concentrated on a single objective: executing code inside developer environments, according to Sonatype. The focus reflected a broader shift in supply chain attacks away from end users and toward the tools, machines, and pipelines used to […]

Open-source malware zeroes in on developer environments Read More »

Hottest cybersecurity open-source tools of the month: January 2026

Hottest cybersecurity open-source tools of the month: January 2026 2026-01-29 at 08:06 By Anamarija Pogorelec This month’s roundup features exceptional open-source cybersecurity tools that are gaining attention for strengthening security across various environments. OpenAEV: Open-source adversarial exposure validation platform OpenAEV is an open source platform designed to plan, run, and review cyber adversary simulation campaigns […]

Hottest cybersecurity open-source tools of the month: January 2026 Read More »

A practical take on cyber resilience for CISOs

A practical take on cyber resilience for CISOs 2026-01-29 at 08:06 By Help Net Security In this Help Net Security video, Shebani Baweja, CISO for Consumer, Private, Wealth & Business Banking at Standard Chartered, explains how security leaders should think about cyber resilience. She outlines why preparation for extreme events matters as much as day […]

A practical take on cyber resilience for CISOs Read More »

What motivates hackers and what makes them walk away

What motivates hackers and what makes them walk away 2026-01-29 at 07:02 By Anamarija Pogorelec Most hackers spend more time learning, testing, and comparing notes than breaking into systems. The work often happens alone or in small groups, shaped by curiosity, persistence, and a habit of examining how systems behave. Bugcrowd examined who these security […]

What motivates hackers and what makes them walk away Read More »

OPNsense 26.1 brings updates to open-source firewall management

OPNsense 26.1 brings updates to open-source firewall management 2026-01-29 at 01:17 By Anamarija Pogorelec OPNsense, the open-source firewall and network security platform, reached version 26.1, adding a range of updates affecting management, traffic visibility, automation interfaces, and core services. Changes in firewall management and APIs Version 26.1, code-named Witty Woodpecker, introduces revisions to the firewall […]

OPNsense 26.1 brings updates to open-source firewall management Read More »

CERT UEFI Parser: Open-source tool exposes UEFI architecture to uncover vulnerabilities

CERT UEFI Parser: Open-source tool exposes UEFI architecture to uncover vulnerabilities 2026-01-28 at 09:10 By Sinisa Markovic CERT UEFI Parser, a new open-source security analysis tool from the CERT Coordination Center has been released to help researchers and defenders examine the structure of Unified Extensible Firmware Interface (UEFI) software and identify classes of vulnerabilities that […]

CERT UEFI Parser: Open-source tool exposes UEFI architecture to uncover vulnerabilities Read More »

Grammarly and QuillBot are among widely used Chrome extensions facing serious privacy questions

Grammarly and QuillBot are among widely used Chrome extensions facing serious privacy questions 2026-01-28 at 08:15 By Anamarija Pogorelec A new study shows that some of the most widely used AI-powered browser extensions are a privacy risk. They collect lots of data and require a high level of browser access. The research was conducted by […]

Grammarly and QuillBot are among widely used Chrome extensions facing serious privacy questions Read More »

Why prevention-first secrets security will define enterprise scale: Learnings from a leading telecom

Why prevention-first secrets security will define enterprise scale: Learnings from a leading telecom 2026-01-28 at 08:15 By Help Net Security Once a secret enters Git, it’s expensive to remediate. But the real problem runs deeper than cost. Grégory Maitrallain, Solution Architect at Orange Business, discovered this reality during their implementation: “Once a secret is pushed […]

Why prevention-first secrets security will define enterprise scale: Learnings from a leading telecom Read More »

Waiting for AI superintelligence? Don’t hold your breath

Waiting for AI superintelligence? Don’t hold your breath 2026-01-27 at 09:44 By Sinisa Markovic AI’s impact on systems, security, and decision-making is already permanent. Superintelligence, often referred to as artificial superintelligence (ASI), describes a theoretical stage in which AI capability exceeds human cognitive performance across domains. Whether current systems are progressing toward cybersecurity superintelligence remains […]

Waiting for AI superintelligence? Don’t hold your breath Read More »

When open science meets real-world cybersecurity

When open science meets real-world cybersecurity 2026-01-27 at 09:44 By Mirko Zorz Scientific research environments are built for openness and collaboration, often prioritizing long-term discovery over traditional enterprise security. In this Help Net Security interview, Matthew Kwiatkowski, CISO at Fermilab, America’s particle physics and accelerator laboratory, discusses where cybersecurity blind spots emerge, why availability can […]

When open science meets real-world cybersecurity Read More »

AI’s appetite for data is testing enterprise guardrails

AI’s appetite for data is testing enterprise guardrails 2026-01-27 at 08:18 By Anamarija Pogorelec Privacy programs are taking on more operational responsibility across the enterprise. A new Cisco global benchmark study shows expanding mandates, rising investment, and sustained pressure around data quality, accountability, and cross-border data management tied to AI systems. Privacy programs grow with […]

AI’s appetite for data is testing enterprise guardrails Read More »

Inside Microsoft’s veteran-to-tech workforce pipeline

Inside Microsoft’s veteran-to-tech workforce pipeline 2026-01-26 at 12:12 By Zeljka Zorz The technology workforce is changing, and military veterans are increasingly being recognized as one of the industry’s most valuable and dependable talent pools. In this Help Net Security interview, Chris Cortez, Vice President of Military Affairs at Microsoft and longtime leader of the Microsoft […]

Inside Microsoft’s veteran-to-tech workforce pipeline Read More »

Incident response lessons learned the hard way

Incident response lessons learned the hard way 2026-01-26 at 07:36 By Help Net Security In this Help Net Security video, Ryan Seymour, VP, Consulting and Education at ConnectSecure, shares lessons from more than two decades in cybersecurity incident response. He explains why many response failures are set in motion long before an attack begins. The […]

Incident response lessons learned the hard way Read More »

Exposed training apps are showing up in active cloud attacks

Exposed training apps are showing up in active cloud attacks 2026-01-22 at 09:06 By Sinisa Markovic Security teams often spin up vulnerable applications for demos, training, or internal testing. A recent Pentera research report documents how those environments are being left exposed on the public internet and actively exploited. The research focuses on intentionally vulnerable […]

Exposed training apps are showing up in active cloud attacks Read More »

Unbounded AI use can break your systems

Unbounded AI use can break your systems 2026-01-22 at 08:01 By Help Net Security In this Help Net Security video, James Wickett, CEO of DryRun Security, explains cyber risks many teams underestimate as they add AI to products. He focuses on how fast LLM features are pushed into live applications without limits or guardrails. The […]

Unbounded AI use can break your systems Read More »

The internet’s oldest trust mechanism is still one of its weakest links

The internet’s oldest trust mechanism is still one of its weakest links 2026-01-22 at 07:23 By Anamarija Pogorelec Attackers continue to rely on domain names as an entry point into enterprise systems. A CSC domain security study finds that large organizations leave this part of their attack surface underprotected, even as attacks become more frequent. […]

The internet’s oldest trust mechanism is still one of its weakest links Read More »

macOS Tahoe improves privacy and communication safety

macOS Tahoe improves privacy and communication safety 2026-01-22 at 03:41 By Anamarija Pogorelec macOS Tahoe privacy and security features focus on screening unwanted contact, limiting tracking, and keeping more decisions on the device. Most updates run quietly in the background and require little setup. Built-in filtering for calls and messages Apple reduced exposure to social […]

macOS Tahoe improves privacy and communication safety Read More »

Pro-Russian hacktivist campaigns continue against UK organizations

Pro-Russian hacktivist campaigns continue against UK organizations 2026-01-21 at 12:00 By Sinisa Markovic The UK’s National Cyber Security Centre reports ongoing cyber operations by Russian-aligned hacktivist groups targeting organizations in the UK and abroad. NoName057(16) remains active In December 2025, the NCSC co signed an advisory warning that pro-Russian hacktivist groups were conducting cyber operations […]

Pro-Russian hacktivist campaigns continue against UK organizations Read More »

Cybercriminals speak the language young people trust

Cybercriminals speak the language young people trust 2026-01-21 at 08:30 By Sinisa Markovic Criminal groups actively recruit, train, and retain people in structured ways. They move fast, pay in crypto, and place no weight on age. Young people are dealing with a new kind of addiction. It isn’t drugs, alcohol, or gambling. It’s screens. Constant […]

Cybercriminals speak the language young people trust Read More »

Bandit: Open-source tool designed to find security issues in Python code

Bandit: Open-source tool designed to find security issues in Python code 2026-01-21 at 08:04 By Sinisa Markovic Bandit is an open-source tool that scans Python source code for security issues that show up in everyday development. Many security teams and developers use it as a quick way to spot risky coding patterns early in the […]

Bandit: Open-source tool designed to find security issues in Python code Read More »

Scroll to Top