Don’t miss

Product showcase: Penetration test reporting with PentestPad

Product showcase: Penetration test reporting with PentestPad 2026-01-16 at 09:57 By Help Net Security If you’ve done a pentest before, you know things can get messy fast. You start organized, but a few hours in, notes are scattered, screenshots have odd filenames, and small details get lost. PentestPad was built to help with that, not […]

Product showcase: Penetration test reporting with PentestPad Read More »

Sensitive data of Eurail, Interrail travelers compromised in data breach

Sensitive data of Eurail, Interrail travelers compromised in data breach 2026-01-15 at 17:04 By Zeljka Zorz A data breach at the Netherlands-based company that sells Eurail (Interrail) train passes resulted in the compromise of personal and sensitive information belonging to an as-yet unknown number of travelers. What data was accessed? Eurail B.V. operates on behalf

Sensitive data of Eurail, Interrail travelers compromised in data breach Read More »

PoC exploit for critical FortiSIEM vulnerability released (CVE-2025-64155)

PoC exploit for critical FortiSIEM vulnerability released (CVE-2025-64155) 2026-01-15 at 15:27 By Zeljka Zorz A critical vulnerability (CVE-2025-64155) in Fortinet’s FortiSIEM security platform has now been accompanied by publicly released proof-of-concept (PoC) exploit code, raising the urgency for organizations to patch immediately. About CVE-2025-64155 CVE-2025-64155 may allow unauthenticated, remote attackers to execute unauthorized code or

PoC exploit for critical FortiSIEM vulnerability released (CVE-2025-64155) Read More »

Microsoft shuts down RedVDS cybercrime subscription service tied to millions in fraud losses

Microsoft shuts down RedVDS cybercrime subscription service tied to millions in fraud losses 2026-01-15 at 10:22 By Sinisa Markovic Microsoft has announced a coordinated legal action in the United States and the United Kingdom to disrupt RedVDS, a global cybercrime subscription service tied to large-scale fraud losses. The effort forms part of a broader joint

Microsoft shuts down RedVDS cybercrime subscription service tied to millions in fraud losses Read More »

LinkedIn wants to make verification a portable trust signal

LinkedIn wants to make verification a portable trust signal 2026-01-15 at 08:34 By Mirko Zorz In this Help Net Security interview, Oscar Rodriguez, VP Trust Product at LinkedIn, discusses how verification is becoming a portable trust signal across the internet. He explains how LinkedIn is extending professional identity beyond its platform to address rising AI-driven

LinkedIn wants to make verification a portable trust signal Read More »

QR codes are getting colorful, fancy, and dangerous

QR codes are getting colorful, fancy, and dangerous 2026-01-15 at 08:04 By Sinisa Markovic QR codes have become a routine part of daily life, showing up on emails, posters, menus, invoices, and login screens. Security-savvy users have learned to treat links with caution, but QR codes still carry an assumption of safety. Researchers from Deakin

QR codes are getting colorful, fancy, and dangerous Read More »

The NSA lays out the first steps for zero trust adoption

The NSA lays out the first steps for zero trust adoption 2026-01-15 at 07:28 By Anamarija Pogorelec Security pros often say that zero trust sounds straightforward until they try to apply it across real systems, real users, and real data. Many organizations are still sorting out what they own, how access works, and where authority

The NSA lays out the first steps for zero trust adoption Read More »

Webinar: Beyond the Quadrant: An Analyst’s Guide to Evaluating Email Security in 2026

Webinar: Beyond the Quadrant: An Analyst’s Guide to Evaluating Email Security in 2026 2026-01-14 at 16:03 By Help Net Security Join former Gartner analyst Ravisha Chugh and Abnormal’s Director of Product Marketing, Lane Billings, on January 20th for an exclusive insider look at how email security vendors will be evaluated in 2026. Backed by years

Webinar: Beyond the Quadrant: An Analyst’s Guide to Evaluating Email Security in 2026 Read More »

CISO Assistant: Open-source cybersecurity management and GRC

CISO Assistant: Open-source cybersecurity management and GRC 2026-01-14 at 13:25 By Mirko Zorz CISO Assistant is an open-source governance, risk, and compliance (GRC) platform designed to help security teams document risks, controls, and framework alignment in a structured system. The community edition is maintained as a self-hosted tool for organizations that want direct access to

CISO Assistant: Open-source cybersecurity management and GRC Read More »

Firmware scanning time, cost, and where teams run EMBA

Firmware scanning time, cost, and where teams run EMBA 2026-01-14 at 13:25 By Mirko Zorz Security teams that deal with connected devices often end up running long firmware scans overnight, checking progress in the morning, and trying to explain to colleagues why a single image consumed a workday of compute time. That routine sets the

Firmware scanning time, cost, and where teams run EMBA Read More »

How AI image tools can be tricked into making political propaganda

How AI image tools can be tricked into making political propaganda 2026-01-14 at 08:01 By Sinisa Markovic A single image can shift public opinion faster than a long post. Text to image systems can be pushed to create misleading political visuals, even when safety filters are in place, according to a new study. The researchers

How AI image tools can be tricked into making political propaganda Read More »

Product showcase: Orbot – Tor VPN for iOS

Product showcase: Orbot – Tor VPN for iOS 2026-01-14 at 07:43 By Anamarija Pogorelec Orbot for iOS is a free, open-source networking tool that routes supported app traffic through the Tor network. Developed by the Guardian Project, it is intended for users who want to reduce tracking and limit network-level monitoring on iPhone and iPad.

Product showcase: Orbot – Tor VPN for iOS Read More »

Enterprise security faces a three-front war: cybercrime, AI misuse, and supply chains

Enterprise security faces a three-front war: cybercrime, AI misuse, and supply chains 2026-01-13 at 11:04 By Anamarija Pogorelec Security teams are dealing with pressures tied to AI use, geopolitical instability, and expanding cybercrime that reach beyond technical controls, according to findings from the World Economic Forum’s Global Cybersecurity Outlook 2026. AI drives risk growth and

Enterprise security faces a three-front war: cybercrime, AI misuse, and supply chains Read More »

Rakuten Viber CISO/CTO on balancing encryption, abuse prevention, and platform resilience

Rakuten Viber CISO/CTO on balancing encryption, abuse prevention, and platform resilience 2026-01-13 at 09:01 By Mirko Zorz In this Help Net Security interview, Liad Shnell, CISO and CTO at Rakuten Viber, discusses how messaging platforms have become critical infrastructure during crises and conflicts. He explains how it influences cybersecurity priorities, from encryption and abuse prevention

Rakuten Viber CISO/CTO on balancing encryption, abuse prevention, and platform resilience Read More »

Turning cyber metrics into decisions leaders can act on

Turning cyber metrics into decisions leaders can act on 2026-01-13 at 09:01 By Help Net Security In this Help Net Security video, Bryan Sacks, Field CISO at Myriad360, explains how security leaders can measure cybersecurity in ways that matter to executives and boards. He argues that metrics should support decisions, not exist for reporting alone.

Turning cyber metrics into decisions leaders can act on Read More »

Teaching cybersecurity by letting students break things

Teaching cybersecurity by letting students break things 2026-01-13 at 09:01 By Sinisa Markovic Cybersecurity students show higher engagement when the work feels tangible. A new study from Airbus Cybersecurity and Dauphine University describes what happens when courses move beyond lectures and place students inside structured hacking scenarios, social engineering exercises, and competitive games. From theory

Teaching cybersecurity by letting students break things Read More »

There was no data breach, Instagram says

There was no data breach, Instagram says 2026-01-12 at 13:20 By Zeljka Zorz News of a possible Instagram data breach spread over the weekend after Malwarebytes reported that cybercriminals had stolen sensitive information from 17.5 million Instagram accounts, potentially leading to a surge in password reset requests. Users have been complaining last week about receiving

There was no data breach, Instagram says Read More »

Crypto crime hits record levels as state actors move billions

Crypto crime hits record levels as state actors move billions 2026-01-12 at 11:15 By Sinisa Markovic Nation-state involvement in crypto increased in 2025, signaling a shift in how on-chain crime operates. Three waves of crypto crime (Source: Chainalysis) Research from Chainalysis shows that crypto-related crime has grown more organized over recent years, with illicit groups

Crypto crime hits record levels as state actors move billions Read More »

Rethinking OT security for project heavy shipyards

Rethinking OT security for project heavy shipyards 2026-01-12 at 09:09 By Mirko Zorz In this Help Net Security interview, Hans Quivooij, CISO at Damen Shipyards Group, discusses securing OT and ICS in the shipyard. He outlines how project-based operations, rotating contractors, and temporary systems expand the threat surface and complicate access control. Quivooij also covers

Rethinking OT security for project heavy shipyards Read More »

pfSense: Open-source firewall and routing platform

pfSense: Open-source firewall and routing platform 2026-01-12 at 08:33 By Sinisa Markovic Firewalls, VPN access, and traffic rules need steady attention, often with limited budgets and staff. In that context, the open source pfSense Community Edition (CE) continues to show up in production environments, supported by a long-standing user community. pfSense CE is the free,

pfSense: Open-source firewall and routing platform Read More »

Scroll to Top