Hot stuff

What happens when AI agent governance is missing at scale

What happens when AI agent governance is missing at scale 2026-09-16 at 09:00 By Mirko Zorz In this interview with Help Net Security, Gourab Basu, Global Head of Engineering at meshIQ, discusses governance in AI agent systems. He argues that instructions written into a prompt are not enough to control what an agent does, since […]

What happens when AI agent governance is missing at scale Read More »

The modern attack chain: Rethinking Google Workspace security in the age of AI

The modern attack chain: Rethinking Google Workspace security in the age of AI 2026-09-16 at 08:00 By Help Net Security Over the past two months, I’ve written about the Vercel breach and the Composio breach separately. Both offer lessons to learn on their own. But reading them together, I keep coming back to the same […]

The modern attack chain: Rethinking Google Workspace security in the age of AI Read More »

Cisco patches actively exploited email gateway zero-day (CVE-2026-76461)

Cisco patches actively exploited email gateway zero-day (CVE-2026-76461) 2026-09-15 at 14:09 By Zeljka Zorz Attackers have leveraged a zero-day SQL injection vulnerability (CVE-2026-76461) to compromise Cisco Secure Email Gateway appliances, Cisco confirmed on Monday. The vendor’s Product Security Incident Response Team became aware of active exploitation of this vulnerability in September 2025, and has shared […]

Cisco patches actively exploited email gateway zero-day (CVE-2026-76461) Read More »

Attackers hijack HBO Max’s Reddit account for 48-hour malvertising blitz

Attackers hijack HBO Max’s Reddit account for 48-hour malvertising blitz 2026-09-15 at 13:10 By Sinisa Markovic Attackers compromised the verified official HBO Max Reddit account, u/hbomax, and used its trusted advertising status to launch a ClickFix campaign targeting macOS and Windows devices with information-stealing malware. Screenshot of the fraudulent ad (Source: Alex Cutts) ClickFix has […]

Attackers hijack HBO Max’s Reddit account for 48-hour malvertising blitz Read More »

What we know about the Revolut data breach so far

What we know about the Revolut data breach so far 2026-09-14 at 10:02 By Mirko Zorz Someone impersonating a government agency, using an email address on that agency’s domain, obtained sensitive customer records from Revolut. The bank confirmed the incident on Saturday, September 12. The London-based fintech told TechCrunch that a limited number of customers […]

What we know about the Revolut data breach so far Read More »

Turn it off and on again, but for critical infrastructure

Turn it off and on again, but for critical infrastructure 2026-09-14 at 09:00 By Anamarija Pogorelec Researchers at KTH Royal Institute of Technology built a container replica of a segmented industrial network, attacked it repeatedly across 14 days of running time, and used the captured traffic to train a defense agent that decides on its […]

Turn it off and on again, but for critical infrastructure Read More »

IDScan confirms breach after 153 million driver’s licenses leak on dark web

IDScan confirms breach after 153 million driver’s licenses leak on dark web 2026-09-11 at 11:39 By Sinisa Markovic Days after reports linked IDScan to a dark web database holding more than 153 million driver’s license scans, the identity verification company has confirmed hackers accessed customer data stored on its cloud platform. The Louisiana-based firm, which […]

IDScan confirms breach after 153 million driver’s licenses leak on dark web Read More »

Getting a stranger’s phone kicked off the cellular network costs a few dollars

Getting a stranger’s phone kicked off the cellular network costs a few dollars 2026-09-11 at 09:00 By Mirko Zorz Researchers at Michigan State University and three partner schools bought a Samsung Galaxy Z Fold 7, copied the identification number printed on the sealed box, and reported the phone to its carrier as lost. Then they […]

Getting a stranger’s phone kicked off the cellular network costs a few dollars Read More »

Cisco FMC bugs exploited by nation-state and ransomware actors (CVE-2026-20079, CVE-2026-20316)

Cisco FMC bugs exploited by nation-state and ransomware actors (CVE-2026-20079, CVE-2026-20316) 2026-09-10 at 14:22 By Zeljka Zorz State-sponsored and financially-motivated attackers are actively exploiting CVE-2026-20079, a critical authentication bypass vulnerability in Cisco Secure Firewall Management Center (FMC), which is used for centrally managing multiple Cisco Secure Firewall devices across a network. Two FMC vulnerabilities under […]

Cisco FMC bugs exploited by nation-state and ransomware actors (CVE-2026-20079, CVE-2026-20316) Read More »

Fake GTA 6 download delivers malware-packed bundle to impatient gamers

Fake GTA 6 download delivers malware-packed bundle to impatient gamers 2026-09-10 at 12:51 By Sinisa Markovic Grand Theft Auto VI (GTA 6) is still three months from release, but cybercriminals are not waiting for the launch date. Security firm Huntress found malware disguised as a leaked copy of the game, aimed at fans hoping to […]

Fake GTA 6 download delivers malware-packed bundle to impatient gamers Read More »

Product showcase: GitGuardian Honeytoken catches credential theft as it happens

Product showcase: GitGuardian Honeytoken catches credential theft as it happens 2026-09-10 at 08:30 By Help Net Security Credential harvesting on developer machines has widened. Earlier infostealers worked from a short list of known targets, mostly browser stores and a few cloud credential paths. The families active now cast a much wider net. Shai-Hulud, for instance, […]

Product showcase: GitGuardian Honeytoken catches credential theft as it happens Read More »

September 2026 Patch Tuesday: Record patch count, 2 zero-days, and a SigRed successor

September 2026 Patch Tuesday: Record patch count, 2 zero-days, and a SigRed successor 2026-09-09 at 12:04 By Zeljka Zorz September 2026 Patch Tuesday is here, with Microsoft delivering another record-breaking number of patches, including those for two vulnerabilities that have been exploited as zero-days. Another “new normal” is the anonymous security researcher Nightmare Eclipse publishing […]

September 2026 Patch Tuesday: Record patch count, 2 zero-days, and a SigRed successor Read More »

Google fixes yet another actively exploited Chrome zero-day (CVE-2026-87491)

Google fixes yet another actively exploited Chrome zero-day (CVE-2026-87491) 2026-09-09 at 10:53 By Sinisa Markovic Google has fixed 230 vulnerabilities in Chrome, including a zero-day flaw, CVE-2026-87491, with an in-the-wild exploit. “Google is aware that an exploit for CVE-2026-87491 exists in the wild,” the company said in a Tuesday security advisory. The fix has been […]

Google fixes yet another actively exploited Chrome zero-day (CVE-2026-87491) Read More »

AI-Infra-Guard: Open-source security scanner for AI systems

AI-Infra-Guard: Open-source security scanner for AI systems 2026-09-09 at 10:13 By Mirko Zorz Tencent’s Zhuque Lab built AI-Infra-Guard, an open-source security scanner for AI systems. It fingerprints running services such as Ollama, vLLM and ComfyUI and checks them against more than 1,600 known CVEs, inspects MCP servers and agent skills across 14 categories of risk, […]

AI-Infra-Guard: Open-source security scanner for AI systems Read More »

Gartner: 70% of SOCs will pilot AI agents. Only 15% will see results

Gartner: 70% of SOCs will pilot AI agents. Only 15% will see results 2026-09-09 at 08:00 By Help Net Security In the Gartner report Validate the Promises of AI SOC Agents With These Key Questions, analysts Craig Lawson and Andrew Davies posit that “By 2028, 70% of large SOCs will pilot AI agents to augment […]

Gartner: 70% of SOCs will pilot AI agents. Only 15% will see results Read More »

What breach and attack simulation needs to become in the AI era

What breach and attack simulation needs to become in the AI era 2026-09-09 at 07:30 By Help Net Security Breach and attack simulation (BAS) has always had a supply chain. Somebody has to read the threat report, pull out the techniques, and turn them into something that will actually run against your controls. That somebody […]

What breach and attack simulation needs to become in the AI era Read More »

Trezor customers hit with phishing calls and letters after shipping-partner breach

Trezor customers hit with phishing calls and letters after shipping-partner breach 2026-09-08 at 14:30 By Zeljka Zorz Roughly 67,000 more customers of SatoshiLabs, the maker of hardware crypto-wallet Trezor, are at heightened risk of phishing attacks after their names, email addresses, phone numbers, and shipping addresses were exposed. “The leaked information could be used for […]

Trezor customers hit with phishing calls and letters after shipping-partner breach Read More »

Thomson Reuters reveals breach that exposed U.S. and Canadian court records

Thomson Reuters reveals breach that exposed U.S. and Canadian court records 2026-09-03 at 16:50 By Zeljka Zorz Thomson Reuters has disclosed a data breach affecting C-Track, a court case management platform operated by its subsidiaries, exposing court records and sensitive personal information across courts in at least 12 US states, the US Virgin Islands, and […]

Thomson Reuters reveals breach that exposed U.S. and Canadian court records Read More »

Your threat feed is someone else’s database: What ingesting malware intel at scale takes

Your threat feed is someone else’s database: What ingesting malware intel at scale takes 2026-09-03 at 08:30 By Help Net Security The advice is to consume shared threat intelligence. Join the ISAC. Wire the community feeds into your pipeline. This looks like a fine advice and I agree to it. What nobody mentions you is […]

Your threat feed is someone else’s database: What ingesting malware intel at scale takes Read More »

Scroll to Top