News

Practical Cybersecurity for Small Water Utilities: 5 Steps to Reduce Operational Risk

Practical Cybersecurity for Small Water Utilities: 5 Steps to Reduce Operational Risk 2026-08-11 at 17:00 By Nolen Johnson Recent cyberattacks against U.S. water and wastewater systems delivered an important reminder: disrupting operational technology (OT) does not always require sophisticated malware or a previously unknown vulnerability. In the July 2026 activity, internet-facing programmable logic controllers (PLCs), […]

Practical Cybersecurity for Small Water Utilities: 5 Steps to Reduce Operational Risk Read More »

Malicious SIMs can hijack smartphones, steal files, and lock them onto 2G

Malicious SIMs can hijack smartphones, steal files, and lock them onto 2G 2026-08-11 at 15:10 By Sinisa Markovic Researchers have found that compromised or malicious SIM cards can issue commands to some smartphones and cellular-connected devices, allowing attackers to steal information, disrupt communications, downgrade connections to 2G, and in some cases execute code. Tomasz Piotr

Malicious SIMs can hijack smartphones, steal files, and lock them onto 2G Read More »

Ransomware gangs don’t need control system access to disrupt industrial production

Ransomware gangs don’t need control system access to disrupt industrial production 2026-08-11 at 12:32 By Sinisa Markovic Disrupting IT systems that support industrial environments can be enough to interrupt production, even when ransomware operators do not gain direct access to industrial control systems (ICS), according to Dragos. The company identified 1,140 ransomware incidents involving industrial

Ransomware gangs don’t need control system access to disrupt industrial production Read More »

Locking your ssh-agent exposed local-only keys until OpenSSH 10.5

Locking your ssh-agent exposed local-only keys until OpenSSH 10.5 2026-08-11 at 12:15 By Anamarija Pogorelec Lock your ssh-agent and it should sit there refusing to sign anything until you unlock it. In OpenSSH 10.4, locking it also switched off the check that tells the agent whether a request came from your own machine or arrived

Locking your ssh-agent exposed local-only keys until OpenSSH 10.5 Read More »

GPT-5.6-Cyber refuses security researchers’ requests far less often

GPT-5.6-Cyber refuses security researchers’ requests far less often 2026-08-11 at 09:32 By Sinisa Markovic GPT-5.6-Cyber is a new OpenAI model built on GPT-5.6 Sol, trained to find zero-day vulnerabilities and build exploit chains, with fewer refusals on higher-risk, dual-use work. Model is available only through Daybreak Red, the higher tier of OpenAI’s vetted access program

GPT-5.6-Cyber refuses security researchers’ requests far less often Read More »

Who will be the Stanislav Petrov in your organization?

Who will be the Stanislav Petrov in your organization? 2026-08-11 at 09:00 By Help Net Security The recent news coverage of “rogue AI” systems hacking innocent companies reminded me of one of the world’s most unsung heroes and genuinely someone who may well have saved the world. In 1983, the USSR’s early warning systems reported

Who will be the Stanislav Petrov in your organization? Read More »

An AI tool found 84 flaws in 5G network software and 23 of them still have no fix

An AI tool found 84 flaws in 5G network software and 23 of them still have no fix 2026-08-11 at 08:30 By Mirko Zorz Researchers at Nanyang Technological University turned a set of AI agents loose on the software that runs 4G and 5G phone networks, and the agents came back with 84 security flaws

An AI tool found 84 flaws in 5G network software and 23 of them still have no fix Read More »

Previously unseen entry vector used to breach Polish energy plant

Previously unseen entry vector used to breach Polish energy plant 2026-08-11 at 08:00 By Sinisa Markovic The December 29 cyberattack on a Polish combined heat and power (CHP) plant was the first observed case of attackers gaining access to an OT network through a private APN, according to CERT Polska. The private APN is a

Previously unseen entry vector used to breach Polish energy plant Read More »

Your security vendor gets the frontier cyber model, you get the findings

Your security vendor gets the frontier cyber model, you get the findings 2026-08-11 at 07:43 By Anamarija Pogorelec Selected red team specialists can now use OpenAI’s cyber models to find and exploit weaknesses in client applications and infrastructure. Those clients never get the models themselves. That split is the design of the Daybreak Cyber Partner

Your security vendor gets the frontier cyber model, you get the findings Read More »

Cyberattack on Steam hardware shipper leaks names, addresses, and order data

Cyberattack on Steam hardware shipper leaks names, addresses, and order data 2026-08-10 at 17:34 By Sinisa Markovic Video game publisher Valve is alerting customers in Europe to a data breach at CEVA Logistics, its Steam hardware shipping partner. Reports from affected customers began surfacing on social media earlier today, after Valve started sending out data

Cyberattack on Steam hardware shipper leaks names, addresses, and order data Read More »

Metabase zero-day exploited to access Framework customer data

Metabase zero-day exploited to access Framework customer data 2026-08-10 at 16:42 By Zeljka Zorz Framework, the San Francisco-based company that designs repairable and upgradeable laptops, has suffered a data breach after attackers managed to exploit a zero-day vulnerability in the Metabase business intelligence service. According to the notification sent to affected Framework customers, the attackers

Metabase zero-day exploited to access Framework customer data Read More »

Microsoft Entra ID is removing an extra MFA hurdle for Windows Hello and macOS PSSO users

Microsoft Entra ID is removing an extra MFA hurdle for Windows Hello and macOS PSSO users 2026-08-10 at 16:19 By Sinisa Markovic Microsoft is changing how Entra ID handles MFA for people who sign in with Windows Hello for Business (WHfB) or macOS Platform Single Sign-On (PSSO). The rollout reaches worldwide and GCC tenants starting

Microsoft Entra ID is removing an extra MFA hurdle for Windows Hello and macOS PSSO users Read More »

N-able ships second N-central hotfix as attackers keep exploiting CVE-2026-18577

N-able ships second N-central hotfix as attackers keep exploiting CVE-2026-18577 2026-08-10 at 14:34 By Zeljka Zorz To help customers fend off ongoing attacks, N-able released a second security hotfix for N‑central, its monitoring and management (RMM) solution popular with managed service providers (MSPs). “Hotfix 2 is required, even if you already applied the earlier hotfix.

N-able ships second N-central hotfix as attackers keep exploiting CVE-2026-18577 Read More »

Anthropic to put AI in charge of reviewing Claude Code actions by default

Anthropic to put AI in charge of reviewing Claude Code actions by default 2026-08-10 at 12:13 By Anamarija Pogorelec Anthropic will make auto mode in Claude Code the default for new sessions on Pro, Max, and Team plans starting August 14. Users who previously selected a different default may receive a one-time prompt asking whether

Anthropic to put AI in charge of reviewing Claude Code actions by default Read More »

OpenAI locks down Astra over potential critical cyber capabilities

OpenAI locks down Astra over potential critical cyber capabilities 2026-08-10 at 10:09 By Anamarija Pogorelec OpenAI’s internal evaluation of its upcoming model, Astra, found significant advances in agentic coding and cybersecurity, leading the company to conclude that it cannot rule out the model reaching the critical capability level for cybersecurity under its Preparedness Framework. The

OpenAI locks down Astra over potential critical cyber capabilities Read More »

GitHub Dependabot malware alerts now cover eight ecosystems

GitHub Dependabot malware alerts now cover eight ecosystems 2026-08-10 at 10:01 By Mirko Zorz GitHub has flagged npm malware since March 2026. Anyone pulling in a bad PyPI, Maven, RubyGems, NuGet, Go, crates.io, or PHP Composer package has had no such warning, because GitHub’s malware detection only ever watched one ecosystem. That changed this month.

GitHub Dependabot malware alerts now cover eight ecosystems Read More »

Chainloop: Open-source evidence store and policy engine for the software supply chain

Chainloop: Open-source evidence store and policy engine for the software supply chain 2026-08-10 at 08:30 By Sinisa Markovic Chainloop is an open source evidence store for the software supply chain. A command line tool runs inside a GitHub Actions, GitLab, Jenkins, or Dagger pipeline, picks up what the build produced, uploads those files to content-addressable

Chainloop: Open-source evidence store and policy engine for the software supply chain Read More »

Product showcase: Enpass Password Manager breaks away from the proprietary cloud model

Product showcase: Enpass Password Manager breaks away from the proprietary cloud model 2026-08-10 at 08:00 By Anamarija Pogorelec Enpass is a password manager that stores passwords, passkeys, payment cards, identities, secure notes, software licenses, and other sensitive information in encrypted vaults. Vaults remain on the device or in a cloud storage service selected by the

Product showcase: Enpass Password Manager breaks away from the proprietary cloud model Read More »

Week in review: Cisco fixes IMC bug, Patch Tuesday forecast, Black Hat USA 2026

Week in review: Cisco fixes IMC bug, Patch Tuesday forecast, Black Hat USA 2026 2026-08-09 at 11:00 By Anamarija Pogorelec Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Mapping the malware blast radius a single alert won’t show you In this interview with Help Net Security, Mike Wiacek,

Week in review: Cisco fixes IMC bug, Patch Tuesday forecast, Black Hat USA 2026 Read More »

200 accounts compromised in Swiss government’s Microsoft SharePoint breach

200 accounts compromised in Swiss government’s Microsoft SharePoint breach 2026-08-07 at 15:29 By Sinisa Markovic Hackers exploited vulnerabilities in Microsoft SharePoint servers belonging to Switzerland’s Federal Office of Information Technology, Systems and Telecommunication (BIT), compromising the login credentials of around 200 accounts. On July 28, BIT’s security specialists noticed unusual activity on the SharePoint servers.

200 accounts compromised in Swiss government’s Microsoft SharePoint breach Read More »

Scroll to Top