News

Debian developers rejected an LLM ban and left disclosure voluntary

Debian developers rejected an LLM ban and left disclosure voluntary 2026-08-31 at 11:08 By Anamarija Pogorelec A maintainer reading a merge request can’t tell whether a person or a model wrote the diff, and nobody has to say. Debian developers voted on that through August 28, and Kurt Roeckx, the project secretary, announced the result: […]

Debian developers rejected an LLM ban and left disclosure voluntary Read More »

The OpenClaw 2.0 release moves your sessions into SQLite

The OpenClaw 2.0 release moves your sessions into SQLite 2026-08-31 at 10:24 By Anamarija Pogorelec OpenClaw is open source software that hands an AI model small standing jobs across your accounts, the kind of chore where it watches a mailbox for vendor advisories and pings you on Telegram when one names a product you run. […]

The OpenClaw 2.0 release moves your sessions into SQLite Read More »

What vulnerability prioritization looks like when KEV, EPSS, and CVSS disagree

What vulnerability prioritization looks like when KEV, EPSS, and CVSS disagree 2026-08-31 at 09:00 By Mirko Zorz In this Help Net Security interview, Dr. Joye Purser, Global Field CISO at Cohesity, explains how to rank vulnerabilities when KEV, EPSS, and CVSS point in different directions. Active exploitation comes first, then exploit likelihood, then technical severity, […]

What vulnerability prioritization looks like when KEV, EPSS, and CVSS disagree Read More »

Halo-record: Open-source audit trails for AI agents

Halo-record: Open-source audit trails for AI agents 2026-08-31 at 08:30 By Mirko Zorz Brian Kuan wrote halo-record, a small Python package that sits inside an AI agent and writes down the moves it makes: tool calls, model calls, data access, approvals. Each action becomes one line in a file that only ever gets appended to, […]

Halo-record: Open-source audit trails for AI agents Read More »

AI AppSec tools agree on just 5% of security findings

AI AppSec tools agree on just 5% of security findings 2026-08-31 at 08:23 By Sinisa Markovic Software vulnerabilities are turning into exploits within hours, and application security teams carry patch backlogs that go back years. Top types of viable application attacks (Source: Contrast Security) Contrast Security’s AppSec Overflow 2026 report draws on telemetry collected from […]

AI AppSec tools agree on just 5% of security findings Read More »

Free ChatGPT users get ads picked from whatever they just asked about

Free ChatGPT users get ads picked from whatever they just asked about 2026-08-31 at 07:30 By Anamarija Pogorelec Say you’re on the free plan and you ask ChatGPT to help you pick a mattress. An ad may turn up next to the answer, and it got there because of what you just asked about, plus […]

Free ChatGPT users get ads picked from whatever they just asked about Read More »

Week in review: Compromised Zimbra servers, previously patched Citrix NetScaler flaw exploited

Week in review: Compromised Zimbra servers, previously patched Citrix NetScaler flaw exploited 2026-08-30 at 11:41 By Anamarija Pogorelec Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Unpatched Zimbra servers are falling to CVE-2026-73570 attacks At least 274 internet-facing Zimbra instances have been compromised by unknown attackers via CVE-2026-73570, […]

Week in review: Compromised Zimbra servers, previously patched Citrix NetScaler flaw exploited Read More »

North Korean remote workers are broadening their job hunt beyond IT

North Korean remote workers are broadening their job hunt beyond IT 2026-08-28 at 14:16 By Sinisa Markovic North Korean (DPRK) remote workers are expanding their job searches beyond IT, according to Huntress. Recent investigations have identified suspected DPRK workers employed in sales and marketing and the medical profession. “DPRK workers present a unique detection challenge […]

North Korean remote workers are broadening their job hunt beyond IT Read More »

Android 17 adds new protections against sneaky Wi-Fi tracking and web snooping

Android 17 adds new protections against sneaky Wi-Fi tracking and web snooping 2026-08-28 at 12:28 By Sinisa Markovic Google introduced a batch of network security changes coming in Android 17, aimed at making it harder for network operators, snoops, and scammers to track what you do on your phone. “When you visit a website or […]

Android 17 adds new protections against sneaky Wi-Fi tracking and web snooping Read More »

Manchester Airports Group breached, millions of customers’ data stolen

Manchester Airports Group breached, millions of customers’ data stolen 2026-08-28 at 10:56 By Sinisa Markovic Someone broke into the systems of Manchester Airports Group (MAG) and walked away with a “quantity” of customer data from three UK airports, the company has confirmed. The post Manchester Airports Group breached, millions of customers’ data stolen appeared first […]

Manchester Airports Group breached, millions of customers’ data stolen Read More »

What 90 days and a small budget can buy in AI agent security

What 90 days and a small budget can buy in AI agent security 2026-08-28 at 08:30 By Mirko Zorz In this interview with Help Net Security, Prasad Tharippala, Field CISO at Versa, explains what organizations miss when they run open-weight models in house. He covers the hidden costs of GPU infrastructure, licensing review and staffing, […]

What 90 days and a small budget can buy in AI agent security Read More »

New infosec products of the month: August 2026

New infosec products of the month: August 2026 2026-08-28 at 07:00 By Anamarija Pogorelec Here’s a look at the most interesting products from the past week, featuring releases from A10 Networks, Abnormal AI, F5 Networks, Intezer, Netscout, ScienceLogic, Searchlight Cyber, SelectHub, ServiceNow, Snyk, Tanium, and Tufin. ServiceNow organizes autonomous security around six solution areas ServiceNow […]

New infosec products of the month: August 2026 Read More »

Two alleged TeamPCP hackers arrested over global supply chain attacks

Two alleged TeamPCP hackers arrested over global supply chain attacks 2026-08-27 at 16:59 By Sinisa Markovic Two men from Western Australia have been charged after police allege they were part of TeamPCP, a cybercrime group that planted malicious code in open-source software, then used it to break into organizations around the world. The Australian Federal […]

Two alleged TeamPCP hackers arrested over global supply chain attacks Read More »

Cyberattack causes network outage at Boston Scientific, disrupts global operations

Cyberattack causes network outage at Boston Scientific, disrupts global operations 2026-08-27 at 15:00 By Sinisa Markovic Medical technology company Boston Scientific suffered a cyberattack that disrupted its IT systems and caused a network outage, affecting global operations. Boston Scientific makes devices for minimally invasive procedures, including stents, catheters, pacemakers and defibrillators. According to its website, […]

Cyberattack causes network outage at Boston Scientific, disrupts global operations Read More »

Unknown PaperCut NG/MF vulnerability is under active attack

Unknown PaperCut NG/MF vulnerability is under active attack 2026-08-27 at 14:59 By Zeljka Zorz A yet unspecified vulnerability affecting print management solutions PaperCut NG and PaperCut MF is being exploited by attackers, PaperCut Software warned today. “We are aware of confirmed customer incidents and are treating this matter with the highest priority,” the vendor said. […]

Unknown PaperCut NG/MF vulnerability is under active attack Read More »

Previously patched Citrix NetScaler flaw exploited in the wild (CVE-2026-8452)

Previously patched Citrix NetScaler flaw exploited in the wild (CVE-2026-8452) 2026-08-27 at 12:58 By Sinisa Markovic CISA added six new vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog, including a previously patched Citrix NetScaler ADC and Gateway flaw, tracked as CVE-2026-8452, that is being exploited in the wild. The agency published the alert on August […]

Previously patched Citrix NetScaler flaw exploited in the wild (CVE-2026-8452) Read More »

FBI takes down China-linked hacking network behind attacks on NASA, DOJ and U.S. Senate

FBI takes down China-linked hacking network behind attacks on NASA, DOJ and U.S. Senate 2026-08-27 at 10:19 By Sinisa Markovic The Justice Department and FBI have seized domains tied to two hacking tools built and run by a Chinese state-sponsored group, cutting off access to malware that had been used against U.S. government agencies for […]

FBI takes down China-linked hacking network behind attacks on NASA, DOJ and U.S. Senate Read More »

AI will not fix a governance problem in your camera estate

AI will not fix a governance problem in your camera estate 2026-08-27 at 08:30 By Mirko Zorz Camera systems often outlive the companies that install them. In this Help Net Security interview, Rob Janssens, EMEA Cyber Security Director at Hikvision Europe, discusses what happens when the integrator is gone, the documentation is lost, and nobody […]

AI will not fix a governance problem in your camera estate Read More »

The best human hacking team still out-solved the best AI team

The best human hacking team still out-solved the best AI team 2026-08-27 at 07:30 By Anamarija Pogorelec Bring an AI agent to a hacking competition and you would expect to find it propping up the teams who were struggling. In the 2026 Global Cyber Skills Benchmark, agents showed up in 17 of the Top 25 […]

The best human hacking team still out-solved the best AI team Read More »

LevelBlue Strengthens Cyber Resilience for Australian Critical Infrastructure with New Sydney SOC

LevelBlue Strengthens Cyber Resilience for Australian Critical Infrastructure with New Sydney SOC 2026-08-27 at 05:00 By LevelBlue is making a multi-million-dollar investment in a new local Security Operations Center (SOC) in Sydney, going live August 25, 2026. The Sydney SOC gives Australian organizations, with a particular focus on critical infrastructure owners and operators, access to […]

LevelBlue Strengthens Cyber Resilience for Australian Critical Infrastructure with New Sydney SOC Read More »

Scroll to Top