News

New infosec products of the month: August 2026

New infosec products of the month: August 2026 2026-08-28 at 07:00 By Anamarija Pogorelec Here’s a look at the most interesting products from the past week, featuring releases from A10 Networks, Abnormal AI, F5 Networks, Intezer, Netscout, ScienceLogic, Searchlight Cyber, SelectHub, ServiceNow, Snyk, Tanium, and Tufin. ServiceNow organizes autonomous security around six solution areas ServiceNow […]

New infosec products of the month: August 2026 Read More »

Two alleged TeamPCP hackers arrested over global supply chain attacks

Two alleged TeamPCP hackers arrested over global supply chain attacks 2026-08-27 at 16:59 By Sinisa Markovic Two men from Western Australia have been charged after police allege they were part of TeamPCP, a cybercrime group that planted malicious code in open-source software, then used it to break into organizations around the world. The Australian Federal

Two alleged TeamPCP hackers arrested over global supply chain attacks Read More »

Cyberattack causes network outage at Boston Scientific, disrupts global operations

Cyberattack causes network outage at Boston Scientific, disrupts global operations 2026-08-27 at 15:00 By Sinisa Markovic Medical technology company Boston Scientific suffered a cyberattack that disrupted its IT systems and caused a network outage, affecting global operations. Boston Scientific makes devices for minimally invasive procedures, including stents, catheters, pacemakers and defibrillators. According to its website,

Cyberattack causes network outage at Boston Scientific, disrupts global operations Read More »

Unknown PaperCut NG/MF vulnerability is under active attack

Unknown PaperCut NG/MF vulnerability is under active attack 2026-08-27 at 14:59 By Zeljka Zorz A yet unspecified vulnerability affecting print management solutions PaperCut NG and PaperCut MF is being exploited by attackers, PaperCut Software warned today. “We are aware of confirmed customer incidents and are treating this matter with the highest priority,” the vendor said.

Unknown PaperCut NG/MF vulnerability is under active attack Read More »

Previously patched Citrix NetScaler flaw exploited in the wild (CVE-2026-8452)

Previously patched Citrix NetScaler flaw exploited in the wild (CVE-2026-8452) 2026-08-27 at 12:58 By Sinisa Markovic CISA added six new vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog, including a previously patched Citrix NetScaler ADC and Gateway flaw, tracked as CVE-2026-8452, that is being exploited in the wild. The agency published the alert on August

Previously patched Citrix NetScaler flaw exploited in the wild (CVE-2026-8452) Read More »

FBI takes down China-linked hacking network behind attacks on NASA, DOJ and U.S. Senate

FBI takes down China-linked hacking network behind attacks on NASA, DOJ and U.S. Senate 2026-08-27 at 10:19 By Sinisa Markovic The Justice Department and FBI have seized domains tied to two hacking tools built and run by a Chinese state-sponsored group, cutting off access to malware that had been used against U.S. government agencies for

FBI takes down China-linked hacking network behind attacks on NASA, DOJ and U.S. Senate Read More »

AI will not fix a governance problem in your camera estate

AI will not fix a governance problem in your camera estate 2026-08-27 at 08:30 By Mirko Zorz Camera systems often outlive the companies that install them. In this Help Net Security interview, Rob Janssens, EMEA Cyber Security Director at Hikvision Europe, discusses what happens when the integrator is gone, the documentation is lost, and nobody

AI will not fix a governance problem in your camera estate Read More »

The best human hacking team still out-solved the best AI team

The best human hacking team still out-solved the best AI team 2026-08-27 at 07:30 By Anamarija Pogorelec Bring an AI agent to a hacking competition and you would expect to find it propping up the teams who were struggling. In the 2026 Global Cyber Skills Benchmark, agents showed up in 17 of the Top 25

The best human hacking team still out-solved the best AI team Read More »

LevelBlue Strengthens Cyber Resilience for Australian Critical Infrastructure with New Sydney SOC

LevelBlue Strengthens Cyber Resilience for Australian Critical Infrastructure with New Sydney SOC 2026-08-27 at 05:00 By LevelBlue is making a multi-million-dollar investment in a new local Security Operations Center (SOC) in Sydney, going live August 25, 2026. The Sydney SOC gives Australian organizations, with a particular focus on critical infrastructure owners and operators, access to

LevelBlue Strengthens Cyber Resilience for Australian Critical Infrastructure with New Sydney SOC Read More »

AnonyMousKIT phishing-as-a-service uses AI voice calls to steal iPhone passcodes

AnonyMousKIT phishing-as-a-service uses AI voice calls to steal iPhone passcodes 2026-08-26 at 15:46 By Sinisa Markovic A phishing-as-a-service (PhaaS) platform called AnonyMousKIT is automating the theft of Apple ID credentials needed to remove Activation Lock from stolen iPhones, SOCRadar found. “By leveraging a critical flaw – the use of bare relative paths – the investigation

AnonyMousKIT phishing-as-a-service uses AI voice calls to steal iPhone passcodes Read More »

Critical Gitea vulnerability now exploited in the wild (CVE-2026-60004)

Critical Gitea vulnerability now exploited in the wild (CVE-2026-60004) 2026-08-26 at 13:59 By Zeljka Zorz Attackers have begun exploiting CVE-2026-60004, a critical code injection vulnerability in the Gitea Git platform, CISA confirmed on Tuesday by adding the vulnerability to its Known Exploited Vulnerabilities (KEV) catalog. The KEV entry does not contain or point to details

Critical Gitea vulnerability now exploited in the wild (CVE-2026-60004) Read More »

Bogus recruiters go after high-value corporate credentials on mobile

Bogus recruiters go after high-value corporate credentials on mobile 2026-08-26 at 13:05 By Sinisa Markovic Scammers posing as HR staff at well-known companies are running interview scheduling scams that end with a stolen corporate password, according to Zimperium. Attackers are using a technique called browser-in-the-browser, or BitB, which CTM360 documented in earlier research on recruitment

Bogus recruiters go after high-value corporate credentials on mobile Read More »

Meta adds three new features to keep WhatsApp accounts secure

Meta adds three new features to keep WhatsApp accounts secure 2026-08-26 at 10:52 By Sinisa Markovic Meta has added new security enhancements to WhatsApp, this time in the form of stronger two-step verification, additional information about calls from unknown numbers, and the ability to add multiple passkeys to the same account. New account security features

Meta adds three new features to keep WhatsApp accounts secure Read More »

Production data in testing is still common, and Tricentis’ CISO wants it gone

Production data in testing is still common, and Tricentis’ CISO wants it gone 2026-08-26 at 08:30 By Mirko Zorz In this Help Net Security interview, Erika Dean, CISO at Tricentis, talks about keeping production data out of test environments and why she thinks the alternatives are good enough now. She explains how her team caught

Production data in testing is still common, and Tricentis’ CISO wants it gone Read More »

AI vulnerability discovery scores the highest impact of 20 emerging risks

AI vulnerability discovery scores the highest impact of 20 emerging risks 2026-08-26 at 08:00 By Anamarija Pogorelec Risk managers, auditors and senior executives at 316 companies spent April and May ranking 20 threats they have not yet felt. AI discovery of cyber vulnerabilities came back first, according to Gartner. Three months earlier the same quarterly

AI vulnerability discovery scores the highest impact of 20 emerging risks Read More »

Hottest cybersecurity open-source tools of the month: August 2026

Hottest cybersecurity open-source tools of the month: August 2026 2026-08-26 at 07:30 By Anamarija Pogorelec Presented here is a curated selection of noteworthy open-source cybersecurity solutions that have drawn recognition for their ability to enhance security postures across diverse settings. SkillSpector: NVIDIA’s open-source security scanner for AI agent skills SkillSpector is an open-source scanner from

Hottest cybersecurity open-source tools of the month: August 2026 Read More »

Energy Disruption in UK Critical Infrastructure and the Growing OT Cyber Threat

Energy Disruption in UK Critical Infrastructure and the Growing OT Cyber Threat 2026-08-25 at 18:27 By Nikita Kazymirskyi A cyber incident affecting a small UK electricity generator in July 2026 resulted in several days of operational unavailability and triggered a government and NCSC response. UK authorities confirmed that the event posed no threat to the

Energy Disruption in UK Critical Infrastructure and the Growing OT Cyber Threat Read More »

INTERPOL crackdown on West African crime rings uncovers troubling new trend

INTERPOL crackdown on West African crime rings uncovers troubling new trend 2026-08-25 at 17:01 By Sinisa Markovic Police across 22 countries arrested 58 people and identified 263 suspects during an eight-month INTERPOL operation targeting West African organized crime groups. Suspects detained in an operation targeting West African crime groups (Source: INTERPOL) Operation Jackal IV ran

INTERPOL crackdown on West African crime rings uncovers troubling new trend Read More »

Fake OpenAI Codex download tricks macOS users into installing malware

Fake OpenAI Codex download tricks macOS users into installing malware 2026-08-25 at 15:40 By Sinisa Markovic A malware campaign using a sponsored search ad and a fake OpenAI Codex download page to trick macOS users into pasting a malicious command into Terminal has been uncovered by Cato Networks. It’s a variation of ClickFix, a popular

Fake OpenAI Codex download tricks macOS users into installing malware Read More »

Unpatched Zimbra servers are falling to CVE-2026-73570 attacks

Unpatched Zimbra servers are falling to CVE-2026-73570 attacks 2026-08-25 at 13:03 By Zeljka Zorz At least 274 internet-facing Zimbra instances have been compromised by unknown attackers via CVE-2026-73570, the Shadowserver Foundation shared on Monday. About CVE-2026-73570 Zimbra Collaboration Suite (ZCS) is a communication and collaboration platform popular with organizations that need to have control over

Unpatched Zimbra servers are falling to CVE-2026-73570 attacks Read More »

Scroll to Top