News

INTERPOL crackdown on West African crime rings uncovers troubling new trend

INTERPOL crackdown on West African crime rings uncovers troubling new trend 2026-08-25 at 17:01 By Sinisa Markovic Police across 22 countries arrested 58 people and identified 263 suspects during an eight-month INTERPOL operation targeting West African organized crime groups. Suspects detained in an operation targeting West African crime groups (Source: INTERPOL) Operation Jackal IV ran […]

INTERPOL crackdown on West African crime rings uncovers troubling new trend Read More »

Fake OpenAI Codex download tricks macOS users into installing malware

Fake OpenAI Codex download tricks macOS users into installing malware 2026-08-25 at 15:40 By Sinisa Markovic A malware campaign using a sponsored search ad and a fake OpenAI Codex download page to trick macOS users into pasting a malicious command into Terminal has been uncovered by Cato Networks. It’s a variation of ClickFix, a popular

Fake OpenAI Codex download tricks macOS users into installing malware Read More »

Unpatched Zimbra servers are falling to CVE-2026-73570 attacks

Unpatched Zimbra servers are falling to CVE-2026-73570 attacks 2026-08-25 at 13:03 By Zeljka Zorz At least 274 internet-facing Zimbra instances have been compromised by unknown attackers via CVE-2026-73570, the Shadowserver Foundation shared on Monday. About CVE-2026-73570 Zimbra Collaboration Suite (ZCS) is a communication and collaboration platform popular with organizations that need to have control over

Unpatched Zimbra servers are falling to CVE-2026-73570 attacks Read More »

ShinyHunters taunts ReliaQuest after its own employee falls for social engineering attack

ShinyHunters taunts ReliaQuest after its own employee falls for social engineering attack 2026-08-25 at 12:24 By Sinisa Markovic Cybersecurity company ReliaQuest has confirmed that one of its own employees fell for a social engineering attack, handing attackers a password and a brief window into the company’s identity system. The admission came after the extortion group

ShinyHunters taunts ReliaQuest after its own employee falls for social engineering attack Read More »

AI supply chain risk is showing up in developer workflows first

AI supply chain risk is showing up in developer workflows first 2026-08-25 at 09:00 By Mirko Zorz In this Help Net Security interview, Dr. Jaushin Lee, CEO of Zentera Systems, discusses where AI supply chain risk shows up. He says most incidents still hit developer workflows and open-source package repositories, while poisoned model weights and

AI supply chain risk is showing up in developer workflows first Read More »

HOL Guard: Open-source antivirus for AI agents

HOL Guard: Open-source antivirus for AI agents 2026-08-25 at 08:30 By Anamarija Pogorelec HOL Guard is a free, open-source tool that sits between an AI assistant and the computer it runs on. When the assistant tries something risky, the tool pauses it and asks you first. It installs in about a minute, runs on your

HOL Guard: Open-source antivirus for AI agents Read More »

The cybercrime supply chain has five stages, each with a price

The cybercrime supply chain has five stages, each with a price 2026-08-25 at 08:00 By Help Net Security In this Help Net Security video, Chris Nyhuis, CEO at Vigilant, explains why the picture of a lone ransomware attacker is about 15 years out of date. He walks through the cybercrime supply chain and the five

The cybercrime supply chain has five stages, each with a price Read More »

New TCG guidance gives buyers a way to test PQC-ready TPM claims

New TCG guidance gives buyers a way to test PQC-ready TPM claims 2026-08-25 at 07:30 By Help Net Security The Trusted Computing Group has published requirements that spell out what a Trusted Platform Module has to do before anyone calls it quantum-safe. A TPM is the chip that holds a machine’s keys and records measurements

New TCG guidance gives buyers a way to test PQC-ready TPM claims Read More »

Cybersecurity jobs available right now: August 25, 2026

Cybersecurity jobs available right now: August 25, 2026 2026-08-25 at 07:00 By Sinisa Markovic Specialist Compliance Security AT&T | USA | On-site – View job details As a Specialist Compliance Security, you will serve as AT&T’s liaison for law enforcement, first responders, and emergency personnel nationwide. Respond 24×7 to emergency requests, process subpoenas, warrants, and

Cybersecurity jobs available right now: August 25, 2026 Read More »

Suspected Iran-linked attack knocked UK power plant offline for days

Suspected Iran-linked attack knocked UK power plant offline for days 2026-08-24 at 17:22 By Zeljka Zorz News that suspected Iranian hackers caused the shutdown of a British power plant broke over the weekend, raising the question of whether UK’s power grid and, indeed, the country’s critical infrastructure can fend off destructive cyber attacks. According to

Suspected Iran-linked attack knocked UK power plant offline for days Read More »

Cybersecurity job ads demanding AI skills double in a year

Cybersecurity job ads demanding AI skills double in a year 2026-08-24 at 14:53 By Sinisa Markovic Job postings asking for AI skills in cybersecurity have doubled in a single year in G7 countries according to new research from the Cisco-founded AI Workforce Consortium. Analysis from recruitment firms Cornerstone and Indeed covering 24 months, from April

Cybersecurity job ads demanding AI skills double in a year Read More »

CISA’s logging guidance works beyond government

CISA’s logging guidance works beyond government 2026-08-24 at 13:56 By Zeljka Zorz The US Cybersecurity and Infrastructure Security Agency (CISA) wants federal agencies to (re)shape their logging strategy around one question: when an attack hits, can you actually use the logs you’ve collected to catch it and reconstruct what happened afterward? The Logging Reference Architecture

CISA’s logging guidance works beyond government Read More »

Android car head units infected with proxy botnet malware through built-in software updaters

Android car head units infected with proxy botnet malware through built-in software updaters 2026-08-24 at 12:51 By Sinisa Markovic A newly discovered Android malware, distributed through the built-in updaters in affected Android-based car head units, turns infected devices into ad-fraud tools and nodes in a proxy botnet, Kaspersky has found. According to the researchers, it’s

Android car head units infected with proxy botnet malware through built-in software updaters Read More »

Product showcase: AI Paper Trail shows the privacy cost of talking to AI

Product showcase: AI Paper Trail shows the privacy cost of talking to AI 2026-08-24 at 08:30 By Anamarija Pogorelec Proton’s AI Paper Trail is a free tool designed to make the information accumulated across AI conversations easier to see. It analyzes exported ChatGPT or Claude conversation data and produces a personal privacy report showing what

Product showcase: AI Paper Trail shows the privacy cost of talking to AI Read More »

Fake bank websites play dead to evade security scanners

Fake bank websites play dead to evade security scanners 2026-08-24 at 08:00 By Sinisa Markovic A phishing method, named Chameleon SEO Poisoning, that uses manipulated search results and cloaked fake banking websites to steal credentials while evading security scanners has been discovered by Fortra. The company’s threat intelligence unit, Fortra Intelligence and Research Experts (FIRE),

Fake bank websites play dead to evade security scanners Read More »

Ransomware attackers are zeroing in on mid-market companies

Ransomware attackers are zeroing in on mid-market companies 2026-08-24 at 07:30 By Anamarija Pogorelec Mid-sized companies accounted for 73% of publicly disclosed ransomware and data-extortion incidents with known revenue in North America and Europe between January 2023 and June 2026, according to Black Kite. The analysis covered 13,336 incidents with known revenue and defined mid-market

Ransomware attackers are zeroing in on mid-market companies Read More »

AWS makes it easier to spot firewall rules that have gone quiet

AWS makes it easier to spot firewall rules that have gone quiet 2026-08-24 at 07:00 By Anamarija Pogorelec AWS Network Firewall’s rule hit count capability gives security teams visibility into which stateful firewall rules are matching traffic, helping them identify unused or redundant rules and validate whether security controls are working as intended. The capability

AWS makes it easier to spot firewall rules that have gone quiet Read More »

Week in review: Records allegedly stolen from Azure tenants, Medusa ransomware hits 500+ orgs

Week in review: Records allegedly stolen from Azure tenants, Medusa ransomware hits 500+ orgs 2026-08-23 at 11:00 By Help Net Security Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Windows 11’s strongest security defenses can be bypassed without a screwdriver Researchers from the University of Birmingham and Durham

Week in review: Records allegedly stolen from Azure tenants, Medusa ransomware hits 500+ orgs Read More »

Critical Microsoft Entra ID vulnerability exploited in the wild (CVE-2026-69836)

Critical Microsoft Entra ID vulnerability exploited in the wild (CVE-2026-69836) 2026-08-21 at 15:20 By Sinisa Markovic Microsoft has patched a critical remote code execution vulnerability (CVE-2026-69836) in Entra ID, reportedly exploited in the wild. Entra ID is Microsoft’s cloud identity service, formerly Azure Active Directory, that verifies logins and controls access to Microsoft 365, Azure,

Critical Microsoft Entra ID vulnerability exploited in the wild (CVE-2026-69836) Read More »

Attackers impersonate popular AI brands to spread malware

Attackers impersonate popular AI brands to spread malware 2026-08-21 at 14:47 By Sinisa Markovic Attackers are impersonating popular AI brands like Perplexity, Claude, ChatGPT, and Copilot to spread information stealers, backdoors, malicious browser extensions, and other malware, according to Sophos. Overview of MDR cases with AI involvement (Source: Sophos) Sophos X-Ops reviewed 12 months of

Attackers impersonate popular AI brands to spread malware Read More »

Scroll to Top