News

Cybersecurity jobs available right now: January 20, 2026

Cybersecurity jobs available right now: January 20, 2026 2026-01-20 at 07:23 By Anamarija Pogorelec Application Security Engineer xAI | USA | On-site – View job details As an Application Security Engineer, you will review and analyze code to identify vulnerabilities, define secure coding standards, and embed security practices into the CI/CD pipeline. You will perform […]

Cybersecurity jobs available right now: January 20, 2026 Read More »

Fake browser crash alerts turn Chrome extension into enterprise backdoor

Fake browser crash alerts turn Chrome extension into enterprise backdoor 2026-01-19 at 17:21 By Zeljka Zorz Browser extensions are a high-risk attack vector for enterprises, allowing threat actors to bypass traditional security controls and gain a foothold on corporate endpoints. Case in point: A recently identified malicious extension called NexShield proves that a single user

Fake browser crash alerts turn Chrome extension into enterprise backdoor Read More »

Law enforcement tracks ransomware group blamed for massive financial losses

Law enforcement tracks ransomware group blamed for massive financial losses 2026-01-19 at 14:00 By Sinisa Markovic Law enforcement agencies in Ukraine and Germany have identified two members of a Russian-affiliated ransomware group and carried out searches in western Ukraine. Search (Source: Cyber ​​Police of Ukraine) Investigators also named the alleged organizer, a Russian national, and

Law enforcement tracks ransomware group blamed for massive financial losses Read More »

British Army to spend £279 million on permanent cyber regiment base

British Army to spend £279 million on permanent cyber regiment base 2026-01-19 at 12:31 By Sinisa Markovic The British Army has announced a new permanent base for its cyber regiment, backed by £279 million in government spending. The plan centres on 13 Signal Regiment, the unit responsible for defending Army networks and supporting cyber operations.

British Army to spend £279 million on permanent cyber regiment base Read More »

Global tensions are pushing cyber activity toward dangerous territory

Global tensions are pushing cyber activity toward dangerous territory 2026-01-19 at 09:48 By Sinisa Markovic Cybersecurity is inseparable from geopolitics. Ongoing conflicts, sanctions, trade wars, geoeconomic rivalry, and technological competition have pushed state competition into cyberspace. States use cyber operations to exert pressure on rivals, enabling disruption without resorting to conventional weapons. Infrastructure vulnerabilities in

Global tensions are pushing cyber activity toward dangerous territory Read More »

A new European standard outlines security requirements for AI

A new European standard outlines security requirements for AI 2026-01-19 at 09:19 By Anamarija Pogorelec The European Telecommunications Standards Institute (ETSI) has released a new European Standard that addresses a growing concern for security teams working with AI. The standard, ETSI EN 304 223, sets baseline cybersecurity requirements for AI models and systems intended for

A new European standard outlines security requirements for AI Read More »

Bytebase: Open-source database DevOps tool

Bytebase: Open-source database DevOps tool 2026-01-19 at 09:19 By Sinisa Markovic Bytebase is a DevOps platform for managing database schema and data changes through a structured workflow. It provides a central place for teams to submit change requests, run reviews, and track executions across environments. The open-source edition is designed for organizations that want to

Bytebase: Open-source database DevOps tool Read More »

When the Olympics connect everything, attackers pay attention

When the Olympics connect everything, attackers pay attention 2026-01-19 at 09:19 By Anamarija Pogorelec Global sporting events bring a surge of network traffic, new systems, and short term partnerships. That mix draws attention from cyber threat actors who see opportunity in scale and distraction. A new Palo Alto Networks threat study on the Milan Cortina

When the Olympics connect everything, attackers pay attention Read More »

Review: AI Strategy and Security

Review: AI Strategy and Security 2026-01-19 at 09:00 By Mirko Zorz AI Strategy and Security is a guide for organizations planning enterprise AI programs. The book targets technology leaders, security professionals, and executives responsible for strategy, governance, and operational execution. It treats AI adoption as an organizational discipline that spans planning, staffing, security engineering, risk

Review: AI Strategy and Security Read More »

Cyber risk keeps winning, even as AI takes over

Cyber risk keeps winning, even as AI takes over 2026-01-19 at 07:00 By Anamarija Pogorelec Cyber risk continues to dominate global business concerns, with AI rising quickly alongside it. According to a new risk survey from Allianz, both are influencing how organizations plan for disruption, resilience, and recovery across regions and industries. Cyber incidents stay

Cyber risk keeps winning, even as AI takes over Read More »

Week in review: PoC for FortiSIEM flaw released, Rakuten Viber CISO/CTO on messaging risks

Week in review: PoC for FortiSIEM flaw released, Rakuten Viber CISO/CTO on messaging risks 2026-01-18 at 11:22 By Help Net Security Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: What security teams can learn from torrent metadata Security teams often spend time sorting through logs and alerts that

Week in review: PoC for FortiSIEM flaw released, Rakuten Viber CISO/CTO on messaging risks Read More »

Cisco fixes AsyncOS vulnerability exploited in zero-day attacks (CVE-2025-20393)

Cisco fixes AsyncOS vulnerability exploited in zero-day attacks (CVE-2025-20393) 2026-01-16 at 17:05 By Zeljka Zorz Cisco has finally shipped security updates for its Email Security Gateway and Secure Email and Web Manager devices, which fix CVE-2025-20393, a vulnerability in the devices’ AsyncOS that has been exploited as a zero-day by suspected Chinese attackers since at

Cisco fixes AsyncOS vulnerability exploited in zero-day attacks (CVE-2025-20393) Read More »

Product showcase: Penetration test reporting with PentestPad

Product showcase: Penetration test reporting with PentestPad 2026-01-16 at 09:57 By Help Net Security If you’ve done a pentest before, you know things can get messy fast. You start organized, but a few hours in, notes are scattered, screenshots have odd filenames, and small details get lost. PentestPad was built to help with that, not

Product showcase: Penetration test reporting with PentestPad Read More »

Ransomware activity never dies, it multiplies

Ransomware activity never dies, it multiplies 2026-01-16 at 09:57 By Sinisa Markovic Ransomware attacks kept climbing through 2025, even as major criminal groups collapsed and reformed. A new study conducted by the Symantec and Carbon Black Threat Hunter Team shows that disruption inside the ransomware economy slowed activity only briefly, while extortion methods expanded and

Ransomware activity never dies, it multiplies Read More »

As AI raises the stakes, app modernization and security are becoming inseparable

As AI raises the stakes, app modernization and security are becoming inseparable 2026-01-16 at 08:47 By Anamarija Pogorelec Security leaders are under pressure to support AI programs that move from pilots into production. New Cloudflare research suggests that success depends less on experimentation and more on disciplined application modernization tied closely to security strategy. The

As AI raises the stakes, app modernization and security are becoming inseparable Read More »

Who’s on the other end? Rented accounts are stress-testing trust in gig platforms

Who’s on the other end? Rented accounts are stress-testing trust in gig platforms 2026-01-16 at 08:02 By Anamarija Pogorelec Fraud has become a routine part of gig work for many earners, and the ways workers respond are creating new security problems for platforms. A recent TransUnion study of U.S. gig workers shows broad exposure to

Who’s on the other end? Rented accounts are stress-testing trust in gig platforms Read More »

New intelligence is moving faster than enterprise controls

New intelligence is moving faster than enterprise controls 2026-01-16 at 08:02 By Anamarija Pogorelec AI is being integrated into core enterprise systems faster than many organizations can secure and govern it. A new global study from NTT shows companies expanding AI deployment while gaps in infrastructure readiness, data integrity controls, and governance frameworks continue to

New intelligence is moving faster than enterprise controls Read More »

New infosec products of the week: January 16, 2026

New infosec products of the week: January 16, 2026 2026-01-16 at 07:01 By Anamarija Pogorelec Here’s a look at the most interesting products from the past week, featuring releases from Acronis, JumpCloud, Noction, and SpyCloud. Acronis Archival Storage brings compliance-ready, S3-compatible cold storage to MSPs Acronis announced the launch of Acronis Archival Storage, a long-term,

New infosec products of the week: January 16, 2026 Read More »

Sensitive data of Eurail, Interrail travelers compromised in data breach

Sensitive data of Eurail, Interrail travelers compromised in data breach 2026-01-15 at 17:04 By Zeljka Zorz A data breach at the Netherlands-based company that sells Eurail (Interrail) train passes resulted in the compromise of personal and sensitive information belonging to an as-yet unknown number of travelers. What data was accessed? Eurail B.V. operates on behalf

Sensitive data of Eurail, Interrail travelers compromised in data breach Read More »

PoC exploit for critical FortiSIEM vulnerability released (CVE-2025-64155)

PoC exploit for critical FortiSIEM vulnerability released (CVE-2025-64155) 2026-01-15 at 15:27 By Zeljka Zorz A critical vulnerability (CVE-2025-64155) in Fortinet’s FortiSIEM security platform has now been accompanied by publicly released proof-of-concept (PoC) exploit code, raising the urgency for organizations to patch immediately. About CVE-2025-64155 CVE-2025-64155 may allow unauthenticated, remote attackers to execute unauthorized code or

PoC exploit for critical FortiSIEM vulnerability released (CVE-2025-64155) Read More »

Scroll to Top