News

Homebrew 7.0.0 is out, here’s what changed for security

Homebrew 7.0.0 is out, here’s what changed for security 2026-09-15 at 03:47 By Sinisa Markovic Homebrew installs command-line software and desktop applications from the terminal on macOS and Linux, and Mac developers use it to set up their machines. On Sunday the project shipped version 7.0.0 and closed eight security advisories with it. The most […]

Homebrew 7.0.0 is out, here’s what changed for security Read More »

Apple parental controls in iOS 27 let kids ask before opening new websites

Apple parental controls in iOS 27 let kids ask before opening new websites 2026-09-15 at 01:37 By Anamarija Pogorelec Apple has overhauled the child-safety tools that ship across iPhone, iPad, and Mac. One idea runs through the redesign. Give a child a device that does very little, then open it up as they’re ready. The […]

Apple parental controls in iOS 27 let kids ask before opening new websites Read More »

Cybersecurity jobs available right now: September 15, 2026

Cybersecurity jobs available right now: September 15, 2026 2026-09-15 at 01:15 By Anamarija Pogorelec AI & Security Architect SecNinjaz Technologies | India | On-site – View job details As an AI & Security Architect, you will design secure and reliable AI agent platforms, including tools, memory, models, evaluations, and backend services. You will define controls […]

Cybersecurity jobs available right now: September 15, 2026 Read More »

ENISA launched the CRA Single Reporting Platform for actively exploited vulnerabilities

ENISA launched the CRA Single Reporting Platform for actively exploited vulnerabilities 2026-09-14 at 15:23 By Sinisa Markovic The EU Agency for Cybersecurity switched on the Cyber Resilience Act‘s Single Reporting Platform on 11 September 2026, the same day the law’s reporting obligations started binding manufacturers. ENISA built the tool and runs its day-to-day operations, a […]

ENISA launched the CRA Single Reporting Platform for actively exploited vulnerabilities Read More »

WhatsApp Restricted Chat locks a conversation to your primary phone

WhatsApp Restricted Chat locks a conversation to your primary phone 2026-09-14 at 11:08 By Sinisa Markovic WhatsApp is building a per-chat setting that keeps a conversation on a single phone. The setting, called Restricted Chat, sits in the Android beta distributed through Google Play as version 2.26.36.5, and it stops the app from syncing a […]

WhatsApp Restricted Chat locks a conversation to your primary phone Read More »

Debian 13.7 ships the fixes behind 92 security advisories, updates 106 packages

Debian 13.7 ships the fixes behind 92 security advisories, updates 106 packages 2026-09-14 at 10:40 By Sinisa Markovic The Debian project shipped Debian 13.7 codenamed “trixie.” The project folded in 92 security advisories it had already published separately, added corrections to 106 source packages, and rebuilt the installer around both. Six of the 92 advisories […]

Debian 13.7 ships the fixes behind 92 security advisories, updates 106 packages Read More »

What we know about the Revolut data breach so far

What we know about the Revolut data breach so far 2026-09-14 at 10:02 By Mirko Zorz Someone impersonating a government agency, using an email address on that agency’s domain, obtained sensitive customer records from Revolut. The bank confirmed the incident on Saturday, September 12. The London-based fintech told TechCrunch that a limited number of customers […]

What we know about the Revolut data breach so far Read More »

Turn it off and on again, but for critical infrastructure

Turn it off and on again, but for critical infrastructure 2026-09-14 at 09:00 By Anamarija Pogorelec Researchers at KTH Royal Institute of Technology built a container replica of a segmented industrial network, attacked it repeatedly across 14 days of running time, and used the captured traffic to train a defense agent that decides on its […]

Turn it off and on again, but for critical infrastructure Read More »

Permify: Open-source authorization as a service

Permify: Open-source authorization as a service 2026-09-14 at 08:30 By Sinisa Markovic Permify is an open-source authorization service that answers access questions at run time: can user X view document Y, which posts can members of team Y edit. It keeps those rules in one place, apart from the application code that would otherwise carry […]

Permify: Open-source authorization as a service Read More »

Cybersecurity attention fades within months after a breach

Cybersecurity attention fades within months after a breach 2026-09-14 at 08:00 By Sinisa Markovic Cybersecurity attention often rises after an incident, then recedes as organizations return to their existing priorities and practices, according to a new ManageEngine survey of 700 IT and cybersecurity leaders in the US and Canada. (Source: ManageEngine) All of them had […]

Cybersecurity attention fades within months after a breach Read More »

Certificate failures can cost firms over $250,000

Certificate failures can cost firms over $250,000 2026-09-14 at 07:30 By Anamarija Pogorelec The move toward 47-day public TLS certificates by 2029 will increase the certificate management workload for enterprises, according to DigiCert’s Certificate Management Outlook. Organizations will need to renew certificates more than eight times as often as under the previous certificate lifecycle and […]

Certificate failures can cost firms over $250,000 Read More »

Week in review: Linux rootkit deployed on F5 BIG-IP APM devices, Cisco FMC bugs exploited

Week in review: Linux rootkit deployed on F5 BIG-IP APM devices, Cisco FMC bugs exploited 2026-09-13 at 11:00 By Help Net Security Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Zero trust AI agents demand a different kind of security In this interview, Chris Webber, VP, Product Marketing […]

Week in review: Linux rootkit deployed on F5 BIG-IP APM devices, Cisco FMC bugs exploited Read More »

AI agents exploited PaperCut flaws to breach 395 organizations

AI agents exploited PaperCut flaws to breach 395 organizations 2026-09-11 at 13:05 By Sinisa Markovic A threat actor built a working exploit for PaperCut print management software, then handed the job of breaking into hundreds of organizations to AI agents that did most of the work on their own, according to GreyNoise. The result was […]

AI agents exploited PaperCut flaws to breach 395 organizations Read More »

IDScan confirms breach after 153 million driver’s licenses leak on dark web

IDScan confirms breach after 153 million driver’s licenses leak on dark web 2026-09-11 at 11:39 By Sinisa Markovic Days after reports linked IDScan to a dark web database holding more than 153 million driver’s license scans, the identity verification company has confirmed hackers accessed customer data stored on its cloud platform. The Louisiana-based firm, which […]

IDScan confirms breach after 153 million driver’s licenses leak on dark web Read More »

Getting a stranger’s phone kicked off the cellular network costs a few dollars

Getting a stranger’s phone kicked off the cellular network costs a few dollars 2026-09-11 at 09:00 By Mirko Zorz Researchers at Michigan State University and three partner schools bought a Samsung Galaxy Z Fold 7, copied the identification number printed on the sealed box, and reported the phone to its carrier as lost. Then they […]

Getting a stranger’s phone kicked off the cellular network costs a few dollars Read More »

AI is changing what Salesforce security needs to govern

AI is changing what Salesforce security needs to govern 2026-09-11 at 07:30 By Anamarija Pogorelec Existing security and governance practices have largely focused on identities, permissions, access, configurations and controls. WithSecure’s Navigating Trust in the Modern Salesforce Ecosystem paper says Salesforce environments also require organizations to understand what information they rely on, how trust extends […]

AI is changing what Salesforce security needs to govern Read More »

Ubuntu 24.04.5 LTS release patches security bugs across ten flavors

Ubuntu 24.04.5 LTS release patches security bugs across ten flavors 2026-09-11 at 07:07 By Anamarija Pogorelec Canonical shipped Ubuntu 24.04.5 LTS, bundling security updates and fixes for high-severity bugs into new installation media for the “Noble Numbat” release. Anyone installing fresh now gets those corrections baked in from the start, cutting the batch of updates […]

Ubuntu 24.04.5 LTS release patches security bugs across ten flavors Read More »

New infosec products of the week: September 11, 2026

New infosec products of the week: September 11, 2026 2026-09-11 at 07:00 By Anamarija Pogorelec Here’s a look at the most interesting products from the past week, featuring releases from Akeyless, Orchid Security, Scytale, and Securin. Securin Platform helps security teams prove when attack paths are closed Securin has announced the general availability of the […]

New infosec products of the week: September 11, 2026 Read More »

Your passkeys can now move between password managers on Android

Your passkeys can now move between password managers on Android 2026-09-10 at 19:00 By Anamarija Pogorelec Google turned on a transfer feature in Android that moves passwords and passkeys straight from one password manager to another, with no file to download along the way. You start it from inside the app you are switching to, […]

Your passkeys can now move between password managers on Android Read More »

Attackers call employees’ personal phones to break into Microsoft 365 accounts

Attackers call employees’ personal phones to break into Microsoft 365 accounts 2026-09-10 at 16:26 By Sinisa Markovic Attackers are calling or texting employees on their personal phones, posing as internal IT staff, in a social engineering campaign that tricks them into handing over access to corporate cloud accounts. Once inside, they pull files and email […]

Attackers call employees’ personal phones to break into Microsoft 365 accounts Read More »

Scroll to Top