News

AI adoption is outpacing the safeguards around it

AI adoption is outpacing the safeguards around it 2026-04-14 at 12:59 By Anamarija Pogorelec AI is becoming part of professional and private life, reaching mainstream adoption faster than the personal computer or the internet. These systems are tested in reasoning, safety, and real-world tasks, but the reliability of those measurements remains uncertain. The 2026 AI […]

AI adoption is outpacing the safeguards around it Read More »

Review: The Psychology of Information Security

Review: The Psychology of Information Security 2026-04-14 at 09:15 By Mirko Zorz Security controls fail when they are designed without regard for the people who must use them. That is the central argument of Leron Zinatullin’s second edition, and it is an argument he builds methodically across 17 chapters that draw from organizational psychology, change […]

Review: The Psychology of Information Security Read More »

Agentic AI memory attacks spread across sessions and users, and most organizations aren’t ready

Agentic AI memory attacks spread across sessions and users, and most organizations aren’t ready 2026-04-14 at 09:15 By Mirko Zorz In this Help Net Security interview, Idan Habler, AI Security Researcher at Cisco, breaks down a threat most security teams haven’t named yet: agentic memory as an attack surface. Habler walks through MemoryTrap, a disclosed […]

Agentic AI memory attacks spread across sessions and users, and most organizations aren’t ready Read More »

29 million leaked secrets in 2025: Why AI agents credentials are out of control

29 million leaked secrets in 2025: Why AI agents credentials are out of control 2026-04-14 at 08:11 By Help Net Security AI agents need credentials to work. They authenticate with LLM platforms, connect to databases, call SaaS APIs, access cloud resources, and orchestrate across dozens of external services. Every integration point requires an identity. Most […]

29 million leaked secrets in 2025: Why AI agents credentials are out of control Read More »

Zero trust at year two: What nobody planned for

Zero trust at year two: What nobody planned for 2026-04-14 at 08:11 By Help Net Security In this Help Net Security video, Jim Alkove, CEO of Oleria, walks through where zero trust programs typically stand one to two years in. Most organizations have made gains in endpoint security and network segmentation, but identity remains the […]

Zero trust at year two: What nobody planned for Read More »

Cybersecurity jobs available right now: April 14, 2026

Cybersecurity jobs available right now: April 14, 2026 2026-04-14 at 07:03 By Anamarija Pogorelec Cyber Security Engineer/Application Security Specialist Tecnots | India | On-site – View job details As a Cyber Security Engineer/Application Security Specialist, you will integrate security into the SDLC, perform application security reviews, and support secure APIs, authentication, and data protection. You […]

Cybersecurity jobs available right now: April 14, 2026 Read More »

Hackers hijacked CPUID downloads, served STX RAT to victims

Hackers hijacked CPUID downloads, served STX RAT to victims 2026-04-13 at 16:08 By Zeljka Zorz If you tried to download software from CPUID’s website late last week, you might have downloaded malware instead. “Investigations are still ongoing, but it appears that a secondary feature (basically a side API) was compromised for approximately six hours between […]

Hackers hijacked CPUID downloads, served STX RAT to victims Read More »

Rockstar Games receives “pay or leak” warning after cyberattack

Rockstar Games receives “pay or leak” warning after cyberattack 2026-04-13 at 15:44 By Anamarija Pogorelec Rockstar Games, the developer behind titles such as Grand Theft Auto and Red Dead Redemption, has confirmed a cyberattack claimed by hacking group ShinyHunters, which says it accessed the company’s Snowflake environment and obtained data. The attackers exploited Anodot, a […]

Rockstar Games receives “pay or leak” warning after cyberattack Read More »

$12 million frozen, 20,000 victims identified in crypto scam crackdown

$12 million frozen, 20,000 victims identified in crypto scam crackdown 2026-04-13 at 15:44 By Sinisa Markovic More than $12 million has been frozen, and over 20,000 victims have been identified in an international law enforcement operation targeting cryptocurrency and investment scammers. Authorities also uncovered more than $45 million in suspected cryptocurrency fraud losses worldwide. One […]

$12 million frozen, 20,000 victims identified in crypto scam crackdown Read More »

Google makes it harder to exploit Pixel 10 modem firmware

Google makes it harder to exploit Pixel 10 modem firmware 2026-04-13 at 15:44 By Sinisa Markovic Google is working to improve the security of Pixel phones by focusing on the cellular baseband modem, a part of the device that handles communication with mobile networks and processes external data. In the Pixel 9, the company introduced […]

Google makes it harder to exploit Pixel 10 modem firmware Read More »

Adobe issues emergency fix for Acrobat Reader flaw exploited in the wild (CVE-2026-34621)

Adobe issues emergency fix for Acrobat Reader flaw exploited in the wild (CVE-2026-34621) 2026-04-13 at 13:22 By Zeljka Zorz Adobe has pushed out an emergency security update for Adobe Acrobat Reader, patching a zero-day vulnerability (CVE-2026-34621) exploited in the wild since November 2025. About CVE-2026-34621 CVE-2026-34621 is a critical prototype pollution vulnerability – a type […]

Adobe issues emergency fix for Acrobat Reader flaw exploited in the wild (CVE-2026-34621) Read More »

Seized VerifTools servers expose 915,655 fake IDs, 8 arrested

Seized VerifTools servers expose 915,655 fake IDs, 8 arrested 2026-04-13 at 13:22 By Anamarija Pogorelec On April 7 and 8, Dutch police arrested eight suspects in a nationwide operation targeting users of the VerifTools platform as part of an identity fraud investigation. The suspects, all men aged 20 to 34, are accused of identity fraud, […]

Seized VerifTools servers expose 915,655 fake IDs, 8 arrested Read More »

ZeroID: Open-source identity platform for autonomous AI agents

ZeroID: Open-source identity platform for autonomous AI agents 2026-04-13 at 09:02 By Mirko Zorz ZeroID is an open-source identity platform that implements an identity and credentialing layer specifically for autonomous agents and multi-agent systems. The attribution problem The core issue ZeroID targets is attribution in agentic workflows. When an orchestrator agent spawns sub-agents to carry […]

ZeroID: Open-source identity platform for autonomous AI agents Read More »

Fixing vulnerability data quality requires fixing the architecture first

Fixing vulnerability data quality requires fixing the architecture first 2026-04-13 at 09:02 By Mirko Zorz In this Help Net Security interview, Art Manion, Deputy Director at Tharros, examines why vulnerability data across repositories stays inconsistent and hard to trust. The problem starts with systems not designed to collect or manage that data well. They introduce […]

Fixing vulnerability data quality requires fixing the architecture first Read More »

MITRE releases a shared fraud-cyber framework built from real attack data

MITRE releases a shared fraud-cyber framework built from real attack data 2026-04-13 at 09:02 By Mirko Zorz Financial fraud losses in the United States reached $16.6 billion in 2024, up from $4.2 billion in 2020. Behind those numbers is a structural problem: the teams responsible for stopping fraud, fraud investigators and cybersecurity analysts, have historically […]

MITRE releases a shared fraud-cyber framework built from real attack data Read More »

Why manual certificate management is running out of time

Why manual certificate management is running out of time 2026-04-13 at 07:32 By Help Net Security In this video, John Murray, Senior Vice President of Sales at GlobalSign, explains what’s changing in the certificate industry and what companies need to do about it. Certificate validity periods are shrinking, which means companies will need to rotate […]

Why manual certificate management is running out of time Read More »

Bringing governance and visibility to machine and AI identities

Bringing governance and visibility to machine and AI identities 2026-04-13 at 07:32 By Mirko Zorz In this Help Net Security interview, Archit Lohokare, CEO of AppViewX, explains how the rise of AI marked a turning point where machine and AI agent identities began converging into a single problem. Drawing on his experience across IBM and […]

Bringing governance and visibility to machine and AI identities Read More »

The fully free Linux OS Trisquel gets a major update with version 12.0 Ecne

The fully free Linux OS Trisquel gets a major update with version 12.0 Ecne 2026-04-13 at 02:01 By Anamarija Pogorelec Trisquel GNU/Linux, a free operating system aimed at home users, small enterprises, and educational centers, released version 12.0. The release, codenamed Ecne, is declared production-ready and builds on the previous version, Aramo, with changes to […]

The fully free Linux OS Trisquel gets a major update with version 12.0 Ecne Read More »

Week in review: Windows zero-day exploit leaked, Patch Tuesday forecast

Week in review: Windows zero-day exploit leaked, Patch Tuesday forecast 2026-04-12 at 13:59 By Help Net Security Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Cloudflare moves up its post-quantum deadline as researchers narrow the path to Q-Day Cloudflare announced it is targeting 2029 to complete post-quantum security […]

Week in review: Windows zero-day exploit leaked, Patch Tuesday forecast Read More »

ClickFix campaign delivers Mac malware via fake Apple page

ClickFix campaign delivers Mac malware via fake Apple page 2026-04-10 at 17:22 By Zeljka Zorz Security researchers at Jamf have uncovered a new ClickFix-style attack targeting Mac users via a fake Apple-themed webpage offering instructions on how to “reclaim disk space on your Mac”. The malicious page (Source: Jamf) ClickFix for everybody ClickFix is a […]

ClickFix campaign delivers Mac malware via fake Apple page Read More »

Scroll to Top