News

Attackers exploit critical SharePoint flaw after PoC goes public (CVE-2026-55040)

Attackers exploit critical SharePoint flaw after PoC goes public (CVE-2026-55040) 2026-08-13 at 16:05 By Sinisa Markovic Threat actors have begun exploiting a critical Microsoft SharePoint flaw following the release of proof-of-concept (PoC) exploit code by Rapid7. About CVE-2026-55040 Tracked as CVE-2026-55040, the vulnerability was patched by Microsoft as part of its July 2026 Patch Tuesday […]

Attackers exploit critical SharePoint flaw after PoC goes public (CVE-2026-55040) Read More »

Four corporate investigation mistakes organizations make under pressure

Four corporate investigation mistakes organizations make under pressure 2026-08-13 at 08:00 By Help Net Security In this Help Net Security video, Christine Gadsby, VP and Chief Security Advisor at BlackBerry, explains why corporate investigations go wrong before the forensic team arrives. The first hours matter more than leaders assume. Access gets granted, conversations start, and

Four corporate investigation mistakes organizations make under pressure Read More »

DDoS attacks hit record scale as 1 Tbps+ campaigns become more common

DDoS attacks hit record scale as 1 Tbps+ campaigns become more common 2026-08-13 at 07:30 By Anamarija Pogorelec DDoS attacks grew in scale during the first half of 2026, bringing larger traffic floods, shorter attack durations, and increasingly automated campaigns. Cloudflare’s H1 2026 DDoS Threat Report shows threat actors relying on multi-vector techniques and large-scale

DDoS attacks hit record scale as 1 Tbps+ campaigns become more common Read More »

Product showcase: Is this image real? Slop or Not investigates

Product showcase: Is this image real? Slop or Not investigates 2026-08-13 at 07:00 By Anamarija Pogorelec Slop or Not is an AI text and image detector for iPhone and Mac that runs entirely offline, with no account required. It uses on-device AI models powered by the Apple Neural Engine to detect AI-generated content. According to

Product showcase: Is this image real? Slop or Not investigates Read More »

Wireshark 4.6.8 patches 28 security bugs, nine in file parsers

Wireshark 4.6.8 patches 28 security bugs, nine in file parsers 2026-08-13 at 06:53 By Anamarija Pogorelec Wireshark 4.6.8 fixes 28 security bugs in the protocol analyzer, and nine of them fire when someone opens a saved capture file. Those nine sit in file parsers, the code that reads a capture off disk before any dissection

Wireshark 4.6.8 patches 28 security bugs, nine in file parsers Read More »

A stranger has been reading Salesforce and ServiceNow portals worldwide for 17 months

A stranger has been reading Salesforce and ServiceNow portals worldwide for 17 months 2026-08-12 at 16:51 By Mirko Zorz Most security stories start with something broken. This one starts with everything working as designed. Researchers at Reco have been tracking a campaign they call City-Forum, named after a domain registered in 2002, abandoned, and now

A stranger has been reading Salesforce and ServiceNow portals worldwide for 17 months Read More »

Signal’s new security feature checks if your encrypted chats were tampered with

Signal’s new security feature checks if your encrypted chats were tampered with 2026-08-12 at 16:47 By Sinisa Markovic Signal has introduced a feature called automatic key verification, giving users a new way to confirm that nobody has secretly interfered with their encrypted chats. “Signal is always end-to-end encrypted, and automatic key verification provides an additional,

Signal’s new security feature checks if your encrypted chats were tampered with Read More »

Lazarus hackers pair fake job offers with Windows zero-day exploit

Lazarus hackers pair fake job offers with Windows zero-day exploit 2026-08-12 at 14:48 By Sinisa Markovic The North Korea-linked Lazarus group is using fake job offers, trojanized PDF software and a Windows zero-day in attacks aimed primarily at the defense sector, Check Point researchers have found. The activity is part of Operation Dream Job, a

Lazarus hackers pair fake job offers with Windows zero-day exploit Read More »

Chrome’s anti-abuse protections block 7 billion unwanted Android notifications daily

Chrome’s anti-abuse protections block 7 billion unwanted Android notifications daily 2026-08-12 at 11:36 By Anamarija Pogorelec Google Chrome’s latest measures against abusive web push notifications include automatically revoking notification permissions for inactive and suspicious websites, helping reduce scams, phishing attempts, and other deceptive content. Abusive notifications (Source: Google) Chrome revokes notification permissions for websites users

Chrome’s anti-abuse protections block 7 billion unwanted Android notifications daily Read More »

Split-second deepfake glitch blows digital certificate fraudster’s cover

Split-second deepfake glitch blows digital certificate fraudster’s cover 2026-08-12 at 10:50 By Sinisa Markovic Spanish police have arrested a man in Murcia accused of using deepfake software to trick a certificate provider’s video identity checks in an attempt to obtain digital signatures he could use for financial fraud. According to the police, the man made

Split-second deepfake glitch blows digital certificate fraudster’s cover Read More »

Post-quantum migration gets harder when every user holds a key

Post-quantum migration gets harder when every user holds a key 2026-08-12 at 09:00 By Mirko Zorz In this Help Net Security interview, Christopher Smith, CEO of Quantus, discusses what cryptographic inventories turn up in banks and hospitals, including default passwords and admin keys still held by former employees. He explains where post-quantum key sizes break

Post-quantum migration gets harder when every user holds a key Read More »

PentestGPT: Open-source automated penetration testing agentic framework

PentestGPT: Open-source automated penetration testing agentic framework 2026-08-12 at 08:30 By Anamarija Pogorelec PentestGPT is an open-source penetration testing agent that points a large language model at a target and lets it work. In its default mode it runs recon, then exploit, then walkthrough, each stage feeding the next. Switch it to pentest mode and

PentestGPT: Open-source automated penetration testing agentic framework Read More »

Practical Cybersecurity for Small Water Utilities: 5 Steps to Reduce Operational Risk

Practical Cybersecurity for Small Water Utilities: 5 Steps to Reduce Operational Risk 2026-08-11 at 17:00 By Nolen Johnson Recent cyberattacks against U.S. water and wastewater systems delivered an important reminder: disrupting operational technology (OT) does not always require sophisticated malware or a previously unknown vulnerability. In the July 2026 activity, internet-facing programmable logic controllers (PLCs),

Practical Cybersecurity for Small Water Utilities: 5 Steps to Reduce Operational Risk Read More »

Malicious SIMs can hijack smartphones, steal files, and lock them onto 2G

Malicious SIMs can hijack smartphones, steal files, and lock them onto 2G 2026-08-11 at 15:10 By Sinisa Markovic Researchers have found that compromised or malicious SIM cards can issue commands to some smartphones and cellular-connected devices, allowing attackers to steal information, disrupt communications, downgrade connections to 2G, and in some cases execute code. Tomasz Piotr

Malicious SIMs can hijack smartphones, steal files, and lock them onto 2G Read More »

Ransomware gangs don’t need control system access to disrupt industrial production

Ransomware gangs don’t need control system access to disrupt industrial production 2026-08-11 at 12:32 By Sinisa Markovic Disrupting IT systems that support industrial environments can be enough to interrupt production, even when ransomware operators do not gain direct access to industrial control systems (ICS), according to Dragos. The company identified 1,140 ransomware incidents involving industrial

Ransomware gangs don’t need control system access to disrupt industrial production Read More »

Locking your ssh-agent exposed local-only keys until OpenSSH 10.5

Locking your ssh-agent exposed local-only keys until OpenSSH 10.5 2026-08-11 at 12:15 By Anamarija Pogorelec Lock your ssh-agent and it should sit there refusing to sign anything until you unlock it. In OpenSSH 10.4, locking it also switched off the check that tells the agent whether a request came from your own machine or arrived

Locking your ssh-agent exposed local-only keys until OpenSSH 10.5 Read More »

GPT-5.6-Cyber refuses security researchers’ requests far less often

GPT-5.6-Cyber refuses security researchers’ requests far less often 2026-08-11 at 09:32 By Sinisa Markovic GPT-5.6-Cyber is a new OpenAI model built on GPT-5.6 Sol, trained to find zero-day vulnerabilities and build exploit chains, with fewer refusals on higher-risk, dual-use work. Model is available only through Daybreak Red, the higher tier of OpenAI’s vetted access program

GPT-5.6-Cyber refuses security researchers’ requests far less often Read More »

Who will be the Stanislav Petrov in your organization?

Who will be the Stanislav Petrov in your organization? 2026-08-11 at 09:00 By Help Net Security The recent news coverage of “rogue AI” systems hacking innocent companies reminded me of one of the world’s most unsung heroes and genuinely someone who may well have saved the world. In 1983, the USSR’s early warning systems reported

Who will be the Stanislav Petrov in your organization? Read More »

An AI tool found 84 flaws in 5G network software and 23 of them still have no fix

An AI tool found 84 flaws in 5G network software and 23 of them still have no fix 2026-08-11 at 08:30 By Mirko Zorz Researchers at Nanyang Technological University turned a set of AI agents loose on the software that runs 4G and 5G phone networks, and the agents came back with 84 security flaws

An AI tool found 84 flaws in 5G network software and 23 of them still have no fix Read More »

Previously unseen entry vector used to breach Polish energy plant

Previously unseen entry vector used to breach Polish energy plant 2026-08-11 at 08:00 By Sinisa Markovic The December 29 cyberattack on a Polish combined heat and power (CHP) plant was the first observed case of attackers gaining access to an OT network through a private APN, according to CERT Polska. The private APN is a

Previously unseen entry vector used to breach Polish energy plant Read More »

Scroll to Top