News

NATO greenlights iPhone and iPad for classified information handling

NATO greenlights iPhone and iPad for classified information handling 2026-02-27 at 12:18 By Sinisa Markovic Apple confirmed that the iPhone and iPad have been approved for use with classified information in NATO restricted environments. The devices will no longer require special software or settings to handle NATO restricted-level information. “This achievement recognizes that Apple has […]

NATO greenlights iPhone and iPad for classified information handling Read More »

Ransomware activity peaks outside business hours

Ransomware activity peaks outside business hours 2026-02-27 at 12:18 By Anamarija Pogorelec Intrusions continue to center on credential access and timed execution outside standard business hours. The Sophos Active Adversary Report 2026 analyzes 661 incident response and managed detection and response cases handled between November 1, 2024 and October 31, 2025, spanning organizations in 70 […]

Ransomware activity peaks outside business hours Read More »

Android app uses Bluetooth signals to detect nearby smart glasses

Android app uses Bluetooth signals to detect nearby smart glasses 2026-02-27 at 10:17 By Anamarija Pogorelec Smart glasses with built-in cameras are showing up in more public spaces, and a growing number of people want a way to know when one is nearby. An Android app called Nearby Glasses, developed by Yves Jeanrenaud, attempts to […]

Android app uses Bluetooth signals to detect nearby smart glasses Read More »

New infosec products of the month: February 2026

New infosec products of the month: February 2026 2026-02-27 at 08:18 By Anamarija Pogorelec Here’s a look at the most interesting products from the past month, featuring releases from Aikido Security, Avast, Armis, Black Duck, Compliance Scorecard, Fingerprint, Gremlin, Impart Security, Portnox, Redpanda, Socure, SpecterOps, Veza, and Virtana. Gremlin launches Disaster Recovery Testing for zone, […]

New infosec products of the month: February 2026 Read More »

The CISO role keeps getting heavier

The CISO role keeps getting heavier 2026-02-27 at 08:00 By Anamarija Pogorelec Personal liability is becoming a routine part of the CISO job. In Splunk’s 2026 CISO Report, titled From Risk to Resilience in the AI Era, 78% of CISOs said they are concerned about their own liability for security incidents, up from 56% last […]

The CISO role keeps getting heavier Read More »

Industrial networks continue to leak onto the internet

Industrial networks continue to leak onto the internet 2026-02-27 at 07:30 By Mirko Zorz Industrial operators continue to run remote access portals, building automation servers, and other operational technology services on public IP address ranges. Palo Alto Networks, Siemens, and Idaho National Laboratory describe the scope of that exposure in the Intelligence-Driven Active Defense Report […]

Industrial networks continue to leak onto the internet Read More »

AWS Security Hub Extended brings enterprise security under one roof

AWS Security Hub Extended brings enterprise security under one roof 2026-02-26 at 23:18 By Anamarija Pogorelec AWS Security Hub Extended is a plan within Security Hub that simplifies how customers procure, deploy, and integrate a full-stack enterprise security solution across endpoint, identity, email, network, data, browser, cloud, AI, and security operations. The plan allows customers […]

AWS Security Hub Extended brings enterprise security under one roof Read More »

Telegram rises to top spot in job scam activity

Telegram rises to top spot in job scam activity 2026-02-26 at 19:37 By Sinisa Markovic Encrypted messaging platforms are becoming a primary channel for Authorised Push Payment (APP) fraud, with Telegram representing a growing share of reported cases, according to the Revolut report. APP scam origination by % social media platform (Source: Revolut) The platform […]

Telegram rises to top spot in job scam activity Read More »

Fraudsters integrate ChatGPT into global scam campaigns

Fraudsters integrate ChatGPT into global scam campaigns 2026-02-26 at 19:37 By Anamarija Pogorelec AI models are being folded into fraud and influence operations that follow long standing tactics. A February 2026 update to OpenAI’s Disrupting Malicious Uses of Our Models report details how ChatGPT and related API access were used in romance scams, fake legal […]

Fraudsters integrate ChatGPT into global scam campaigns Read More »

Scattered Lapsus$ Hunters seeks women for vishing attacks

Scattered Lapsus$ Hunters seeks women for vishing attacks 2026-02-26 at 14:55 By Zeljka Zorz The Scattered Lapsus$ Hunters (SLH) hacking collective has launched a recruitment push aimed specifically at women, offering cash payments for participating in voice-phishing (vishing) attacks. A few days ago, threat intelligence firm Dataminr detected posts on a public Telegram channel advertising […]

Scattered Lapsus$ Hunters seeks women for vishing attacks Read More »

Samsung’s Galaxy S26 turns privacy into a visible and invisible feature

Samsung’s Galaxy S26 turns privacy into a visible and invisible feature 2026-02-26 at 12:27 By Sinisa Markovic The Samsung Galaxy S26 series is out, offering plenty of security features that protect personal data while providing users with transparency and control over how their information is used. The feature that grabbed the spotlight is the built-in […]

Samsung’s Galaxy S26 turns privacy into a visible and invisible feature Read More »

Wireshark 4.6.4 resolves dissector flaws, plugin compatibility issue

Wireshark 4.6.4 resolves dissector flaws, plugin compatibility issue 2026-02-26 at 10:49 By Anamarija Pogorelec Packet inspection remains a routine activity across enterprise networks, incident response workflows, and malware investigations. Continuous use places long-term stability and parsing accuracy at the center of daily operations. Wireshark version 4.6.4 addresses two vulnerabilities affecting protocol dissectors and resolves a […]

Wireshark 4.6.4 resolves dissector flaws, plugin compatibility issue Read More »

The $19.5 million insider risk problem

The $19.5 million insider risk problem 2026-02-26 at 09:09 By Mirko Zorz Routine employee activity across corporate systems carries an average annual cost of $19.5 million per organization. That figure comes from the 2026 Cost of Insider Risks Global Report, conducted by the Ponemon Institute and based on data from 354 organizations that experienced one […]

The $19.5 million insider risk problem Read More »

Open-source security debt grows across commercial software

Open-source security debt grows across commercial software 2026-02-26 at 08:36 By Mirko Zorz Open source code sits inside nearly every commercial application, and development teams continue to add new dependencies. Black Duck’s 2026 Open Source Security and Risk Analysis Report data shows that nearly all audited codebases contain open source components, with average component counts […]

Open-source security debt grows across commercial software Read More »

Review: Digital Forensics, Investigation, and Response, 5th Edition

Review: Digital Forensics, Investigation, and Response, 5th Edition 2026-02-26 at 08:01 By Mirko Zorz Digital Forensics, Investigation, and Response, 5th Edition presents a structured survey of the digital forensics discipline. The book spans foundational principles, platform specific analysis, specialized branches, and incident response integration. About the author Chuck Easttom has many years of practical experience […]

Review: Digital Forensics, Investigation, and Response, 5th Edition Read More »

AI-driven DAST reduces manual setup and surfaces exploitable vulnerabilities

AI-driven DAST reduces manual setup and surfaces exploitable vulnerabilities 2026-02-26 at 07:35 By Mirko Zorz In this Help Net Security interview, Joni Klippert, CEO at StackHawk, discusses what defines DAST coverage in 2026 and why scan completion does not equal security. She explains how AI-driven DAST testing automates attack surface discovery, supports business-logic testing in […]

AI-driven DAST reduces manual setup and surfaces exploitable vulnerabilities Read More »

Hottest cybersecurity open-source tools of the month: February 2026

Hottest cybersecurity open-source tools of the month: February 2026 2026-02-26 at 07:07 By Anamarija Pogorelec This month’s roundup features exceptional open-source cybersecurity tools that are gaining attention for strengthening security across various environments. Pompelmi: Open-source secure file upload scanning for Node.js Software teams building services in JavaScript are adding more layers of defense to handle […]

Hottest cybersecurity open-source tools of the month: February 2026 Read More »

Threat actor leveraged Cisco SD-WAN zero-day since 2023 (CVE-2026-20127)

Threat actor leveraged Cisco SD-WAN zero-day since 2023 (CVE-2026-20127) 2026-02-25 at 19:04 By Zeljka Zorz A “highly sophisticated” cyber threat actor has been exploiting a zero-day authentication bypass vulnerability (CVE-2026-20127) in Cisco Catalyst SD-WAN Controller (formerly vSmart), Cisco has announced today. The vulnerability was reported by Australian Signals Directorate’s Australian Cyber Security Centre, who said […]

Threat actor leveraged Cisco SD-WAN zero-day since 2023 (CVE-2026-20127) Read More »

Fake Zoom meeting leads to silent install of surveillance software

Fake Zoom meeting leads to silent install of surveillance software 2026-02-25 at 18:16 By Zeljka Zorz Malwarebytes researchers have uncovered a fake (but convincing) Zoom meeting page that downloads surveillance software on Windows computers and tricks users into running it. According to Microsoft MVP Steven Lim, the page has claimed nearly 1,500 victims in 12 […]

Fake Zoom meeting leads to silent install of surveillance software Read More »

Anthropic’s Remote Control feature brings Claude Code to mobile devices

Anthropic’s Remote Control feature brings Claude Code to mobile devices 2026-02-25 at 14:39 By Sinisa Markovic Anthropic has introduced a new Claude Code feature called Remote Control, allowing developers to continue a local coding session from a phone, tablet, or any web browser. The feature is rolling out as a research preview to Max users. […]

Anthropic’s Remote Control feature brings Claude Code to mobile devices Read More »

Scroll to Top