News

OpenAI updates Europe privacy policy, adding new data categories

OpenAI updates Europe privacy policy, adding new data categories 2026-02-09 at 13:17 By Anamarija Pogorelec OpenAI has updated its Europe-facing privacy policy following the November 2024 EU revision, clarifying scope, expanding coverage, and detailing user controls. The updated document is longer, with dedicated sections for data controls and practical resources. It explains key controls and […]

OpenAI updates Europe privacy policy, adding new data categories Read More »

TikTok under EU pressure to change its addictive algorithm

TikTok under EU pressure to change its addictive algorithm 2026-02-09 at 13:11 By Sinisa Markovic The European Commission has issued preliminary findings that say TikTok breaches the Digital Services Act due to its addictive design. The Commission opened a formal investigation into TikTok in February 2024. The probe examined whether the platform meets its obligations […]

TikTok under EU pressure to change its addictive algorithm Read More »

United Airlines CISO on building resilience when disruption is inevitable

United Airlines CISO on building resilience when disruption is inevitable 2026-02-09 at 09:09 By Mirko Zorz Aviation runs on complex digital systems built for stability, safety, and long lifecycles. That reality creates a unique cybersecurity challenge for airlines, where disruption can quickly become an operational and public trust crisis. In this Help Net Security interview, […]

United Airlines CISO on building resilience when disruption is inevitable Read More »

AI agents behave like users, but don’t follow the same rules

AI agents behave like users, but don’t follow the same rules 2026-02-09 at 08:19 By Anamarija Pogorelec Security and governance approaches to autonomous AI agents rely on static credentials, inconsistent controls, and limited visibility. Securing these agents requires the same rigor and traceability applied to human users, according to Cloud Security Alliance’s Securing Autonomous AI […]

AI agents behave like users, but don’t follow the same rules Read More »

Allama: Open-source AI security automation

Allama: Open-source AI security automation 2026-02-09 at 08:19 By Sinisa Markovic Allama is an open-source security automation platform that lets teams build visual workflows for threat detection and response. It includes integrations with 80+ types of tools and services typical in security operations, including SIEM systems, endpoint detection and response products, identity providers, and ticketing […]

Allama: Open-source AI security automation Read More »

Week in review: Notepad++ supply chain attack details and targets, Patch Tuesday forecast

Week in review: Notepad++ supply chain attack details and targets, Patch Tuesday forecast 2026-02-08 at 11:00 By Help Net Security Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Global Threat Map: Open-source real-time situational awareness platform Global Threat Map is an open-source project offering security teams a live […]

Week in review: Notepad++ supply chain attack details and targets, Patch Tuesday forecast Read More »

CISA orders US federal agencies to replace unsupported edge devices

CISA orders US federal agencies to replace unsupported edge devices 2026-02-06 at 18:24 By Zeljka Zorz The US Cybersecurity and Infrastructure Security Agency (CISA) issued a new binding operational directive aimed at reducing a long-standing cyber risk across federal networks: outdated “edge devices” that are not longer supported by vendors and aren’t receiving timely security […]

CISA orders US federal agencies to replace unsupported edge devices Read More »

State-backed phishing attacks targeting military officials and journalists on Signal

State-backed phishing attacks targeting military officials and journalists on Signal 2026-02-06 at 16:53 By Zeljka Zorz German security authorities are warning that a likely state-backed hacking group is engaged in attempts at phishing senior political figures, military officials, diplomats, and investigative journalists across Germany and Europe via Signal. The authorities also noted that while these […]

State-backed phishing attacks targeting military officials and journalists on Signal Read More »

Poland’s energy control systems were breached through exposed VPN access

Poland’s energy control systems were breached through exposed VPN access 2026-02-06 at 16:27 By Sinisa Markovic On 29 December 2025, coordinated cyberattacks unfolded across Poland’s critical infrastructure, targeting energy and industrial organizations. The attackers struck numerous wind and solar farms, a private manufacturing company, and a heat and power (CHP) plant, but failed to negatively […]

Poland’s energy control systems were breached through exposed VPN access Read More »

Ransomware attackers are exploiting critical SmarterMail vulnerability (CVE-2026-24423)

Ransomware attackers are exploiting critical SmarterMail vulnerability (CVE-2026-24423) 2026-02-06 at 13:12 By Zeljka Zorz For the third time in two weeks, CISA added a vulnerability (CVE-2026-24423) affecting SmarterTools’ SmarterMail email and collaboration server to its Known Exploited Vulnerabilities catalog, and this one is being exploited in ransomware attacks. A glut of SmarterMail vulnerabilities On January […]

Ransomware attackers are exploiting critical SmarterMail vulnerability (CVE-2026-24423) Read More »

Claude Opus 4.6 improves agentic performance and model safety

Claude Opus 4.6 improves agentic performance and model safety 2026-02-06 at 12:13 By Sinisa Markovic Claude Opus 4.6 builds on earlier releases with improved coding performance and more consistent behavior in complex tasks. Opus 4.6 finds real vulnerabilities in codebases better than any other model (Source: Anthropic) According to Anthropic, the model applies more deliberate […]

Claude Opus 4.6 improves agentic performance and model safety Read More »

February 2026 Patch Tuesday forecast: Lots of OOB love this month

February 2026 Patch Tuesday forecast: Lots of OOB love this month 2026-02-06 at 09:54 By Help Net Security Valentine’s Day is just around the corner and Microsoft has been giving us a lot of love with a non-stop supply of patches starting with January 2026 Patch Tuesday. The January releases addressed 92 vulnerabilities in Windows […]

February 2026 Patch Tuesday forecast: Lots of OOB love this month Read More »

Mobile privacy audits are getting harder

Mobile privacy audits are getting harder 2026-02-06 at 09:28 By Anamarija Pogorelec Mobile apps routinely collect and transmit personal data in ways that are difficult for users, developers, and regulators to verify. Permissions can reveal what an app can access, and privacy policies can claim what an app should do, yet neither reliably shows what […]

Mobile privacy audits are getting harder Read More »

The hidden cost of putting off security decisions

The hidden cost of putting off security decisions 2026-02-06 at 08:01 By Help Net Security In this Help Net Security video, Hanah Darley, Chief AI Officer, Geordie AI, talks about how putting off security risk decisions creates long-term costs that often stay hidden. Drawing on her work with CISOs and security leaders, she shows how […]

The hidden cost of putting off security decisions Read More »

New infosec products of the week: February 6, 2026

New infosec products of the week: February 6, 2026 2026-02-06 at 08:01 By Anamarija Pogorelec Here’s a look at the most interesting products from the past week, featuring releases from Avast, Fingerprint, Gremlin, and Socure. Gremlin launches Disaster Recovery Testing for zone, region, and datacenter failovers Gremlin, the proactive reliability platform, launched Disaster Recovery Testing: […]

New infosec products of the week: February 6, 2026 Read More »

CISA confirms exploitation of VMware ESXi flaw by ransomware attackers

CISA confirms exploitation of VMware ESXi flaw by ransomware attackers 2026-02-05 at 18:17 By Zeljka Zorz CVE-2025-22225, a VMware ESXi arbitrary write vulnerability, is being used in ransomware campaigns, CISA confirmed on Wednesday by updating the vulnerability’s entry in its Known Exploited Vulnerabilities (KEV) catalog. Researchers linked VMware ESXi zero-day trio to single exploit toolkit […]

CISA confirms exploitation of VMware ESXi flaw by ransomware attackers Read More »

OpenAI Frontier organizes AI agents under one system

OpenAI Frontier organizes AI agents under one system 2026-02-05 at 17:20 By Sinisa Markovic OpenAI introduced Frontier, a platform designed to organize AI agents that perform business tasks within internal systems and workflows. The platform connects data from multiple internal systems including customer relationship management tools, ticketing platforms, and data warehouses. This integration creates a […]

OpenAI Frontier organizes AI agents under one system Read More »

Why a decade-old EnCase driver still works as an EDR killer

Why a decade-old EnCase driver still works as an EDR killer 2026-02-05 at 14:02 By Zeljka Zorz Attackers are leaning on a new EDR killer malware that can shut down 59 widely used endpoint security products by misusing a kernel driver that once shipped with Guidance Software’s EnCase digital forensics tool, Huntress researchers warn. This […]

Why a decade-old EnCase driver still works as an EDR killer Read More »

International sting dismantles illegal streaming empire serving millions

International sting dismantles illegal streaming empire serving millions 2026-02-05 at 14:02 By Sinisa Markovic Actions by authorities from Italy, Romania, Spain, the United Kingdom, Canada, Kosovo and South Korea, supported by Eurojust and Europol, led to the seizure of multiple illegal streaming services. A total of 31 suspected members have been linked to the operation. […]

International sting dismantles illegal streaming empire serving millions Read More »

GitHub enables multi-agent AI coding inside repository workflows

GitHub enables multi-agent AI coding inside repository workflows 2026-02-05 at 13:02 By Anamarija Pogorelec GitHub has expanded Agents HQ, enabling AI coding agents such as GitHub Copilot, Claude by Anthropic, and OpenAI Codex to execute development tasks directly within GitHub and developer editors while preserving repository context, session history, and review workflows. Copilot Pro+ and […]

GitHub enables multi-agent AI coding inside repository workflows Read More »

Scroll to Top