Week in review

Week in review: Cisco patches exploited email gateway 0-day, Revolut breach

Week in review: Cisco patches exploited email gateway 0-day, Revolut breach 2026-09-20 at 11:00 By Help Net Security Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: What we know about the Revolut data breach so far Someone impersonating a government agency, using an email address on that agency’s […]

Week in review: Cisco patches exploited email gateway 0-day, Revolut breach Read More »

Week in review: Linux rootkit deployed on F5 BIG-IP APM devices, Cisco FMC bugs exploited

Week in review: Linux rootkit deployed on F5 BIG-IP APM devices, Cisco FMC bugs exploited 2026-09-13 at 11:00 By Help Net Security Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Zero trust AI agents demand a different kind of security In this interview, Chris Webber, VP, Product Marketing […]

Week in review: Linux rootkit deployed on F5 BIG-IP APM devices, Cisco FMC bugs exploited Read More »

Week in review: Claude accounts compromised through infostealer, Patch Tuesday forecast

Week in review: Claude accounts compromised through infostealer, Patch Tuesday forecast 2026-09-06 at 11:27 By Sinisa Markovic Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Anthropic locks out Claude users after infostealers hijack login sessions Anthropic has started locking users out of their Claude accounts due to their […]

Week in review: Claude accounts compromised through infostealer, Patch Tuesday forecast Read More »

Week in review: Compromised Zimbra servers, previously patched Citrix NetScaler flaw exploited

Week in review: Compromised Zimbra servers, previously patched Citrix NetScaler flaw exploited 2026-08-30 at 11:41 By Anamarija Pogorelec Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Unpatched Zimbra servers are falling to CVE-2026-73570 attacks At least 274 internet-facing Zimbra instances have been compromised by unknown attackers via CVE-2026-73570, […]

Week in review: Compromised Zimbra servers, previously patched Citrix NetScaler flaw exploited Read More »

Week in review: Records allegedly stolen from Azure tenants, Medusa ransomware hits 500+ orgs

Week in review: Records allegedly stolen from Azure tenants, Medusa ransomware hits 500+ orgs 2026-08-23 at 11:00 By Help Net Security Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Windows 11’s strongest security defenses can be bypassed without a screwdriver Researchers from the University of Birmingham and Durham […]

Week in review: Records allegedly stolen from Azure tenants, Medusa ransomware hits 500+ orgs Read More »

Week in review: Salesforce and ServiceNow portals exposed for 17 months, exploited Metabase 0-day

Week in review: Salesforce and ServiceNow portals exposed for 17 months, exploited Metabase 0-day 2026-08-16 at 11:00 By Help Net Security Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: GitHub Dependabot malware alerts now cover eight ecosystems GitHub has flagged npm malware since March 2026. Anyone pulling in […]

Week in review: Salesforce and ServiceNow portals exposed for 17 months, exploited Metabase 0-day Read More »

Week in review: Cisco fixes IMC bug, Patch Tuesday forecast, Black Hat USA 2026

Week in review: Cisco fixes IMC bug, Patch Tuesday forecast, Black Hat USA 2026 2026-08-09 at 11:00 By Anamarija Pogorelec Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Mapping the malware blast radius a single alert won’t show you In this interview with Help Net Security, Mike Wiacek, […]

Week in review: Cisco fixes IMC bug, Patch Tuesday forecast, Black Hat USA 2026 Read More »

Week in review: Claude breached three companies during tests, AD CS domain-takeover PoC released

Week in review: Claude breached three companies during tests, AD CS domain-takeover PoC released 2026-08-02 at 11:00 By Help Net Security Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Nono: Open-source sandbox for AI agents AI coding agents run with the same permissions as their users, meaning they […]

Week in review: Claude breached three companies during tests, AD CS domain-takeover PoC released Read More »

Week in review: ServiceNow pre-auth RCE exploited in the wild, Hugging Face breached

Week in review: ServiceNow pre-auth RCE exploited in the wild, Hugging Face breached 2026-07-26 at 11:00 By Help Net Security Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: AI agents are still logging in as humans Most large companies run more than one AI platform at the same […]

Week in review: ServiceNow pre-auth RCE exploited in the wild, Hugging Face breached Read More »

Week in review: High severity WordPress vulnerabilities, fake OAuth IDs bypass sign-in logs

Week in review: High severity WordPress vulnerabilities, fake OAuth IDs bypass sign-in logs 2026-07-19 at 10:09 By Anamarija Pogorelec Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Two new high severity WordPress vulnerabilities, patch immediately! The 7.0.2 WordPress security release addresses one critical and one high severity security […]

Week in review: High severity WordPress vulnerabilities, fake OAuth IDs bypass sign-in logs Read More »

Week in review: Accenture data breach, great open-source cybersecurity tools

Week in review: Accenture data breach, great open-source cybersecurity tools 2026-07-12 at 11:00 By Help Net Security Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Securing the inbox: Where identity, brand and security meet Getting a verified logo to appear next to your email has traditionally meant having […]

Week in review: Accenture data breach, great open-source cybersecurity tools Read More »

Week in review: SimpleHelp vulnerability exploited, Oracle EBS Payments flaw under attack

Week in review: SimpleHelp vulnerability exploited, Oracle EBS Payments flaw under attack 2026-07-05 at 08:10 By Help Net Security Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Companies keep bolting AI onto their products, and the security bill is coming due Companies keep bolting AI and LLM features […]

Week in review: SimpleHelp vulnerability exploited, Oracle EBS Payments flaw under attack Read More »

Week in review: Fortibleed campaign’s impact on orgs, Cisco Unified CM flaw exploited

Week in review: Fortibleed campaign’s impact on orgs, Cisco Unified CM flaw exploited 2026-06-28 at 11:00 By Help Net Security Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Encrypted DNS still tells an eavesdropper where to look Encrypted DNS runs across much of the Internet. DNS over TLS, […]

Week in review: Fortibleed campaign’s impact on orgs, Cisco Unified CM flaw exploited Read More »

Week in review: 74k Fortinet firewall credentials stolen, Splunk Enterprise RCE under active attack

Week in review: 74k Fortinet firewall credentials stolen, Splunk Enterprise RCE under active attack 2026-06-21 at 11:00 By Help Net Security Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: A hardware neural network backdoor that hides in plain sight Deep learning systems on edge devices often rely on […]

Week in review: 74k Fortinet firewall credentials stolen, Splunk Enterprise RCE under active attack Read More »

Week in review: Exploited Check Point VPN zero-day, Oracle PeopleSoft servers under attack

Week in review: Exploited Check Point VPN zero-day, Oracle PeopleSoft servers under attack 2026-06-14 at 11:00 By Anamarija Pogorelec Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: DockSec: Open-source AI-powered Docker security scanner DockSec is an OWASP Incubator Project that combines three container security scanners with a language-model […]

Week in review: Exploited Check Point VPN zero-day, Oracle PeopleSoft servers under attack Read More »

Week in review: Cisco SD-WAN 0-day exploited, Patch Tuesday forecast

Week in review: Cisco SD-WAN 0-day exploited, Patch Tuesday forecast 2026-06-07 at 12:52 By Help Net Security Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: OWASP Agent Memory Guard: Stop AI agents from being weaponized through their own memory Agent Memory Guard is an open-source runtime defense layer […]

Week in review: Cisco SD-WAN 0-day exploited, Patch Tuesday forecast Read More »

Week in review: Infostealer dropped via FortiClient EMS flaw, exploited Trend Micro Apex One flaw

Week in review: Infostealer dropped via FortiClient EMS flaw, exploited Trend Micro Apex One flaw 2026-05-31 at 11:00 By Help Net Security Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Coinflow CISO on crypto payments security under AI pressure Crypto payment firms sit near the top of the […]

Week in review: Infostealer dropped via FortiClient EMS flaw, exploited Trend Micro Apex One flaw Read More »

Week in review: GitHub breached via poisoned VS Code extension, critical NGINX flaw exploited

Week in review: GitHub breached via poisoned VS Code extension, critical NGINX flaw exploited 2026-05-24 at 11:28 By Help Net Security Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: TeamPCP breached GitHub’s internal codebase via poisoned VS Code extension Following TeamPCP’s claim that they’ve breached GitHub’s own private […]

Week in review: GitHub breached via poisoned VS Code extension, critical NGINX flaw exploited Read More »

Week in review: Cisco patches SD-WAN 0-day, unpatched Microsoft Exchange Server flaw exploited

Week in review: Cisco patches SD-WAN 0-day, unpatched Microsoft Exchange Server flaw exploited 2026-05-17 at 14:40 By Help Net Security Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Review: Foundations of Cybersecurity, 2nd edition Jason Andress has refreshed his introductory security text for No Starch Press. He writes […]

Week in review: Cisco patches SD-WAN 0-day, unpatched Microsoft Exchange Server flaw exploited Read More »

Week in review: cPanel vulnerability actively exploited, DigiCert breach, LinkedIn job scams

Week in review: cPanel vulnerability actively exploited, DigiCert breach, LinkedIn job scams 2026-05-10 at 12:32 By Help Net Security Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Your work apps are quietly handing 19 data points to someone Office work in 2026 relies on mobile apps used alongside […]

Week in review: cPanel vulnerability actively exploited, DigiCert breach, LinkedIn job scams Read More »

Scroll to Top