Week in review

Week in review: WSUS vulnerability exploited to drop Skuld infostealer, PoC for BIND 9 DNS flaw published

Week in review: WSUS vulnerability exploited to drop Skuld infostealer, PoC for BIND 9 DNS flaw published 2025-11-02 at 11:24 By Help Net Security Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Can your earbuds recognize you? Researchers are working on it Biometric authentication has moved from fingerprints […]

Week in review: WSUS vulnerability exploited to drop Skuld infostealer, PoC for BIND 9 DNS flaw published Read More »

Week in review: Actively exploited Windows SMB flaw, trusted OAuth apps turned into cloud backdoors

Week in review: Actively exploited Windows SMB flaw, trusted OAuth apps turned into cloud backdoors 2025-10-26 at 11:46 By Help Net Security Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Most AI privacy research looks the wrong way Most research on LLM privacy has focused on the wrong

Week in review: Actively exploited Windows SMB flaw, trusted OAuth apps turned into cloud backdoors Read More »

Week in review: F5 data breach, Microsoft patches three actively exploited zero-days

Week in review: F5 data breach, Microsoft patches three actively exploited zero-days 2025-10-19 at 19:21 By Help Net Security Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Building a healthcare cybersecurity strategy that works In this Help Net Security interview, Wayman Cummings, CISO at Ochsner Health, talks about

Week in review: F5 data breach, Microsoft patches three actively exploited zero-days Read More »

Week in review: Hackers extorting Salesforce, CentreStack 0-day exploited

Week in review: Hackers extorting Salesforce, CentreStack 0-day exploited 2025-10-12 at 11:02 By Help Net Security Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: How to get better results from bug bounty programs without wasting money The wrong bug bounty strategy can flood your team with low-value reports.

Week in review: Hackers extorting Salesforce, CentreStack 0-day exploited Read More »

Week in review: Many Cisco ASA firewalls still unsecure, hackers claim Red Hat’s GitLab breach

Week in review: Many Cisco ASA firewalls still unsecure, hackers claim Red Hat’s GitLab breach 2025-10-05 at 11:02 By Help Net Security Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Keeping the internet afloat: How to protect the global cable network The resilience of the world’s submarine cable

Week in review: Many Cisco ASA firewalls still unsecure, hackers claim Red Hat’s GitLab breach Read More »

Week in review: Cisco ASA zero-day vulnerabilities exploited, Fortra GoAnywhere instances at risk

Week in review: Cisco ASA zero-day vulnerabilities exploited, Fortra GoAnywhere instances at risk 2025-09-28 at 11:19 By Help Net Security Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: How Juventus protects fans, revenue, and reputation during matchdays In this Help Net Security interview, Mirko Rinaldini, Head of ICT

Week in review: Cisco ASA zero-day vulnerabilities exploited, Fortra GoAnywhere instances at risk Read More »

Week in review: Chrome 0-day fixed, npm supply chain attack, LinkedIn data used for AI

Week in review: Chrome 0-day fixed, npm supply chain attack, LinkedIn data used for AI 2025-09-21 at 11:06 By Help Net Security Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Most enterprise AI use is invisible to security teams Most enterprise AI activity is happening without the knowledge

Week in review: Chrome 0-day fixed, npm supply chain attack, LinkedIn data used for AI Read More »

Week in review: Salesloft Drift breach investigation results, malicious GitHub Desktop installers

Week in review: Salesloft Drift breach investigation results, malicious GitHub Desktop installers 2025-09-14 at 11:06 By Help Net Security Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Salesloft Drift data breach: Investigation reveals how attackers got in The attack that resulted in the Salesloft Drift data breach started

Week in review: Salesloft Drift breach investigation results, malicious GitHub Desktop installers Read More »

Week in review: Several companies affected by the Salesloft Drift breach, Sitecore 0-day vulnerability

Week in review: Several companies affected by the Salesloft Drift breach, Sitecore 0-day vulnerability 2025-09-07 at 11:04 By Help Net Security Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Zscaler, Palo Alto Networks, SpyCloud among the affected by Salesloft Drift breach In the wake of last week’s revelation

Week in review: Several companies affected by the Salesloft Drift breach, Sitecore 0-day vulnerability Read More »

Week in review: 300k+ Plex Media Server instances still vulnerable to attack, exploited Git RCE flaw

Week in review: 300k+ Plex Media Server instances still vulnerable to attack, exploited Git RCE flaw 2025-08-31 at 13:37 By Help Net Security Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: 300k+ Plex Media Server instances still vulnerable to attack via CVE-2025-34158 Over 300,000 internet-facing Plex Media Server

Week in review: 300k+ Plex Media Server instances still vulnerable to attack, exploited Git RCE flaw Read More »

Week in review: Covertly connected and insecure Android VPN apps, Apple fixes exploited zero-day

Week in review: Covertly connected and insecure Android VPN apps, Apple fixes exploited zero-day 2025-08-24 at 11:03 By Help Net Security Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Android VPN apps used by millions are covertly connected AND insecure Three families of Android VPN apps, with a

Week in review: Covertly connected and insecure Android VPN apps, Apple fixes exploited zero-day Read More »

Week in review: 2 threat actors exploiting WinRAR 0-day, Microsoft fixes “BadSuccessor” Kerberos flaw

Week in review: 2 threat actors exploiting WinRAR 0-day, Microsoft fixes “BadSuccessor” Kerberos flaw 2025-08-17 at 12:29 By Help Net Security Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: WinRAR zero-day was exploited by two threat actors (CVE-2025-8088) The RomCom attackers aren’t the only ones that have been

Week in review: 2 threat actors exploiting WinRAR 0-day, Microsoft fixes “BadSuccessor” Kerberos flaw Read More »

Week in review: SonicWall firewalls targeted in ransomware attacks, Black Hat USA 2025

Week in review: SonicWall firewalls targeted in ransomware attacks, Black Hat USA 2025 2025-08-10 at 11:01 By Help Net Security Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Black Hat USA 2025 Black Hat USA 2025 took place at the Mandalay Bay Convention Center in Las Vegas. Explore

Week in review: SonicWall firewalls targeted in ransomware attacks, Black Hat USA 2025 Read More »

Week in review: Food sector cybersecurity risks, cyber threats to space infrastructure

Week in review: Food sector cybersecurity risks, cyber threats to space infrastructure 2025-08-03 at 10:07 By Help Net Security Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Review: LLM Engineer’s Handbook For all the excitement around LLMs, practical, engineering-focused guidance remains surprisingly hard to find. LLM Engineer’s Handbook

Week in review: Food sector cybersecurity risks, cyber threats to space infrastructure Read More »

Week in review: Microsoft SharePoint servers under attack, landing your first cybersecurity job

Week in review: Microsoft SharePoint servers under attack, landing your first cybersecurity job 2025-07-27 at 11:36 By Help Net Security Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Microsoft pins on-prem SharePoint attacks on Chinese threat actors As Microsoft continues to update its customer guidance for protecting on-prem

Week in review: Microsoft SharePoint servers under attack, landing your first cybersecurity job Read More »

Week in review: Google fixes zero-day vulnerability in Chrome, critical SQL injection flaw in FortiWeb

Week in review: Google fixes zero-day vulnerability in Chrome, critical SQL injection flaw in FortiWeb 2025-07-20 at 11:02 By Help Net Security Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Update Google Chrome to fix actively exploited zero-day (CVE-2025-6558) For the fifth time this year, Google has patched

Week in review: Google fixes zero-day vulnerability in Chrome, critical SQL injection flaw in FortiWeb Read More »

Week in review: Microsoft fixes wormable RCE bug on Windows, check for CitrixBleed 2 exploitation

Week in review: Microsoft fixes wormable RCE bug on Windows, check for CitrixBleed 2 exploitation 2025-07-13 at 10:21 By Help Net Security Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Microsoft fixes critical wormable Windows flaw (CVE-2025-47981) For July 2025 Patch Tuesday, Microsoft has released patches for 130

Week in review: Microsoft fixes wormable RCE bug on Windows, check for CitrixBleed 2 exploitation Read More »

Week in review: Sudo local privilege escalation flaws fixed, Google patches actively exploited Chrome

Week in review: Sudo local privilege escalation flaws fixed, Google patches actively exploited Chrome 2025-07-06 at 11:09 By Help Net Security Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Sudo local privilege escalation vulnerabilities fixed (CVE-2025-32462, CVE-2025-32463) If you haven’t recently updated the Sudo utility on your Linux

Week in review: Sudo local privilege escalation flaws fixed, Google patches actively exploited Chrome Read More »

Week in review: Backdoor found in SOHO devices running Linux, high-risk WinRAR RCE flaw patched

Week in review: Backdoor found in SOHO devices running Linux, high-risk WinRAR RCE flaw patched 2025-06-29 at 10:45 By Help Net Security Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Stealthy backdoor found hiding in SOHO devices running Linux SecurityScorecard’s STRIKE team has uncovered a network of compromised

Week in review: Backdoor found in SOHO devices running Linux, high-risk WinRAR RCE flaw patched Read More »

Week in review: Keyloggers found on Outlook login pages, police shut down dark web drug market

Week in review: Keyloggers found on Outlook login pages, police shut down dark web drug market 2025-06-22 at 09:33 By Help Net Security Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Researchers unearth keyloggers on Outlook login pages Unknown threat actors have compromised internet-accessible Microsoft Exchange Servers of

Week in review: Keyloggers found on Outlook login pages, police shut down dark web drug market Read More »

Scroll to Top