Website profile

Help Net Security

Cybersecurity news with a focus on enterprise security. Discover what matters in the world of information security today.

  • 76articles · 30d
  • 12+ hour agolatest article
  • Aug 16, 2026earliest in window
  • 8%with images
  • 310avg words
articles per day
Categories
  • Science & Technology 57
  • Computers & Electronics 44
  • Software 41
  • News 17
  • Crime & Law 13
  • Software Dev. 10
  • Conflict, War & Peace 8
  • Internet & Telecom 5

Please confirm you are human

This browser or connection looks automated. Press and continuously hold the control for 3 seconds to enable Google-hosted web results and, when separately allowed, AI-assisted answers.

A successful check enables 100 search requests. Interactive access does not authorize scraping, systematic collection, or reuse of search output.

Hold with a pointer, or hold Space or Enter.

News


helpnetsecurity.com > 09/10/2026 > wordpress-automated-plugin-security-review

WordPress adds automated security checks to block risky plugin releases

4+ day, 7+ hour ago   (460+ words) WordPress’ automated security review will now assess every plugin release before it is distributed through the WordPress.org update API. Releases considered a potential security risk will be blocked automatically. “A plugin can be secure today and introduce a vulnerability,…...


helpnetsecurity.com > 09/10/2026 > product-showcase-gitguardian-honeytoken-decoy-service

Product showcase: GitGuardian Honeytoken catches credential theft as it happens

4+ day, 11+ hour ago   (730+ words) Credential harvesting on developer machines has widened. Earlier infostealers worked from a short list of known targets, mostly browser stores and a few cloud credential paths. The families active now cast a much wider net. Shai-Hulud, for instance, ran a…...


helpnetsecurity.com > 09/09/2026 > f5-big-ip-apm-rootkit-hides-web-shell-in-memory

Hackers deploy Linux rootkit on F5 BIG-IP APM devices, hiding web shell in memory

5+ day, 6+ hour ago   (508+ words) A rootkit found on hacked F5 BIG-IP APM devices skips the usual step of writing a web shell to disk, hiding it in memory instead, according to Sophos. F5 BIG-IP APM provides access policy enforcement to secure access to apps, APIs, and…...


helpnetsecurity.com > 09/09/2026 > bleachbit-6-0-4-released

BleachBit 6.0.4 fixes secure wiping that skipped clusters on Windows

5+ day, 13+ hour ago   (275+ words) The open source cleaner BleachBit reached version 6.0.4 this week, erasing caches, browser traces, and files on Windows, Linux, and now macOS. If you shredded a sensitive file on Windows with an earlier build, parts of it may still sit on…...


helpnetsecurity.com > 09/08/2026 > vishing-microsoft-365-data-theft-extortion

IT help-desk vishing tricks executives into handing over Microsoft 365 access

6+ day, 6+ hour ago   (394+ words) IT help-desk vishing calls, stolen session tokens, and sign-ins routed through residential proxies are behind a wave of data theft and extortion against Microsoft 365 and other SaaS accounts, according to Arctic Wolf. The company is tracking the activity under the…...


helpnetsecurity.com > 09/08/2026 > ransomware-negotiation-tactics-video

Ransomware negotiation tactics have turned into a business process

6+ day, 12+ hour ago   (153+ words) In this Help Net Security video, Dave Ross, Senior Director of the Intelligence Fusion Team at Intel 471, explains what happens behind the scenes during ransomware negotiations. Ross walks through the tactics groups use once an attack begins, from research on…...


helpnetsecurity.com > 09/07/2026 > connectwise-screenconnect-file-transfer-flaw

Attackers spread malware through ScreenConnect file transfers

1+ week, 8+ hour ago   (324+ words) A file transfer flaw in ScreenConnect Remote Access Support and Access sessions affects both Cloud and On-Premise deployments, ConnectWise confirmed. “A CVE identifier and an official fix will be issued within the week,” the company wrote in its September 3 advisory....


helpnetsecurity.com > 09/03/2026 > github-threat-intelligence-feed-ingestion

Your threat feed is someone else's database: What ingesting malware intel at scale takes

1+ week, 4+ day ago   (354+ words) There are five lessons that survived production and none of them care whether you are ingesting package malware reports, OSV records, or ISAC indicators. If community data feeds your automation, they apply to you. Provenance belongs on the same shelf…...


helpnetsecurity.com > 09/02/2026 > sonicwall-sma-1000-cve-2026-83548-cve-2026-83549-zero-day-attacks

SonicWall SMA 1000 appliances under attack via zero-day flaws

1+ week, 5+ day ago   (225+ words) The SonicWall SMA 1000 series is a line of secure remote access appliances (SSL VPN gateways) built for scale. They are used regularly by medium to large enterprises, government agencies, and managed security service providers. CVE-2026-83549 is an OS command injection…...


helpnetsecurity.com > 09/01/2026 > spring-ring-vishing-campaign-microsoft-teams

Vishing campaign abuses Microsoft Teams to give attackers a foothold in company networks

1+ week, 6+ day ago   (462+ words) A coordinated voice-phishing (vishing) campaign, named Spring Ring, used fake IT support accounts on Microsoft Teams to trick employees into installing malware or granting remote access to their computers, according to Unit 42, Palo Alto Networks’ threat intelligence team. The campaign…...