Website profile

Help Net Security

Cybersecurity news with a focus on enterprise security. Discover what matters in the world of information security today.

  • 76articles · 30d
  • 12+ hour agolatest article
  • Aug 16, 2026earliest in window
  • 8%with images
  • 310avg words
articles per day
Categories
  • Science & Technology 57
  • Computers & Electronics 44
  • Software 41
  • News 17
  • Crime & Law 13
  • Software Dev. 10
  • Conflict, War & Peace 8
  • Internet & Telecom 5

Please confirm you are human

This browser or connection looks automated. Press and continuously hold the control for 3 seconds to enable Google-hosted web results and, when separately allowed, AI-assisted answers.

A successful check enables 100 search requests. Interactive access does not authorize scraping, systematic collection, or reuse of search output.

Hold with a pointer, or hold Space or Enter.

News


helpnetsecurity.com > 09/10/2026 > wordpress-automated-plugin-security-review

WordPress adds automated security checks to block risky plugin releases

4+ day, 7+ hour ago   (460+ words) WordPress’ automated security review will now assess every plugin release before it is distributed through the WordPress.org update API. Releases considered a potential security risk will be blocked automatically. “A plugin can be secure today and introduce a vulnerability,…...


helpnetsecurity.com > 09/10/2026 > product-showcase-gitguardian-honeytoken-decoy-service

Product showcase: GitGuardian Honeytoken catches credential theft as it happens

4+ day, 11+ hour ago   (730+ words) Credential harvesting on developer machines has widened. Earlier infostealers worked from a short list of known targets, mostly browser stores and a few cloud credential paths. The families active now cast a much wider net. Shai-Hulud, for instance, ran a…...


helpnetsecurity.com > 09/09/2026 > f5-big-ip-apm-rootkit-hides-web-shell-in-memory

Hackers deploy Linux rootkit on F5 BIG-IP APM devices, hiding web shell in memory

5+ day, 6+ hour ago   (508+ words) A rootkit found on hacked F5 BIG-IP APM devices skips the usual step of writing a web shell to disk, hiding it in memory instead, according to Sophos. F5 BIG-IP APM provides access policy enforcement to secure access to apps, APIs, and…...


helpnetsecurity.com > 09/08/2026 > jellyfin-12-0-security-fixes

Jellyfin 12.0 security fixes arrive alongside the removal of legacy client logins

6+ day, 9+ hour ago   (335+ words) Jellyfin shipped version 12.0 of its media server. Several of the security fixes in it block requests built to reach files outside the folders the server is supposed to hand out. The rest of the security work touches first-run setup, plugin…...


helpnetsecurity.com > 09/07/2026 > connectwise-screenconnect-file-transfer-flaw

Attackers spread malware through ScreenConnect file transfers

1+ week, 8+ hour ago   (324+ words) A file transfer flaw in ScreenConnect Remote Access Support and Access sessions affects both Cloud and On-Premise deployments, ConnectWise confirmed. “A CVE identifier and an official fix will be issued within the week,” the company wrote in its September 3 advisory....


helpnetsecurity.com > 09/03/2026 > github-threat-intelligence-feed-ingestion

Your threat feed is someone else's database: What ingesting malware intel at scale takes

1+ week, 4+ day ago   (354+ words) There are five lessons that survived production and none of them care whether you are ingesting package malware reports, OSV records, or ISAC indicators. If community data feeds your automation, they apply to you. Provenance belongs on the same shelf…...


helpnetsecurity.com > 09/02/2026 > sonicwall-sma-1000-cve-2026-83548-cve-2026-83549-zero-day-attacks

SonicWall SMA 1000 appliances under attack via zero-day flaws

1+ week, 5+ day ago   (225+ words) The SonicWall SMA 1000 series is a line of secure remote access appliances (SSL VPN gateways) built for scale. They are used regularly by medium to large enterprises, government agencies, and managed security service providers. CVE-2026-83549 is an OS command injection…...


helpnetsecurity.com > 09/02/2026 > f5-waf-anomaly-detection-ai-threats

F5 speeds up virtual patching to counter AI-driven threats

1+ week, 5+ day ago   (653+ words) F5 announced innovations to block frontier AI-driven threats in the data path and enable faster virtual patching, giving security leaders time to make intelligent risk-based decisions rather than reactive operational compromises. With new features such as anomaly detection and agentic threat…...


helpnetsecurity.com > 09/02/2026 > vali-cyber-zerolock-5-hypervisor-security

Vali Cyber ZeroLock 5 brings MFA to the hypervisor command line

1+ week, 5+ day ago   (474+ words) Vali Cyber released ZeroLock 5, a major release focused on closing the two most dangerous gaps in hypervisor security: insider threats and stolen credentials on ESX and Linux hosts. Over the past two years, ransomware operators and nation-state actors alike have…...


helpnetsecurity.com > 08/25/2026 > citrix-uniconos-dual-boot-endpoint-resiliency-capability

Citrix UniconOS dual boot turns Windows endpoints into their own recovery device

2+ week, 6+ day ago   (510+ words) Citrix announced Citrix UniconOS dual boot, a new endpoint resiliency capability designed to help organizations recover access to work in minutes — without spare hardware, central reimaging or prolonged business downtime. Available now as part of Citrix UniconOS Release 7 2607, dual boot…...