The hacking of internet-exposed, vulnerable Citrix NetScaler ADC and Gateway deployments has escalated. What started as stealthy targeting via zero-day…
Category: Help Net Security
LastPass warns employees before they share sensitive data with AI tools
LastPass has announced an expansion of its Business Max offering to include AI Monitoring & Protect and Web Monitoring & Protect, new visibility and…
Postman adds security controls for AI agents, APIs, and MCP servers
Postman has announced the general availability of Fabric Gateway, a protocol-agnostic control plane for governing how AI agents, LLMs, and MCP servers…
Webinar: Closing the accountability gap in AI-assisted delivery
Source control records who committed code. It does not record who made the decisions behind it, and that gap is widening as AI agents take on more of the…
Vega II brings security-trained AI and lasting memory to the SOC
Vega has introduced Vega II, its biggest platform release since emerging from stealth. The update brings frontier AI trained for security operations into…
Meta gives small businesses an AI agent that knows their work
Meta has introduced Muse for Small Business, adding skills and connectors to its personal AI agent to help business owners get work done using the tools…
OpenAI’s GPT-6 Astra ran supply chain attacks despite being told not to
OpenAI’s GPT-6 Astra carried out supply chain attacks on software outside the scope of a security test, according to the UK AI Security Institute (AISI).…
Deepfakes become a board priority once an executive falls for one
Nearly three-quarters of security leaders have encountered or suspect a deepfake attack in the past year, while just 10% say their organizations have…
Malicious Custom GPT on chatgpt.com lures users into installing a RAT
Malware peddlers are using sponsored Google results to push a malicious ChatGPT Custom GPT named “Plus 5.6,” created to lead users to a fake Cloudflare…
Cybersecurity hiring practices leave little room for junior talent
Twenty-minute training sessions that fit into the workweek could help new hires become productive sooner, keep employees’ skills current and build…
Palo Alto Networks and NVIDIA want tighter control over AI agents
Palo Alto Networks is expanding its work with NVIDIA to help companies control what AI agents can access and do. The collaboration covers agent activity,…
Apple squashes zero-day bug exploited in “extremely sophisticated” attack (CVE-2026-86950)
Apple has shipped iOS and macOS security updates to fix an actively exploited zero-day vulnerability (CVE-2026-86950) in the operating systems’ Core…
Cloudflare’s EmDash 1.0 makes sandboxed plugins ask for access first
Cloudflare released EmDash 1.0, a free, open source content management system that locks each sandboxed plugin in its own isolated runtime. A plugin…
Hackers exploit SQL injection flaw to steal patient data from Polish medical software provider
Hackers stole patient data from Qbusoft, a Polish medical software maker, weeks after a breach at another provider exposed records of nearly 19 million…
Claude Sonnet 5.5 gets faster without a price hike
Anthropic has released Claude Sonnet 5.5, an AI model for coding and office work. The company says it responds more than 30% faster than its predecessor…
GitHub’s AI agent found 24 Android app vulnerabilities
GitHub Security Lab researcher Kevin Stubbings built custom AI-driven audit workflows, called taskflows, on top of the lab’s open source Taskflow Agent,…
A four-week plan to tackle vendor concentration risk
In this Help Net Security video, Guilliano Molaire, founder of Skycloak, explains how to map vendor concentration risk. A company may pay 30 vendors and…
Hottest cybersecurity open-source tools of the month: September 2026
Presented here is a curated selection of noteworthy open-source cybersecurity solutions that have drawn recognition for their ability to enhance security…
Cybersecurity jobs available right now: September 29, 2026
Application Security Researcher Novee Security | Israel | Hybrid – View job details As an Application Security Researcher, you will test web applications…
FBI job portals remain offline after ShinyHunters claims breach via PeopleSoft zero-day
The FBI’s online portals for job applicants (at apply.fbijobs.gov) and special agent applicants (at fbijobs.gov/special-agents) are still unavailable,…
