Aggregator
Sensitive government personnel data posted online, Spanish police arrest suspect
The Spanish National Police arrested a man in Granada for allegedly leaking personal data belonging to members of several sensitive state institutions. According to police, the suspect published the information on multiple online platforms, exposing personnel associated with organizations including the National Cybersecurity Institute (INCIBE), the National Security Council, the National Police, the Civil Guard, the State Attorney General’s Office, the Ministry of Finance, and the Tax Agency. “The investigation, led by Madrid’s Court of … More →
The post Sensitive government personnel data posted online, Spanish police arrest suspect appeared first on Help Net Security.
Переполнение буфера в Netlogon: злоумышленники удаленно выполняют код на серверах Windows
黑客劫持数千网站实施 ClickFix 和 FakeUpdate 攻击
AI 时代,攻防先行——齐向东在2026年BCS大会的演讲全文
Red Hat 官方 NPM 账号被入侵,软件包被植入恶意程序
Поздравляем, вы заблокировали сами себя. Как война с VPN уничтожает отечественную ИТ-индустрию
RSA extends passwordless authentication to Linux environments
RSA has expanded its passwordless authentication capabilities to Linux environments, advancing its goal of delivering secure, password-free access for every user in every environment. Linux is ubiquitous in enterprise infrastructure, powering servers, developer workstations, and critical operational environments across industries from financial services to government. Despite its reach, Linux users have historically been underserved by passwordless solutions, often left to rely on legacy credential-based access while users elsewhere deployed modern passwordless form factors. The Linux … More →
The post RSA extends passwordless authentication to Linux environments appeared first on Help Net Security.
Играешь в игры, а твой профиль ломает сайты. Хакеры нашли гениальное применение Steam
Anthropic 申请 IPO
Срочно меняйте ключи: Red Hat оказалась в центре атаки на цепочку поставок через npm
Zero trust physical security needs trust decisions at the edge
In this interview with Help Net Security, Chuck Davis, VP, Global Information Security at Hikvision, explains how zero trust applies to physical security systems like cameras and door controllers. He breaks down how to make trust decisions at the edge without recreating old perimeter assumptions, why these devices should be treated as IT assets, and what the Mirai botnet taught the industry. Davis also covers posture assessment for devices that cannot run standard agents, and … More →
The post Zero trust physical security needs trust decisions at the edge appeared first on Help Net Security.
Хакеры решили испортить лето инженерам Microsoft. Детали полного обхода BitLocker выйдут уже в июне
Why you need BAS and autonomous pentesting together
Most security teams know the drill: A new autonomous penetration testing tool gets deployed, and the first run is genuinely impressive. The dashboard surfaces critical findings, maps lateral movement paths nobody had documented before, and exposes a legacy service account that has been sitting idle for years. Great. The red team feels like it’s found a force multiplier. The CISO feels like the “human element” of validation has finally been automated away. Then, troublingly, by … More →
The post Why you need BAS and autonomous pentesting together appeared first on Help Net Security.
КНДР обманывает программистов, Китай следит за нефтью, а иранские хакеры сидят без интернета. ESET подвела итоги полугодия
お知らせ:JPCERT/CC Eyes「TSUBAMEレポート Overflow(2026年1~3月)」
This AI model backdoor attack stays hidden until you customize the model
Most teams that deploy AI start with a backbone model. They download a large pre-trained system, adapt it to a specific task, and put it into production. The download step carries a security question: the origin of the model. A research team built an attack called BadBone. It plants a backdoor inside a backbone model. Downstream tasks that adapt the model inherit the backdoor. The name points at the target. Corrupt the skeleton, and systems … More →
The post This AI model backdoor attack stays hidden until you customize the model appeared first on Help Net Security.