Aggregator
CVE-2025-36911
海盗湾在被警方搜查 20 年后
ФСБ раскрыла масштабную операцию: российскую элиту прослушивали через телефоны
Sensitive government personnel data posted online, Spanish police arrest suspect
The Spanish National Police arrested a man in Granada for allegedly leaking personal data belonging to members of several sensitive state institutions. According to police, the suspect published the information on multiple online platforms, exposing personnel associated with organizations including the National Cybersecurity Institute (INCIBE), the National Security Council, the National Police, the Civil Guard, the State Attorney General’s Office, the Ministry of Finance, and the Tax Agency. “The investigation, led by Madrid’s Court of … More →
The post Sensitive government personnel data posted online, Spanish police arrest suspect appeared first on Help Net Security.
Переполнение буфера в Netlogon: злоумышленники удаленно выполняют код на серверах Windows
黑客劫持数千网站实施 ClickFix 和 FakeUpdate 攻击
AI 时代,攻防先行——齐向东在2026年BCS大会的演讲全文
Red Hat 官方 NPM 账号被入侵,软件包被植入恶意程序
Поздравляем, вы заблокировали сами себя. Как война с VPN уничтожает отечественную ИТ-индустрию
RSA extends passwordless authentication to Linux environments
RSA has expanded its passwordless authentication capabilities to Linux environments, advancing its goal of delivering secure, password-free access for every user in every environment. Linux is ubiquitous in enterprise infrastructure, powering servers, developer workstations, and critical operational environments across industries from financial services to government. Despite its reach, Linux users have historically been underserved by passwordless solutions, often left to rely on legacy credential-based access while users elsewhere deployed modern passwordless form factors. The Linux … More →
The post RSA extends passwordless authentication to Linux environments appeared first on Help Net Security.
Играешь в игры, а твой профиль ломает сайты. Хакеры нашли гениальное применение Steam
Anthropic 申请 IPO
Срочно меняйте ключи: Red Hat оказалась в центре атаки на цепочку поставок через npm
GoDaddy found malware on 1,980 WordPress sites using Steam as C2 infrastructure
Zero trust physical security needs trust decisions at the edge
In this interview with Help Net Security, Chuck Davis, VP, Global Information Security at Hikvision, explains how zero trust applies to physical security systems like cameras and door controllers. He breaks down how to make trust decisions at the edge without recreating old perimeter assumptions, why these devices should be treated as IT assets, and what the Mirai botnet taught the industry. Davis also covers posture assessment for devices that cannot run standard agents, and … More →
The post Zero trust physical security needs trust decisions at the edge appeared first on Help Net Security.
Хакеры решили испортить лето инженерам Microsoft. Детали полного обхода BitLocker выйдут уже в июне
Why you need BAS and autonomous pentesting together
Most security teams know the drill: A new autonomous penetration testing tool gets deployed, and the first run is genuinely impressive. The dashboard surfaces critical findings, maps lateral movement paths nobody had documented before, and exposes a legacy service account that has been sitting idle for years. Great. The red team feels like it’s found a force multiplier. The CISO feels like the “human element” of validation has finally been automated away. Then, troublingly, by … More →
The post Why you need BAS and autonomous pentesting together appeared first on Help Net Security.