Descope introduces dedicated identity infrastructure for AI agents and MCP ecosystemsHelp Net Security·Jan 27, 00:00 UTC · Jan 27, 2026AI safety & security30
F5 NGINXaaS for Google Cloud protects cloud-native applicationsHelp Net Security·Jan 13, 00:00 UTC · Jan 13, 2026AI tools & infra30
How to Streamline Zero Trust Using the Shared Signals FrameworkThe Hacker News·Dec 9, 11:30 UTC · Dec 9, 2025Exploit / PoC60
Strix: Open-source AI agents for penetration testingHelp Net Security·Nov 17, 00:00 UTC · Nov 17, 2025Exploit / PoC45
Multiple Vulnerabilities in GoSign Desktop lead to Remote Code ExecutionSecurity Affairs·Nov 15, 21:40 UTC · Nov 15, 2025Vulnerability155
Critical FortiWeb flaw under attack, allowing complete compromiseSecurity Affairs·Nov 14, 12:41 UTC · Nov 14, 2025Exploit / PoC in the wildCVE-2022-4068460
A new way to think about zero trust for workloadsHelp Net Security·Nov 3, 00:00 UTC · Nov 3, 2025Research30
Hard-coded credentials found in Moxa industrial security appliances, routers (CVE-2025-6950)Help Net Security·Oct 20, 00:00 UTC · Oct 20, 2025Vulnerability in the wildCVE-2025-6950CVE-2025-6892CVE-2025-6893+2 CVEs60
ERMAC 3.0 source code leak reveals expanding threatSecurity Affairs·Aug 23, 22:41 UTC · Aug 23, 2025Vulnerability42
ERMAC V3.0 Banking Trojan Source Code Leak Exposes Full Malware InfrastructureThe Hacker News·Aug 19, 06:09 UTC · Aug 19, 2025Malware55
Microsoft Flaw Still Exposes SaaS Apps Two Years After DiscoveryInfosecurity Magazine·Jun 25, 14:30 UTC · Jun 25, 2025Vulnerability55
Malicious PyPI Packages Exploit Instagram and TikTok APIs to Validate User AccountsThe Hacker News·May 20, 05:49 UTC · May 20, 2025Malware142
Cisco fixed a critical flaw in its IOS XE Wireless ControllerSecurity Affairs·May 8, 13:14 UTC · May 8, 2025VulnerabilityCVE-2025-2018860
A flaw in Verizon ’s iOS Call Filter app exposed call records of millionsSecurity Affairs·Apr 5, 18:59 UTC · Apr 5, 2025Vulnerability42
NetBird: Open-source network securityHelp Net Security·Apr 2, 08:46 UTC · Apr 2, 2025AI tools & infra130
Microsoft SharePoint Connector Flaw Could've Enabled Credential Theft Across Power PlatformThe Hacker News·Feb 6, 04:41 UTC · Feb 6, 2025Vulnerability130
New infosec products of the week: November 8, 2024Help Net Security·Nov 8, 00:00 UTC · Nov 8, 2024Policy & legal30
Neon Authorize: Granular access controls at the database layerHelp Net Security·Oct 30, 00:00 UTC · Oct 30, 2024Industry30
Reducing credential complexity with identity federationHelp Net Security·Oct 1, 00:00 UTC · Oct 1, 2024Vulnerability55
Overlooked essentials: API security best practicesHelp Net Security·Sep 19, 11:38 UTC · Sep 19, 2024Data breach60
New 'ALBeast' Misconfiguration Exposes Weakness in AWS Application Load BalancerThe Hacker News·Aug 26, 03:55 UTC · Aug 26, 2024Vulnerability30
Nuclei: Open-source vulnerability scannerHelp Net Security·Aug 26, 00:00 UTC · Aug 26, 2024Vulnerability30
Finding Azurescape – Cross-Account Container Takeover in Azure Container InstancesPalo Alto Unit 42·Jun 6, 01:32 UTC · Jun 6, 2024Exploit / PoC in the wildCVE-2019-5736CVE-2018-1002102160
HARmor: Open-source tool for sanitizing and securing HAR filesHelp Net Security·Apr 19, 15:21 UTC · Apr 19, 2024Vulnerability55
Why CISA is Warning CISOs About a Breach at SisenseKrebs on Security·Apr 11, 21:08 UTC · Apr 11, 2024Vulnerability55
Google Kubernetes Misconfig Lets Any Gmail Account Control Your ClustersThe Hacker News·Feb 2, 04:52 UTC · Feb 2, 2024Vulnerability55
Act Now: CISA Flags Active Exploitation of Microsoft SharePoint VulnerabilityThe Hacker News·Jan 17, 01:49 UTC · Jan 17, 2024Vulnerability in the wildCVE-2023-29357CVE-2023-2495560
CISA adds Ivanti and Microsoft SharePoint bugs to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jan 11, 15:33 UTC · Jan 11, 2024Exploit / PoC in the wildCVE-2024-21887CVE-2023-46805CVE-2023-2935760
Design flaw leaves Google Workspace vulnerable for takeoverHelp Net Security·Nov 28, 00:00 UTC · Nov 28, 2023Exploit / PoC57
AI disinformation campaigns pose major threat to 2024 electionsHelp Net Security·Nov 20, 13:26 UTC · Nov 20, 2023Threat actor60
Venafi Control Plane enhancements help enterprises manage machine identities of all kindsHelp Net Security·Sep 18, 00:00 UTC · Sep 18, 2023Policy & legal30
Taking over Milesight UR32L routers behind a VPN: 22 vulnerabilities and a full chainCisco Talos·Jul 6, 15:38 UTC · Jul 6, 2023VulnerabilityCVE-2023-22319CVE-2023-2390247
Microsoft Releases Updates to Patch Critical Flaws in Windows and Other SoftwareThe Hacker News·Jun 15, 00:00 UTC · Jun 15, 2023Vulnerability in the wildCVE-2023-3079CVE-2023-29357CVE-2023-29363+5 CVEs60
Microsoft discloses 5 critical vulnerabilities in June's Patch Tuesday, no zeroCisco Talos·Jun 13, 18:43 UTC · Jun 13, 2023Vulnerability in the wildCVE-2023-29363CVE-2023-32014CVE-2023-32015+7 CVEs60
June 2023 Patch Tuesday: Critical patches for Microsoft Windows, SharePoint, ExchangeHelp Net Security·Jun 13, 00:00 UTC · Jun 13, 2023Vulnerability in the wildCVE-2023-3079CVE-2023-29357CVE-2023-29363+4 CVEs60
F5 protects digital services with AI-powered app and API security capabilitiesHelp Net Security·Apr 5, 00:00 UTC · Apr 5, 2023Threat actor45
OpenAI Reveals Redis Bug Behind ChatGPT User Data Exposure IncidentThe Hacker News·Mar 25, 07:10 UTC · Mar 25, 2023Vulnerability55
A flaw in connected car service SiriusXM allows remote car hackingSecurity Affairs·Dec 6, 14:18 UTC · Dec 6, 2022Vulnerability30
SiriusXM Vulnerability Lets Hackers Remotely Unlock and Start Connected CarsThe Hacker News·Dec 6, 04:59 UTC · Dec 6, 2022Vulnerability30