Install
Cybersecurity news with a focus on enterprise security. Discover what matters in the world of information security today.
- 88articles · 30d
- 12+ hour agolatest article
- Aug 16, 2026earliest in window
- 8%with images
- 312avg words
- Science & Technology 66
- Computers & Electronics 47
- Software 46
- News 19
- Crime & Law 15
- Software Dev. 12
- Conflict, War & Peace 8
- Internet & Telecom 8
Please confirm you are human
This browser or connection looks automated. Press and continuously hold the control for 3 seconds to enable Google-hosted web results and, when separately allowed, AI-assisted answers.
A successful check enables 100 search requests. Interactive access does not authorize scraping, systematic collection, or reuse of search output.
News
WordPress adds automated security checks to block risky plugin releases
3+ day, 10+ hour ago (460+ words) WordPress’ automated security review will now assess every plugin release before it is distributed through the WordPress.org update API. Releases considered a potential security risk will be blocked automatically. “A plugin can be secure today and introduce a vulnerability,…...
Cybercriminals are building phishing pages that exist only inside victims' browsers
3+ day, 14+ hour ago (352+ words) A phishing campaign routes victims through genuine Microsoft OAuth and Teams infrastructure before showing them a fake login page built entirely inside their own browser, according to researchers at Barracuda. “Instead of delivering a phishing page from a web server,…...
Hackers deploy Linux rootkit on F5 BIG-IP APM devices, hiding web shell in memory
4+ day, 9+ hour ago (508+ words) A rootkit found on hacked F5 BIG-IP APM devices skips the usual step of writing a web shell to disk, hiding it in memory instead, according to Sophos. F5 BIG-IP APM provides access policy enforcement to secure access to apps, APIs, and…...
Google fixes yet another actively exploited Chrome zero-day (CVE-2026-87491)
4+ day, 12+ hour ago (226+ words) Google has fixed 230 vulnerabilities in Chrome, including a zero-day flaw, CVE-2026-87491, with an in-the-wild exploit. “Google is aware that an exploit for CVE-2026-87491 exists in the wild,” the company said in a Tuesday security advisory. The fix has been shipped…...
BleachBit 6.0.4 fixes secure wiping that skipped clusters on Windows
4+ day, 15+ hour ago (275+ words) The open source cleaner BleachBit reached version 6.0.4 this week, erasing caches, browser traces, and files on Windows, Linux, and now macOS. If you shredded a sensitive file on Windows with an earlier build, parts of it may still sit on…...
Jellyfin 12.0 security fixes arrive alongside the removal of legacy client logins
5+ day, 11+ hour ago (335+ words) Jellyfin shipped version 12.0 of its media server. Several of the security fixes in it block requests built to reach files outside the folders the server is supposed to hand out. The rest of the security work touches first-run setup, plugin…...
Ransomware negotiation tactics have turned into a business process
5+ day, 14+ hour ago (153+ words) In this Help Net Security video, Dave Ross, Senior Director of the Intelligence Fusion Team at Intel 471, explains what happens behind the scenes during ransomware negotiations. Ross walks through the tactics groups use once an attack begins, from research on…...
Attackers spread malware through ScreenConnect file transfers
6+ day, 11+ hour ago (324+ words) A file transfer flaw in ScreenConnect Remote Access Support and Access sessions affects both Cloud and On-Premise deployments, ConnectWise confirmed. “A CVE identifier and an official fix will be issued within the week,” the company wrote in its September 3 advisory....
Google patches actively exploited Chrome zero-day (CVE-2026-85046)
1+ week, 2+ day ago (191+ words) Google has patched 12 vulnerabilities affecting its popular Chrome browser, among them CVE-2026-85046, which has been exploited in the wild. “Google is aware that an exploit for CVE-2026-85046 exists in the wild,” the company said in a Thursday security advisory. The…...
Microsoft Teams is about to make QR code phishing much harder
1+ week, 2+ day ago (241+ words) Microsoft is preparing a new feature for Teams users that will help them stay safe from QR code phishing. Teams will automatically hide QR codes sent by people outside the organization. Users will need to reveal the image first before…...