News Archives – Help Net Security Daily information security news with a focus on enterprise security.
- Askeal, the AI cybersecurity assistant that gives verifiable, expert-backed answersby Mirko Zorz on September 1, 2026 at 5:30 am
Askeal takes the opposite approach to omniscient Gen AI: rather than pretending to know everything, it combines AI with community expertise. Vetted vendors, researchers, and practitioners contribute their intelligence and tools to help users conduct manual investigations. The startup, backed by a $1.1 million pre-seed round, is launching the tool with an international community of early testers and contributors. A SOC analyst can start the day to 50 alerts requiring manual review. An IT manager β¦ More β The post Askeal, the AI cybersecurity assistant that gives verifiable, expert-backed answers appeared first on Help Net Security.
- Bot detection arrives in CrowdSec 1.8.0, along with two DoS fixesby Anamarija Pogorelec on September 1, 2026 at 5:04 am
Failed SSH logins pile up in an auth log, and a scanner walks a website looking for exposed admin paths. CrowdSec reads log sources and HTTP requests, works out which addresses are misbehaving, and hands the block to a separate remediation component sitting in front of the service. Users report what they see back to the project, which curates it into a community blocklist every installation can pull down. Version 1.8.0 landed on August 31. β¦ More β The post Bot detection arrives in CrowdSec 1.8.0, along with two DoS fixes appeared first on Help Net Security.
- NIS2 compliance: Fixing IAM and access control before the 2026 auditby Help Net Security on September 1, 2026 at 5:00 am
The NIS2 Directive places direct obligations on organizations across supply chain risk management, incident reporting, and board-level accountability. October brings a new wave of legally binding deadlines across the EU, as member states move from transposition into enforcement. In Austria, the national implementation law enters into force once adopted; in Poland, mandatory self-registration closes on a fixed date set by the national authority. Broader NIS2 non-compliance exposes essential entities to fines up to β¬10 million β¦ More β The post NIS2 compliance: Fixing IAM and access control before the 2026 audit appeared first on Help Net Security.
- What your vendor says about PQC tells you if they are readyby Mirko Zorz on September 1, 2026 at 4:30 am
In this interview with Help Net Security, Dr. Yaakov Stein, VP CTO of Allot, discusses what post-quantum readiness looks like inside a mobile network. The discussion covers which operator traffic stays sensitive for years, including subscriber identity mappings, billing records and call metadata, and which becomes worthless within hours. It walks through the order of work, starting with a crypto inventory and hybrid key exchange on TLS interfaces, then IPsec links. It also names the β¦ More β The post What your vendor says about PQC tells you if they are ready appeared first on Help Net Security.
- Cybersecurity jobs available right now: September 1, 2026by Sinisa Markovic on September 1, 2026 at 4:00 am
Security Engineer, PSO Google | USA | On-site β View job details As a Security Engineer, you will provide technical guidance to customers adopting Google Cloud Platform, helping them navigate their cloud journey with the Professional Services team. The role includes advising on secure foundational cloud implementations, automated provisioning of infrastructure and applications, and cloud-ready application architectures. Cyber Security Analyst Spait Infotech | Ireland | Hybrid β View job details As a Cyber Security Analyst, β¦ More β The post Cybersecurity jobs available right now: September 1, 2026 appeared first on Help Net Security.
- Threat actors are posing as AI crawlers to hunt for exposed credentialsby Sinisa Markovic on August 31, 2026 at 2:39 pm
Attackers are disguising automated scanning as traffic from AI crawlers operated by OpenAI, Anthropic, Google, Perplexity and other companies while searching websites for exposed credentials and configuration files, according to GreyNoise. (Source: GreyNoise) βEvery program that visits a website announces itself in one line of the request. Chrome says it is Chrome. Googlebot says it is Googlebot. Anthropicβs crawler says it is ClaudeBot. Nothing in the request itself proves any of it is true,β researchers β¦ More β The post Threat actors are posing as AI crawlers to hunt for exposed credentials appeared first on Help Net Security.
- Attackers plant remote access tools on compromised PaperCut serversby Zeljka Zorz on August 31, 2026 at 2:38 pm
The threat actor targeting internet-facing PaperCut Application Servers is covertly installing legitimate remote access software on them, PaperCut Software shared in the most recent update on the ongoing attack campaign. PaperCut zero-days exploited to deploy remote access tools The vendor first warned of in-the-wild compromises on August 27, 2026, when it urged customers using the PaperCut NG and MF print management solutions to βimmediately restrict web access to trusted IP addresses only.β At the time, β¦ More β The post Attackers plant remote access tools on compromised PaperCut servers appeared first on Help Net Security.
- AWS Console Private Access can block sign-ins to personal accountsby Anamarija Pogorelec on August 31, 2026 at 11:57 am
The AWS Management Console now loads inside a network with no path to the public internet. Console Private Access became generally available on August 28 for virtual private clouds, the isolated networks customers run inside AWS, that have no internet connectivity at all. Authentication flows, the JavaScript, CSS, and images that draw the page, console-only APIs, and service API calls for supported consoles all travel over PrivateLink endpoints. No internet gateway, no NAT gateway, no β¦ More β The post AWS Console Private Access can block sign-ins to personal accounts appeared first on Help Net Security.
- ShinyHunters claims it stole 284 million patient records from McKessonby Sinisa Markovic on August 31, 2026 at 11:57 am
Healthcare company McKesson disclosed a cybersecurity incident in which hackers got into third-party applications and stole data. McKesson is a major U.S. healthcare company that distributes pharmaceuticals, medical supplies and other healthcare products to pharmacies, hospitals and clinics. According to the SEC filing, the intrusion was detected on August 25, 2026. The company said the investigation βis in its early stages,β and that it has not determined the incident is material or likely to affect β¦ More β The post ShinyHunters claims it stole 284 million patient records from McKesson appeared first on Help Net Security.
- Anthropic locks out Claude users after infostealers hijack login sessionsby Zeljka Zorz on August 31, 2026 at 11:30 am
Anthropic has started locking users out of their Claude accounts due to their login sessions having been compromised through infostealer malware. βThe malware identified in this campaign so far include Vidar, Lumma (LummaC2), StealC, RedLine and Acreed on Windows, and Atomic Stealer (AMOS) on a small number of Macs,β the company said in emails sent out to affected users last week. βItβs general-purpose malware that typically arrives with an unofficial download or a malicious app, β¦ More β The post Anthropic locks out Claude users after infostealers hijack login sessions appeared first on Help Net Security.




