Please confirm you are human

This browser or connection looks automated. Press and continuously hold the control for 3 seconds to enable Google-hosted web results and, when separately allowed, AI-assisted answers.

A successful check enables 100 search requests. Interactive access does not authorize scraping, systematic collection, or reuse of search output.

Hold with a pointer, or hold Space or Enter.

News

Help Net Security
helpnetsecurity.com > 09/10/2026 > wordpress-automated-plugin-security-review

WordPress adds automated security checks to block risky plugin releases

3+ day, 23+ hour ago   (460+ words) WordPress’ automated security review will now assess every plugin release before it is distributed through the WordPress.org update API. Releases considered a potential security risk will be blocked automatically. “A plugin can be secure today and introduce a vulnerability,…...

Help Net Security
helpnetsecurity.com > 09/10/2026 > browser-based-phishing-blob-urls-microsoft-oauth

Cybercriminals are building phishing pages that exist only inside victims' browsers

4+ day, 4+ hour ago   (352+ words) A phishing campaign routes victims through genuine Microsoft OAuth and Teams infrastructure before showing them a fake login page built entirely inside their own browser, according to researchers at Barracuda. “Instead of delivering a phishing page from a web server,…...

Help Net Security
helpnetsecurity.com > 09/10/2026 > product-showcase-gitguardian-honeytoken-decoy-service

Product showcase: GitGuardian Honeytoken catches credential theft as it happens

4+ day, 4+ hour ago   (730+ words) Credential harvesting on developer machines has widened. Earlier infostealers worked from a short list of known targets, mostly browser stores and a few cloud credential paths. The families active now cast a much wider net. Shai-Hulud, for instance, ran a…...

Help Net Security
helpnetsecurity.com > 09/09/2026 > f5-big-ip-apm-rootkit-hides-web-shell-in-memory

Hackers deploy Linux rootkit on F5 BIG-IP APM devices, hiding web shell in memory

4+ day, 22+ hour ago   (508+ words) A rootkit found on hacked F5 BIG-IP APM devices skips the usual step of writing a web shell to disk, hiding it in memory instead, according to Sophos. F5 BIG-IP APM provides access policy enforcement to secure access to apps, APIs, and…...

Help Net Security
helpnetsecurity.com > 09/09/2026 > bleachbit-6-0-4-released

BleachBit 6.0.4 fixes secure wiping that skipped clusters on Windows

5+ day, 5+ hour ago   (275+ words) The open source cleaner BleachBit reached version 6.0.4 this week, erasing caches, browser traces, and files on Windows, Linux, and now macOS. If you shredded a sensitive file on Windows with an earlier build, parts of it may still sit on…...

Help Net Security
helpnetsecurity.com > 09/07/2026 > connectwise-screenconnect-file-transfer-flaw

Attackers spread malware through ScreenConnect file transfers

1+ week, 41+ min ago   (324+ words) A file transfer flaw in ScreenConnect Remote Access Support and Access sessions affects both Cloud and On-Premise deployments, ConnectWise confirmed. “A CVE identifier and an official fix will be issued within the week,” the company wrote in its September 3 advisory....

Help Net Security
helpnetsecurity.com > 09/03/2026 > github-threat-intelligence-feed-ingestion

Your threat feed is someone else's database: What ingesting malware intel at scale takes

1+ week, 4+ day ago   (354+ words) There are five lessons that survived production and none of them care whether you are ingesting package malware reports, OSV records, or ISAC indicators. If community data feeds your automation, they apply to you. Provenance belongs on the same shelf…...

Help Net Security
helpnetsecurity.com > 09/02/2026 > sonicwall-sma-1000-cve-2026-83548-cve-2026-83549-zero-day-attacks

SonicWall SMA 1000 appliances under attack via zero-day flaws

1+ week, 4+ day ago   (225+ words) The SonicWall SMA 1000 series is a line of secure remote access appliances (SSL VPN gateways) built for scale. They are used regularly by medium to large enterprises, government agencies, and managed security service providers. CVE-2026-83549 is an OS command injection…...

Help Net Security
helpnetsecurity.com > 09/02/2026 > google-scareware-ads-research

Scareware ads keep running on Google's transparency tool, even after they're reported

1+ week, 5+ day ago   (539+ words) A team of NYU and Radboud University researchers spent a year building a tool to find deceptive software ads inside Google’s public ad archive. It works. It also exposed something more uncomfortable: reporting a bad ad to Google doesn’t mean…...

Help Net Security
helpnetsecurity.com > 09/01/2026 > revstealer-malware-claude-opus-5-github

Fake Claude Opus 5 app delivers malware and wipes its own tracks

1+ week, 5+ day ago   (572+ words) A malicious GitHub repository impersonating Anthropic and claiming to offer free access to “Claude Opus 5” is delivering RevStealer, Windows information-stealing malware that targets passwords, cryptocurrency wallet data and login credentials, according to Morphisec. Repository README using Claude Opus 5 branding and…...