Category: HelpnetSecurity

Week in review: Microsoft fixes exploited zero-day, Mirai botnets target unpatched Wazuh servers
15
Jun
2025

Week in review: Microsoft fixes exploited zero-day, Mirai botnets target unpatched Wazuh servers

Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Microsoft fixes zero-day exploited for…

Kali Linux 2025.2 delivers Bloodhound CE, CARsenal, 13 new tools
14
Jun
2025

Kali Linux 2025.2 delivers Bloodhound CE, CARsenal, 13 new tools

OffSec has released Kali Linux 2025.2, the most up-to-date version of the widely used penetration testing and digital forensics platform….

iOS zero-click attacks used to deliver Graphite spyware (CVE-2025-43200)
13
Jun
2025

iOS zero-click attacks used to deliver Graphite spyware (CVE-2025-43200)

A zero-click attack leveraging a freshly disclosed Messages vulnerability (CVE-2025-43200) has infected the iPhones of two European journalists with Paragon’s…

StackHawk Sensitive Data Identification provides visibility into high-risk APIs
13
Jun
2025

StackHawk Sensitive Data Identification provides visibility into high-risk APIs

StackHawk announced Sensitive Data Identification to give security teams visibility into high-risk APIs across thousands of code repositories within an…

New infosec products of the week: June 13, 2025
13
Jun
2025

New infosec products of the week: June 13, 2025

Here’s a look at the most interesting products from the past week, featuring releases from Contrast Security, Cymulate, Lemony, SpecterOps,…

What CISOs need to know about agentic AI
13
Jun
2025

What CISOs need to know about agentic AI

GenAI has been the star of the show lately. Tools like ChatGPT impressed everyone with how well they can summarize,…

Unpacking the security complexity of no-code development platforms
13
Jun
2025

Unpacking the security complexity of no-code development platforms

In this Help Net Security interview, Amichai Shulman, CTO at Nokod Security, discusses how the abstraction layer in no-code environments…

Security flaws in government apps go unpatched for years
13
Jun
2025

Security flaws in government apps go unpatched for years

78% of public sector organizations are operating with significant security debt, flaws left unaddressed for more than a year, according…

19 ways to build zero trust: NIST offers practical implementation guide
13
Jun
2025

19 ways to build zero trust: NIST offers practical implementation guide

The National Institute of Standards and Technology (NIST) has released a new guide that offers practical help for building zero…

Researchers warn of ongoing Entra ID account takeover campaign
12
Jun
2025

Researchers warn of ongoing Entra ID account takeover campaign

Attackers are using the TeamFiltration pentesting framework to brute-force their way into Microsoft Entra ID (formerly Azure AD) accounts, Proofpoint…

LockBit panel data leak shows Chinese orgs among the most targeted
12
Jun
2025

LockBit panel data leak shows Chinese orgs among the most targeted

The LockBit ransomware-as-a-service (RaaS) operation has netted around $2.3 million USD within 5 months, the data leak stemming from the…

Identifying high-risk APIs across thousands of code repositories
12
Jun
2025

Identifying high-risk APIs across thousands of code repositories

In this Help Net Security interview, Joni Klippert, CEO of StackHawk, discusses why API visibility is a major blind spot…