Category: HelpnetSecurity

Time for a change: Elevating developers’ security skills
13
Jan
2025

Time for a change: Elevating developers’ security skills

Organizations don’t know their software engineers’ security skills because they don’t assess them in the interview process. Trying to do…

GitHub CISO on security strategy and collaborating with the open-source community
13
Jan
2025

GitHub CISO on security strategy and collaborating with the open-source community

In this Help Net Security, Alexis Wales, CISO at GitHub, discusses how GitHub embeds security into every aspect of its…

Chainsaw: Open-source tool for hunting through Windows forensic artefacts
13
Jan
2025

Chainsaw: Open-source tool for hunting through Windows forensic artefacts

Chainsaw is an open-source first-response tool for quickly detecting threats in Windows forensic artefacts, including Event Logs and the MFT…

Week in review: Exploited Ivanti Connect Secure zero-day, Patch Tuesday forecast
12
Jan
2025

Week in review: Exploited Ivanti Connect Secure zero-day, Patch Tuesday forecast

Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Ivanti Connect Secure zero-day exploited…

Job-seeking devs targeted with fake CrowdStrike offer via email
10
Jan
2025

Job-seeking devs targeted with fake CrowdStrike offer via email

Cryptojackers are impersonating Crowdstrike via email to get developers to unwittingly install the XMRig cryptocurrency miner on their Windows PC,…

January 2025 Patch Tuesday forecast: Changes coming in cybersecurity guidance
10
Jan
2025

January 2025 Patch Tuesday forecast: Changes coming in cybersecurity guidance

Welcome to 2025 and a new year of patch excitement! In my December article, I talked about Microsoft’s Secure Future…

Preventing the next ransomware attack with help from AI
10
Jan
2025

Preventing the next ransomware attack with help from AI

In this Help Net Security interview, Dr. Darren Williams, CEO at BlackFog, talks about how employee training plays a crucial…

The SBI fake banking app shows that SMS authentication has had its day
10
Jan
2025

The SBI fake banking app shows that SMS authentication has had its day

As a company fortunate enough to have and maintain our own pentesting team, we often do outreach with other organizations…

New infosec products of the week: January 10, 2025
10
Jan
2025

New infosec products of the week: January 10, 2025

Here’s a look at the most interesting products from the past week, featuring releases from BioConnect, BreachLock, McAfee, Netgear, and…

Banshee Stealer variant targets Russian-speaking MacOS users
09
Jan
2025

Banshee Stealer variant targets Russian-speaking MacOS users

The Banshee Stealer is a stealthy threat to the rising number of macOS users around the world, including those in…

Ivanti Connect Secure zero-day exploited since mid-December (CVE-2025-0282)
09
Jan
2025

Ivanti Connect Secure zero-day exploited since mid-December (CVE-2025-0282)

The zero-day attacks leveraging the Ivanti Connect Secure (ICS) vulnerability (CVE-2025-0282) made public on Wednesday were first spotted in mid-December…

Synology ActiveProtect boosts enterprise data protection
09
Jan
2025

Synology ActiveProtect boosts enterprise data protection

Synology releases ActiveProtect, a new line of data protection appliances designed to provide enterprises a unified backup solution with simplicity,…