Aggregator
莫斯科居民遭遇移动网络中断事故
OODA循环、库珀色码与"套话术"——情报人员每天都在用的12个日常生活技巧
CVE-2025-14558 | FreeBSD rtsol/rtsold input validation (EUVD-2025-208403 / EDB-52463)
Капча с двойным дном. Как обычное подтверждение, что вы не робот, превращается в установку шпиона
佛教是唯一一个信徒人数下降的主要宗教
Passwords, MFA, and why neither is enough
Passwords weren’t enough, so we added MFA. Now MFA isn’t enough either. In this Help Net Security video, Karlo Zatylny, CTO/CISO at Portnox, walks through why each layer of identity security has failed and what comes next. SMS codes can be intercepted through SIM swapping. Authenticator apps are vulnerable to replay attacks and push bombing. And even when MFA works correctly, session hijacking can let attackers impersonate a user after authentication is complete. The solution … More →
The post Passwords, MFA, and why neither is enough appeared first on Help Net Security.
Authorities Disrupt SocksEscort Proxy Botnet Exploiting 369,000 IPs Across 163 Countries
2025 年 53% 的美国成年人去过电影院
OpenClaw安全态势全景
Offer已就位|知其安春季校招来啦!
Зачем писать свои вирусы, если можно купить готовые? Иранская разведка осваивает бюджетный шпионаж
New infosec products of the week: March 13, 2026
Here’s a look at the most interesting products from the past week, featuring releases from Binary Defense, Mend.io, OPSWAT, Singulr AI, SOC Prime, Terra Security, and Vicarius. Singulr AI’s Agent Pulse delivers enforceable runtime governance and visibility for AI agents Singulr AI has announced the launch of Agent Pulse, extending its Unified AI Control Plane to autonomous AI agents and model context protocol (MCP) servers. Agent Pulse delivers enforceable runtime governance, contextual discovery, and measurable … More →
The post New infosec products of the week: March 13, 2026 appeared first on Help Net Security.
'Systemic Risk' Stalks Healthcare Sector
How Medical Device Cyber Challenges Could Become Easier
OnDemand | Data Sanitization Standards: 3 Steps to Align ITAD to NIST & IEEE
Inside the Tehran-Linked 'Faketivist' Hacking Group Handala
Cybersecurity experts say that the Handala "hacktivist" group that claimed credit for attacks against two American firms on Wednesday is run by the Iranian government. The shift to destructive cyberattacks parallels Iran's attempt to inflict greater economic damage on the United States and allies.
Breach Roundup: Russian State Actors Target Signal, WhatsApp
This week, Russian hackers targeted Signal and WhatsApp users, permit-fee phishing hit U.S. applicants, ClickFix on WordPress sites, Microsoft patched 80 bugs, a 14K-router botnet, Polish teens held over DDoS tools and Finland warned of Russian, Chinese espionage. North Korean IT workers for hire.
Anthropic Seeks Court Stay of Pentagon Risk Designation
Anthropic filed an emergency motion asking a federal appeals court to block a Defense Department decision labeling the AI developer a national security supply-chain risk. The company says the move could cost billions and followed its refusal to weaken AI safety restrictions.
Sophisticated Surveillance RAT Marketed for Global Buyers
Cybercriminals are advertising on criminal hacking online boards an Android remote access Trojan that can steal victims' WhatsApp conversation history, surveil them in real time and extract cryptocurrency seed phrases for the low price of about $500 a month.