Please confirm you are human

This browser or connection looks automated. Press and continuously hold the control for 3 seconds to enable Google-hosted web results and, when separately allowed, AI-assisted answers.

A successful check enables 100 search requests. Interactive access does not authorize scraping, systematic collection, or reuse of search output.

Hold with a pointer, or hold Space or Enter.

News

Help Net Security
helpnetsecurity.com > 09/09/2026 > f5-big-ip-apm-rootkit-hides-web-shell-in-memory

Hackers deploy Linux rootkit on F5 BIG-IP APM devices, hiding web shell in memory

5+ day, 3+ hour ago   (508+ words) A rootkit found on hacked F5 BIG-IP APM devices skips the usual step of writing a web shell to disk, hiding it in memory instead, according to Sophos. F5 BIG-IP APM provides access policy enforcement to secure access to apps, APIs, and…...

Help Net Security
helpnetsecurity.com > 09/09/2026 > securin-exposure-management-platform

Securin Platform helps security teams prove when attack paths are closed

5+ day, 4+ hour ago   (292+ words) Securin has announced the general availability of the Securin Platform, an AI-native Preemptive Exposure Management platform designed to answer three questions security teams struggle with every day: What can attackers actually exploit? What should we fix first? And did the…...

Help Net Security
helpnetsecurity.com > 09/09/2026 > google-chrome-cve-2026-87491-zero-day-flaw

Google fixes yet another actively exploited Chrome zero-day (CVE-2026-87491)

5+ day, 6+ hour ago   (226+ words) Google has fixed 230 vulnerabilities in Chrome, including a zero-day flaw, CVE-2026-87491, with an in-the-wild exploit. “Google is aware that an exploit for CVE-2026-87491 exists in the wild,” the company said in a Tuesday security advisory. The fix has been shipped…...

Help Net Security
helpnetsecurity.com > 09/08/2026 > jellyfin-12-0-security-fixes

Jellyfin 12.0 security fixes arrive alongside the removal of legacy client logins

6+ day, 5+ hour ago   (335+ words) Jellyfin shipped version 12.0 of its media server. Several of the security fixes in it block requests built to reach files outside the folders the server is supposed to hand out. The rest of the security work touches first-run setup, plugin…...

Help Net Security
helpnetsecurity.com > 09/07/2026 > connectwise-screenconnect-file-transfer-flaw

Attackers spread malware through ScreenConnect file transfers

1+ week, 4+ hour ago   (324+ words) A file transfer flaw in ScreenConnect Remote Access Support and Access sessions affects both Cloud and On-Premise deployments, ConnectWise confirmed. “A CVE identifier and an official fix will be issued within the week,” the company wrote in its September 3 advisory....

Help Net Security
helpnetsecurity.com > 09/04/2026 > google-chrome-zero-day-cve-2026-85046

Google patches actively exploited Chrome zero-day (CVE-2026-85046)

1+ week, 3+ day ago   (191+ words) Google has patched 12 vulnerabilities affecting its popular Chrome browser, among them CVE-2026-85046, which has been exploited in the wild. “Google is aware that an exploit for CVE-2026-85046 exists in the wild,” the company said in a Thursday security advisory. The…...

Help Net Security
helpnetsecurity.com > 09/04/2026 > microsoft-teams-qr-code-phishing-protection

Microsoft Teams is about to make QR code phishing much harder

1+ week, 3+ day ago   (241+ words) Microsoft is preparing a new feature for Teams users that will help them stay safe from QR code phishing. Teams will automatically hide QR codes sent by people outside the organization. Users will need to reveal the image first before…...

Help Net Security
helpnetsecurity.com > 09/03/2026 > github-threat-intelligence-feed-ingestion

Your threat feed is someone else's database: What ingesting malware intel at scale takes

1+ week, 4+ day ago   (354+ words) There are five lessons that survived production and none of them care whether you are ingesting package malware reports, OSV records, or ISAC indicators. If community data feeds your automation, they apply to you. Provenance belongs on the same shelf…...

Help Net Security
helpnetsecurity.com > 09/02/2026 > google-scareware-ads-research

Scareware ads keep running on Google's transparency tool, even after they're reported

1+ week, 5+ day ago   (539+ words) A team of NYU and Radboud University researchers spent a year building a tool to find deceptive software ads inside Google’s public ad archive. It works. It also exposed something more uncomfortable: reporting a bad ad to Google doesn’t mean…...

Help Net Security
helpnetsecurity.com > 09/01/2026 > revstealer-malware-claude-opus-5-github

Fake Claude Opus 5 app delivers malware and wipes its own tracks

1+ week, 6+ day ago   (572+ words) A malicious GitHub repository impersonating Anthropic and claiming to offer free access to “Claude Opus 5” is delivering RevStealer, Windows information-stealing malware that targets passwords, cryptocurrency wallet data and login credentials, according to Morphisec. Repository README using Claude Opus 5 branding and…...