Prompt injection remains an unsolved architectural problem that could hamper the development of AI, said Ariel Fogel, a contributor to the Open Worldwide Application Security Project (OWASP), during Infosecurity Europe 2026. Fogel, an AI security researcher at Pillar Security’s office… Read More "Prompt Injection Remains Unsolved, OWASP Researcher Warns"
OpenAI Unveils ChatGPT Account Security Controls
ChatGPT users have gained two new security controls: one aimed at preventing data theft through prompt injection and another at tracking account sign-ins. According to OpenAI, the first of these, Lockdown Mode, is an optional setting that limits how far… Read More "OpenAI Unveils ChatGPT Account Security Controls"
North Korean Hackers Use Fake Coding Tasks to Steal Crypto
A likely North Korean threat actor has phished software developers at almost 100 organizations with fake job and code-review lures to steal cryptocurrency and credentials. According to new analysis from Proofpoint, which tracks the cluster as UNK_DeadDrop, the campaign sent… Read More "North Korean Hackers Use Fake Coding Tasks to Steal Crypto"
WhatsApp Discovers NSO Group-Linked Spearphishing Attempts
WhatsApp has asked a US court to hold a blacklisted spyware firm in contempt, after claiming it has violated a permanent injunction banning it from targeting users. The messaging giant said on June 8 that it “successfully disrupted” social engineering… Read More "WhatsApp Discovers NSO Group-Linked Spearphishing Attempts"
Infosecurity Europe: Why JLR’s CISO Enforced In-Person Password Resets
When Jaguar Land Rover (JLR) was hit by a major cyber-attack in September 2025, one of the first things the company’s cybersecurity leader did was to call over 30,000 staff on site to reset their passwords. Speaking during Infosecurity Europe… Read More "Infosecurity Europe: Why JLR’s CISO Enforced In-Person Password Resets"
How to Master the CISSP CAT Exam: Adaptive Testing Strategy & Decision Traps
For candidates preparing for the Certified Information Systems Security Professional (CISSP) credential, the exam itself represents as much of a mental challenge as the technical content. English-language CISSP exams administered by ISC2 utilize Computerized Adaptive Testing (CAT). Unlike linear exams… Read More "How to Master the CISSP CAT Exam: Adaptive Testing Strategy & Decision Traps"
Check Point Warns Critical Auth Bypass Bug Exploited in the Wild
Check Point has urged customers to patch a critical zero-day vulnerability in its Remote Access VPN and Mobile Access solutions that is being actively exploited. CVE-2026-50751 is an authentication bypass flaw that affects deployments configured to use the deprecated IKEv1 key… Read More "Check Point Warns Critical Auth Bypass Bug Exploited in the Wild"
Google Releases Patch for Chrome Vulnerability Exploited in the Wild
Google has released an emergency update to patch 74 Chrome vulnerabilities, including a high-severity flaw that has been exploited in the wild. This is the fifth Chrome zero-day vulnerability in 2026 that has been exploited before a patch has been… Read More "Google Releases Patch for Chrome Vulnerability Exploited in the Wild"
Critical phpBB Flaw Lets Attackers Hijack Any Account with One Request
A critical flaw in the phpBB forum software has been disclosed that lets attackers hijack any account, including administrators, with a single unauthenticated request and no password. Tracked as PTT-2026-004 and rated 9.4 on the CVSS scale, the flaw is… Read More "Critical phpBB Flaw Lets Attackers Hijack Any Account with One Request"
AI Coding Adoption Hits 97% but Governance Lags Behind
Nearly all software development teams have adopted AI coding assistants, but fewer than a third govern how the tools are used and that gap is capping the productivity AI promises. The figures come from an independent survey of 831 software… Read More "AI Coding Adoption Hits 97% but Governance Lags Behind"