More than half of IT & cybersecurity professionals who experienced a breach in the past 12 months say they were told to keep it confidential, even when it was reportable. That finding comes from the 2026 Bitdefender Cybersecurity Assessment, and it’s a trend we’ve tracked for several years running. Disclosure rules have expanded significantly since we...Read More
Summary On September 3, 2026, the ransomware group Settra claimed responsibility for an attack on DiaSorin S.p.A. (int.diasorin.com), a leading biotech company in Italy. The attackers have indicated that unless negotiations are initiated, sensitive data will be leaked. Incident Report Field Details Target DiaSorin S.p.A. Domain int.diasorin.com Country Italy Attacking Group Settra Date Reported September...Read More
Chaotic Eclipse Releases Crowdstrike Falcon ZeroDay FalconFlank Pierluigi Paganini September 03, 2026 Chaotic Eclipse released FalconFlank, a PoC exploit for a Crowdstrike Falcon ZeroDay Elevation of Privileges Vulnerability Security researcher Chaotic Eclipse, also known as INFINITE NIGHTMARE, MSNightmare and Nightmare-Eclipse, released a new zero-day exploit targeting Crowdstrike Falcon cybersecurity platform. The researcher named the exploit FalconFlank, it...Read More
For years, there has been a widely held assumption across the technology industry that a significant cyberattack can negatively influence a Merger or Acquisition (M&A) deal—particularly when the incident occurs while negotiations are still underway. A serious breach can raise questions about cybersecurity maturity, data protection, regulatory exposure and potential financial liabilities. In some cases,...Read More
Broadcasters preparing for new cybersecurity rules taking effect Sept. 29 are being warned not to view the requirements as simply an EAS equipment upgrade. Experts say stations may need to examine virtually their entire air chain to ensure equipment that could be used to hijack programming is adequately protected. That was one of the takeaways...Read More
In Washington as in life, certain roads may be paved with good intentions, but critics of a purportedly well-meaning new bill warn it would lead to major suffering for the very people it’s meant to protect: U.S. teenagers. Last week, the House of Representatives approved H.R.1761, also known as the “Protecting Against Child Exploitation Act of 2017,” which builds on current...Read More
The Global Cybercrime and Cryptocurrency Assessment and Intelligence Gathering Program supports projects that address cybercrime, cyber-enabled crimes, and the misuse of cryptocurrency and virtual assets. The programme funds organizations working to strengthen intelligence gathering, improve understanding of digital threats, and develop solutions against crimes affecting individuals, communities, and businesses. Overview of the Global Cybercrime and...Read More
In this Help Net Security video, Roy Katmor, co-founder and CEO of Orchid, explains why AI agents hold credentials that nobody reviews. Organizations build agents in AI studios, connect them to enterprise tools, and give them accounts to do useful work. The agent is approved, the studio is approved, but the identities behind them sit...Read More
AIR emerged from stealth through its September 1, 2026 launch post, presenting a firewall intended to filter untrusted material before it enters an AI agent’s context. The product targets add-ons, websites and internal data encountered by enterprise agents across endpoint, cloud and software-as-a-service environments. New York-based AIR launched with $50 million raised in two rounds:...Read More
Summary On September 3, 2026, the ransomware group Storm claimed responsibility for a cyberattack against Petrocare Construction (petrocare.ca), a leading construction company in Canada. The group issued a threat to release sensitive data unless their demands are met. Incident Report Field Details Target Petrocare Construction Domain petrocare.ca Country Canada Attacking Group Storm Date Reported September...Read More