Security News > 2025 > April

CISOs battle security platform fatigue
2025-04-07 05:30

It starts with good intentions. A tool to stop phishing. Another to monitor endpoints. One more for cloud workloads. Soon, a well-meaning CISO finds themselves managing dozens of products across...

The shift to identity-first security and why it matters
2025-04-07 05:00

In this Help Net Security interview, Arun Shrestha, CEO at BeyondID, discusses how AI is transforming secure access management for both attackers and defenders. He discusses the shift toward...

YES3 Scanner: Open-source S3 security scanner for public access, ransomware protection
2025-04-07 04:30

YES3 Scanner is an open-source tool that scans and analyzes 10+ different configuration items for your S3 buckets in AWS. This includes access such as public access via ACLs and bucket policies –...

The rise of compromised LLM attacks
2025-04-07 04:00

In this Help Net Security video, Sohrob Kazerounian, Distinguished AI Researcher at Vectra AI, discusses how the ongoing rapid adoption of LLM-based applications has already introduced new...

Asian tech players react to US tariffs with delays, doubts, deal-making
2025-04-07 02:59

PLUS: Qualcomm acquires Vietnamese AI outfit; China claims US hacked winter games; India's browser challenge winner disputed; and more Asia In Brief Asian nations and tech companies are trying to...

Signalgate solved? Report claims journalist’s phone number accidentally saved under name of Trump official
2025-04-07 00:15

PLUS: Google re-patches Quick Share flaws; Critical Cisco flaw exploited; WordPress plugin trouble; and more Infosec in Brief How did journalist Jeffrey Goldberg’s phone number end up in a Signal...

E-ZPass toll payment texts return in massive phishing wave
2025-04-06 15:20

An ongoing phishing campaign impersonating E-ZPass and other toll agencies has surged recently, with recipients receiving multiple iMessage and SMS texts to steal personal and credit card...

OpenAI tests watermarking for ChatGPT-4o Image Generation model
2025-04-06 14:56

OpenAI is reportedly testing a new "watermark" for the Image Generation model, which is a part of the ChatGPT 4o model. [...]

Carding tool abusing WooCommerce API downloaded 34K times on PyPI
2025-04-06 14:17

A newly discovered malicious PyPi package named 'disgrasya' that abuses legitimate WooCommerce stores for validating stolen credit cards has been downloaded over 34,000 times from the open-source...

Week in review: Probing activity on Palo Alto Networks GlobalProtect portals, Patch Tuesday forecast
2025-04-06 08:00

Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Attackers are probing Palo Alto Networks GlobalProtect portals Cybersecurity company GreyNoise is...