Please confirm you are human

This browser or connection looks automated. Press and continuously hold the control for 3 seconds to enable Google-hosted web results and, when separately allowed, AI-assisted answers.

A successful check enables 100 search requests. Interactive access does not authorize scraping, systematic collection, or reuse of search output.

Hold with a pointer, or hold Space or Enter.

News

Help Net Security
helpnetsecurity.com > 09/14/2026 > permify-open-source-authorization-as-a-service

Permify: Open-source authorization as a service

4+ hour, 49+ min ago   (209+ words) Permify is an open-source authorization service that answers access questions at run time: can user X view document Y, which posts can members of team Y edit. It keeps those rules in one place, apart from the application code that…...

Help Net Security
helpnetsecurity.com > 09/10/2026 > product-showcase-gitguardian-honeytoken-decoy-service

Product showcase: GitGuardian Honeytoken catches credential theft as it happens

4+ day, 4+ hour ago   (730+ words) Credential harvesting on developer machines has widened. Earlier infostealers worked from a short list of known targets, mostly browser stores and a few cloud credential paths. The families active now cast a much wider net. Shai-Hulud, for instance, ran a…...

Help Net Security
helpnetsecurity.com > 09/09/2026 > orchid-security-ai-agents-application-level-kill-switches

Orchid Security targets AI agent risk with drift detection and kill switches

4+ day, 20+ hour ago   (21+ words) Orchid Security adds drift detection and kill switches for AI agents to help enterprises control access as autonomous AI adoption scales....

Help Net Security
helpnetsecurity.com > 09/07/2026 > connectwise-screenconnect-file-transfer-flaw

Attackers spread malware through ScreenConnect file transfers

1+ week, 1+ hour ago   (324+ words) A file transfer flaw in ScreenConnect Remote Access Support and Access sessions affects both Cloud and On-Premise deployments, ConnectWise confirmed. “A CVE identifier and an official fix will be issued within the week,” the company wrote in its September 3 advisory....

Google News
helpnetsecurity.com > 09/07/2026 > toolhive-open-source-mcp-server-security

ToolHive: The open-source way to run any MCP server securely

1+ week, 4+ hour ago   (243+ words) ToolHive is an open-source platform that runs Model Context Protocol servers inside containers. An MCP server is the connector that lets an AI client like Cursor or Claude Code reach an outside tool, and Stacklok ships ToolHive under Apache 2.0, so…...

Help Net Security
helpnetsecurity.com > 09/03/2026 > seemplicity-response-options-vulnerability-management

Seemplicity Response Options accelerates vulnerability mitigation

1+ week, 4+ day ago   (235+ words) Seemplicity announced Response Options for vulnerability management and exposure management workflows. This new capability gives security teams multiple, actionable paths to closing a vulnerability finding based on context. The problem Response Options addresses is straightforward: the complete fix (a patch,…...

Help Net Security
helpnetsecurity.com > 09/03/2026 > github-threat-intelligence-feed-ingestion

Your threat feed is someone else's database: What ingesting malware intel at scale takes

1+ week, 4+ day ago   (354+ words) There are five lessons that survived production and none of them care whether you are ingesting package malware reports, OSV records, or ISAC indicators. If community data feeds your automation, they apply to you. Provenance belongs on the same shelf…...

Help Net Security
helpnetsecurity.com > 09/02/2026 > sift-open-source-secret-scanning

Open-source secrets scanning tool Sift hunts credentials in Microsoft 365, Slack, and Jira

1+ week, 5+ day ago   (323+ words) Colin Watson is CTO at Stratus Security and works the engagements himself. “For example, on my most recent pentest there were thousands of credentials in Jira ticket comments found by this tool and their pentester for 5 years prior had never…...

Help Net Security
helpnetsecurity.com > 08/31/2026 > halo-record-open-source-ai-agent-audit-trail

Halo-record: Open-source audit trails for AI agents

2+ week, 4+ hour ago   (230+ words) Raw arguments never enter a record. Values get hashed and kept as a redacted summary, and the redaction is pattern matching against common secret and personal-data formats. The package has no runtime dependencies and runs about 5,300 lines of Python, which…...

Help Net Security
helpnetsecurity.com > 08/26/2026 > the-linux-foundation-trace-ai-agent-security

Linux Foundation takes on TRACE, a hardware-backed runtime evidence specification for AI agents

2+ week, 5+ day ago   (220+ words) The Linux Foundation announced the contribution of TRACE (Trust, Runtime Attestation and Compliance Evidence), from OPAQUE. Collaboratively developed by AMD, Intel, Microsoft, OPAQUE and the Technology Innovation Institute (TII), TRACE creates a standard, open evidence layer that enables reliable governance…...