<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Help Net Security</title>
	<atom:link href="https://www.helpnetsecurity.com/feed/" rel="self" type="application/rss+xml" />
	<link>https://www.helpnetsecurity.com/</link>
	<description>Daily information security news with a focus on enterprise security.</description>
	<lastBuildDate>Fri, 11 Sep 2026 12:59:31 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=7.0.4</generator>

<image>
	<url>https://img.helpnetsecurity.com/wp-content/uploads/2019/09/09093400/cropped-hns2-32x32.png</url>
	<title>Help Net Security</title>
	<link>https://www.helpnetsecurity.com/</link>
	<width>32</width>
	<height>32</height>
</image> 
	<item>
		<title>AI agents exploited PaperCut flaws to breach 395 organizations</title>
		<link>https://www.helpnetsecurity.com/2026/09/11/ai-agents-papercut-ng-mf-attack-campaign/</link>
		
		<dc:creator><![CDATA[Sinisa Markovic]]></dc:creator>
		<pubDate>Fri, 11 Sep 2026 10:05:32 +0000</pubDate>
				<category><![CDATA[News]]></category>
		<category><![CDATA[AI]]></category>
		<category><![CDATA[cyberattack]]></category>
		<category><![CDATA[GreyNoise]]></category>
		<category><![CDATA[PaperCut]]></category>
		<category><![CDATA[vulnerability]]></category>
		<guid isPermaLink="false">https://www.helpnetsecurity.com/?p=384371</guid>

					<description><![CDATA[<p>A threat actor built a working exploit for PaperCut print management software, then handed the job of breaking into hundreds of organizations to AI agents that did most of the work on their own, according to GreyNoise. The result was at least 440 compromised PaperCut instances across 395 identified organizations in 48 countries. Attacker, believed to be Russian-speaking, first built a private lab environment with a vulnerable copy of PaperCut NG/MF and an Active Directory &#8230; <a href="https://www.helpnetsecurity.com/2026/09/11/ai-agents-papercut-ng-mf-attack-campaign/" rel="nofollow">More <span class="meta-nav">&#8594;</span></a></p>
<p>The post <a href="https://www.helpnetsecurity.com/2026/09/11/ai-agents-papercut-ng-mf-attack-campaign/">AI agents exploited PaperCut flaws to breach 395 organizations</a> appeared first on <a href="https://www.helpnetsecurity.com">Help Net Security</a>.</p>
]]></description>
		
		
		
			</item>
		<item>
		<title>IDScan confirms breach after 153 million driver’s licenses leak on dark web</title>
		<link>https://www.helpnetsecurity.com/2026/09/11/idscan-net-data-breach-153-million-drivers-licenses/</link>
		
		<dc:creator><![CDATA[Sinisa Markovic]]></dc:creator>
		<pubDate>Fri, 11 Sep 2026 08:39:33 +0000</pubDate>
				<category><![CDATA[Don't miss]]></category>
		<category><![CDATA[Hot stuff]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[breach]]></category>
		<category><![CDATA[cybercrime]]></category>
		<category><![CDATA[data breach]]></category>
		<category><![CDATA[data leak]]></category>
		<guid isPermaLink="false">https://www.helpnetsecurity.com/?p=384358</guid>

					<description><![CDATA[<p>Days after reports linked IDScan to a dark web database holding more than 153 million driver&#8217;s license scans, the identity verification company has confirmed hackers accessed customer data stored on its cloud platform. The Louisiana-based firm, which processes ID checks for car rental companies, retailers and cannabis dispensaries, posted a notice on its website September 4 acknowledging the incident. “On or around September 1, 2026, IDScan.net received information indicating that certain data may have been &#8230; <a href="https://www.helpnetsecurity.com/2026/09/11/idscan-net-data-breach-153-million-drivers-licenses/" rel="nofollow">More <span class="meta-nav">&#8594;</span></a></p>
<p>The post <a href="https://www.helpnetsecurity.com/2026/09/11/idscan-net-data-breach-153-million-drivers-licenses/">IDScan confirms breach after 153 million driver’s licenses leak on dark web</a> appeared first on <a href="https://www.helpnetsecurity.com">Help Net Security</a>.</p>
]]></description>
		
		
		
			</item>
		<item>
		<title>Kiteworks expands runtime data governance with Bonfy.AI acquisition</title>
		<link>https://www.helpnetsecurity.com/2026/09/11/kiteworks-bonfy-ai-acquisition/</link>
		
		<dc:creator><![CDATA[Industry News]]></dc:creator>
		<pubDate>Fri, 11 Sep 2026 08:04:07 +0000</pubDate>
				<category><![CDATA[Industry news]]></category>
		<category><![CDATA[Bonfy.AI]]></category>
		<category><![CDATA[Kiteworks]]></category>
		<guid isPermaLink="false">https://www.helpnetsecurity.com/?p=384351</guid>

					<description><![CDATA[<p>Kiteworks has acquired Bonfy.AI, extending runtime data governance across its control plane. The acquisition enables organizations to govern data exchanges as they happen, whether initiated by a person, machine, or autonomous agent. The acquisition addresses a structural gap in how enterprises protect sensitive data. Enterprises have invested a decade in data discovery and posture management, building detailed inventories of the sensitive data that sits inside their data stores. With this acquisition, Kiteworks complements that value &#8230; <a href="https://www.helpnetsecurity.com/2026/09/11/kiteworks-bonfy-ai-acquisition/" rel="nofollow">More <span class="meta-nav">&#8594;</span></a></p>
<p>The post <a href="https://www.helpnetsecurity.com/2026/09/11/kiteworks-bonfy-ai-acquisition/">Kiteworks expands runtime data governance with Bonfy.AI acquisition</a> appeared first on <a href="https://www.helpnetsecurity.com">Help Net Security</a>.</p>
]]></description>
		
		
		
			</item>
		<item>
		<title>Automox Mitigation Worklets cut endpoint exposure to unpatchable flaws</title>
		<link>https://www.helpnetsecurity.com/2026/09/11/automox-mitigation-worklet-pipeline/</link>
		
		<dc:creator><![CDATA[Industry News]]></dc:creator>
		<pubDate>Fri, 11 Sep 2026 07:48:56 +0000</pubDate>
				<category><![CDATA[Industry news]]></category>
		<category><![CDATA[Automox]]></category>
		<guid isPermaLink="false">https://www.helpnetsecurity.com/?p=384347</guid>

					<description><![CDATA[<p>Automox has announced its AI-speed Mitigation Worklet Pipeline, which automates mitigation to reduce risk from the increased volume and velocity of frontier-model AI vulnerabilities. Now the time from vulnerability disclosure to exposure mitigation is shortened from days or weeks to minutes or hours. Since 2019, Automox Worklets have mitigated risk across billions of policy runs and millions of endpoints. A Worklet is an automation that takes verifiable action on an endpoint, whether that&#8217;s enforcing a &#8230; <a href="https://www.helpnetsecurity.com/2026/09/11/automox-mitigation-worklet-pipeline/" rel="nofollow">More <span class="meta-nav">&#8594;</span></a></p>
<p>The post <a href="https://www.helpnetsecurity.com/2026/09/11/automox-mitigation-worklet-pipeline/">Automox Mitigation Worklets cut endpoint exposure to unpatchable flaws</a> appeared first on <a href="https://www.helpnetsecurity.com">Help Net Security</a>.</p>
]]></description>
		
		
		
			</item>
		<item>
		<title>Getting a stranger&#8217;s phone kicked off the cellular network costs a few dollars</title>
		<link>https://www.helpnetsecurity.com/2026/09/11/cellular-network-lost-phone-reporting/</link>
		
		<dc:creator><![CDATA[Mirko Zorz]]></dc:creator>
		<pubDate>Fri, 11 Sep 2026 06:00:16 +0000</pubDate>
				<category><![CDATA[Don't miss]]></category>
		<category><![CDATA[Features]]></category>
		<category><![CDATA[Hot stuff]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[GSMA]]></category>
		<category><![CDATA[mobile]]></category>
		<category><![CDATA[research]]></category>
		<category><![CDATA[Samsung]]></category>
		<category><![CDATA[tracking]]></category>
		<guid isPermaLink="false">https://www.helpnetsecurity.com/?p=384226</guid>

					<description><![CDATA[<p>Researchers at Michigan State University and three partner schools bought a Samsung Galaxy Z Fold 7, copied the identification number printed on the sealed box, and reported the phone to its carrier as lost. Then they opened the box and set the phone up the way a launch-day buyer would. It would not connect. The phone was new, unopened, and sitting on a lab bench the entire time. The team found six weaknesses in the &#8230; <a href="https://www.helpnetsecurity.com/2026/09/11/cellular-network-lost-phone-reporting/" rel="nofollow">More <span class="meta-nav">&#8594;</span></a></p>
<p>The post <a href="https://www.helpnetsecurity.com/2026/09/11/cellular-network-lost-phone-reporting/">Getting a stranger&#8217;s phone kicked off the cellular network costs a few dollars</a> appeared first on <a href="https://www.helpnetsecurity.com">Help Net Security</a>.</p>
]]></description>
		
		
		
			</item>
		<item>
		<title>Building a ransomware decision tree before the call comes in</title>
		<link>https://www.helpnetsecurity.com/2026/09/11/ransomware-decision-tree-video/</link>
		
		<dc:creator><![CDATA[Help Net Security]]></dc:creator>
		<pubDate>Fri, 11 Sep 2026 05:30:53 +0000</pubDate>
				<category><![CDATA[Don't miss]]></category>
		<category><![CDATA[Hot stuff]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[Video]]></category>
		<category><![CDATA[Arctic Wolf Networks]]></category>
		<category><![CDATA[CISO]]></category>
		<category><![CDATA[cybersecurity]]></category>
		<category><![CDATA[incident response]]></category>
		<category><![CDATA[ransomware]]></category>
		<category><![CDATA[strategy]]></category>
		<category><![CDATA[tips]]></category>
		<guid isPermaLink="false">https://www.helpnetsecurity.com/?p=383881</guid>

					<description><![CDATA[<p>In this Help Net Security video, Kerri Shafer-Page, VP of Incident Response at Arctic Wolf, walks through the ransomware decision tree in this video. She covers four areas where decisions need settling in advance, starting with containment. Someone has to know the network well enough to judge what pulling a system offline does to client data, a manufacturing line, or a website. Then comes the extortion demand. Who is authorized to negotiate, and what is &#8230; <a href="https://www.helpnetsecurity.com/2026/09/11/ransomware-decision-tree-video/" rel="nofollow">More <span class="meta-nav">&#8594;</span></a></p>
<p>The post <a href="https://www.helpnetsecurity.com/2026/09/11/ransomware-decision-tree-video/">Building a ransomware decision tree before the call comes in</a> appeared first on <a href="https://www.helpnetsecurity.com">Help Net Security</a>.</p>
]]></description>
		
		
		
			</item>
		<item>
		<title>Companies may be measuring phishing resilience the wrong way</title>
		<link>https://www.helpnetsecurity.com/2026/09/11/pistachio-employee-phishing-risk-report/</link>
		
		<dc:creator><![CDATA[Anamarija Pogorelec]]></dc:creator>
		<pubDate>Fri, 11 Sep 2026 05:00:07 +0000</pubDate>
				<category><![CDATA[News]]></category>
		<category><![CDATA[awareness]]></category>
		<category><![CDATA[cyber resilience]]></category>
		<category><![CDATA[cybersecurity]]></category>
		<category><![CDATA[phishing]]></category>
		<category><![CDATA[report]]></category>
		<category><![CDATA[security awareness]]></category>
		<category><![CDATA[training]]></category>
		<guid isPermaLink="false">https://www.helpnetsecurity.com/?p=384316</guid>

					<description><![CDATA[<p>Companies that judge phishing simulation programs by how often employees click simulated attack emails may be overlooking more important indicators of cyber resilience, according to Pistachio’s Phishing Behaviour Report 2026. Examples of difficult simulations (Source: Pistachio) The analysis covered 648 organizations with a complete 12-month record and 123,692 users between June 1, 2025, and May 31, 2026. Its central finding is that phishing resilience is better understood through a combination of clicking, credential submission, and &#8230; <a href="https://www.helpnetsecurity.com/2026/09/11/pistachio-employee-phishing-risk-report/" rel="nofollow">More <span class="meta-nav">&#8594;</span></a></p>
<p>The post <a href="https://www.helpnetsecurity.com/2026/09/11/pistachio-employee-phishing-risk-report/">Companies may be measuring phishing resilience the wrong way</a> appeared first on <a href="https://www.helpnetsecurity.com">Help Net Security</a>.</p>
]]></description>
		
		
		
			</item>
		<item>
		<title>AI is changing what Salesforce security needs to govern</title>
		<link>https://www.helpnetsecurity.com/2026/09/11/withsecure-salesforce-ai-trust-governance-paper/</link>
		
		<dc:creator><![CDATA[Anamarija Pogorelec]]></dc:creator>
		<pubDate>Fri, 11 Sep 2026 04:30:42 +0000</pubDate>
				<category><![CDATA[News]]></category>
		<category><![CDATA[AI]]></category>
		<category><![CDATA[automation]]></category>
		<category><![CDATA[cybersecurity]]></category>
		<category><![CDATA[framework]]></category>
		<category><![CDATA[Salesforce]]></category>
		<category><![CDATA[WithSecure]]></category>
		<guid isPermaLink="false">https://www.helpnetsecurity.com/?p=384271</guid>

					<description><![CDATA[<p>Existing security and governance practices have largely focused on identities, permissions, access, configurations and controls. WithSecure’s Navigating Trust in the Modern Salesforce Ecosystem paper says Salesforce environments also require organizations to understand what information they rely on, how trust extends across connected systems, what actions are performed and what outcomes those actions produce. A Trust Relationship (Source: WithSecure) What trust means The paper describes trust as the belief that people, systems, information and connected services &#8230; <a href="https://www.helpnetsecurity.com/2026/09/11/withsecure-salesforce-ai-trust-governance-paper/" rel="nofollow">More <span class="meta-nav">&#8594;</span></a></p>
<p>The post <a href="https://www.helpnetsecurity.com/2026/09/11/withsecure-salesforce-ai-trust-governance-paper/">AI is changing what Salesforce security needs to govern</a> appeared first on <a href="https://www.helpnetsecurity.com">Help Net Security</a>.</p>
]]></description>
		
		
		
			</item>
		<item>
		<title>Ubuntu 24.04.5 LTS release patches security bugs across ten flavors</title>
		<link>https://www.helpnetsecurity.com/2026/09/11/ubuntu-24-04-5-lts-released/</link>
		
		<dc:creator><![CDATA[Anamarija Pogorelec]]></dc:creator>
		<pubDate>Fri, 11 Sep 2026 04:07:41 +0000</pubDate>
				<category><![CDATA[News]]></category>
		<category><![CDATA[Canonical]]></category>
		<category><![CDATA[Linux]]></category>
		<category><![CDATA[Ubuntu]]></category>
		<guid isPermaLink="false">https://www.helpnetsecurity.com/?p=384332</guid>

					<description><![CDATA[<p>Canonical shipped Ubuntu 24.04.5 LTS, bundling security updates and fixes for high-severity bugs into new installation media for the &#8220;Noble Numbat&#8221; release. Anyone installing fresh now gets those corrections baked in from the start, cutting the batch of updates that would normally follow setup. The point release covers more than the desktop and server editions. Nine other flavors, including Kubuntu, Xubuntu, Ubuntu MATE, Ubuntu Studio, and Edubuntu, also moved to version 24.04.5, each carrying its &#8230; <a href="https://www.helpnetsecurity.com/2026/09/11/ubuntu-24-04-5-lts-released/" rel="nofollow">More <span class="meta-nav">&#8594;</span></a></p>
<p>The post <a href="https://www.helpnetsecurity.com/2026/09/11/ubuntu-24-04-5-lts-released/">Ubuntu 24.04.5 LTS release patches security bugs across ten flavors</a> appeared first on <a href="https://www.helpnetsecurity.com">Help Net Security</a>.</p>
]]></description>
		
		
		
			</item>
		<item>
		<title>New infosec products of the week: September 11, 2026</title>
		<link>https://www.helpnetsecurity.com/2026/09/11/new-infosec-products-of-the-week-september-11-2026/</link>
		
		<dc:creator><![CDATA[Anamarija Pogorelec]]></dc:creator>
		<pubDate>Fri, 11 Sep 2026 04:00:08 +0000</pubDate>
				<category><![CDATA[News]]></category>
		<category><![CDATA[Akeyless]]></category>
		<category><![CDATA[Scytale]]></category>
		<category><![CDATA[Securin]]></category>
		<guid isPermaLink="false">https://www.helpnetsecurity.com/?p=383918</guid>

					<description><![CDATA[<p>Here’s a look at the most interesting products from the past week, featuring releases from Akeyless, Orchid Security, Scytale, and Securin. Securin Platform helps security teams prove when attack paths are closed Securin has announced the general availability of the Securin Platform, an AI-native Preemptive Exposure Management platform designed to answer three questions security teams struggle with every day: What can attackers actually exploit? What should we fix first? And did the fix actually work? &#8230; <a href="https://www.helpnetsecurity.com/2026/09/11/new-infosec-products-of-the-week-september-11-2026/" rel="nofollow">More <span class="meta-nav">&#8594;</span></a></p>
<p>The post <a href="https://www.helpnetsecurity.com/2026/09/11/new-infosec-products-of-the-week-september-11-2026/">New infosec products of the week: September 11, 2026</a> appeared first on <a href="https://www.helpnetsecurity.com">Help Net Security</a>.</p>
]]></description>
		
		
		
			</item>
	</channel>
</rss>
