Human Security A Microsoft alert shows a phone number? Do not call support from a pop-up
A loud warning says your computer or account is at risk and tells you to call immediately. Here is a simple way out of the fake emergency.
Daily news, analysis and practical guides explaining what happened, who is affected and what to do next. We also turn this knowledge into practical training for organisations.
Human Security A loud warning says your computer or account is at risk and tells you to call immediately. Here is a simple way out of the fake emergency.
Identity and Access A link may open a real Google or Microsoft sign-in page, then request broad access to email and files. Learn what you are actually approving.
Human Security A message from someone you know leads to a vote, then asks for a code or QR scan. Learn where to stop and how to secure your account after a mistake.
Vulnerabilities and CVEs CVE-2026-75650 is a CVSS 10.0 flaw under active exploitation. The September patch alone is not enough: verify the hotfix, keys and incident evidence.
AI Security OmniRoute before 3.8.49 allowed code execution through custom ACP agent registration. Learn when exploitation was anonymous and how to assess exposure.
Cloud, Infrastructure and DevSecOps Traefik 3.7.13 and 2.11.57 fix four flaws across HTTP/3, h2c, paths and trailers. Understand the prerequisites and the safe upgrade plan.
Human Security A free coupon finder, translator or PDF tool may gain broad browser access. Learn what permission warnings mean and how to restrict access to a click.
Human Security A fake bank, a document carrying a police logo and a courier collecting your card can be one scam. Here is how to break the pressure and keep control.
Vulnerabilities and CVEs A critical path traversal in the commits API can expose arbitrary GitLab server files. CVSS is 10.0, CISA added it to KEV, and self-managed instances need an urgent update.
Human Security You do not have to handle this alone. Learn how to preserve evidence, report the content and use StopNCII or Take It Down without sending the image.
Vulnerabilities and CVEs A ScreenConnect client flaw can transfer and execute a file in an active session without host authorisation. CVSS 9.9, CISA KEV and the 26.6.5 fix make this urgent.
Threats and Incidents A message looks ordinary but hides Unicode characters between its letters. Microsoft's campaign analysis shows why security tools should normalise text first.
Human Security A child's national ID number and personal data can be misused for years before a family notices. Here is how to reduce the risk and respond in Poland.
Human Security Appeals for help appear quickly after a disaster, and fake fundraisers follow. A few calm checks can make sure your donation reaches people in need.
Identity and Access A call from IT, an urgent passkey setup and a genuine Microsoft page can all be part of one attack. Here is where the trap lies and how to stop it.
Once a month, a concise summary of the vulnerabilities and threats that matter. No spam, unsubscribe anytime.