Please confirm you are human

This browser or connection looks automated. Press and continuously hold the control for 3 seconds to enable Google-hosted web results and, when separately allowed, AI-assisted answers.

A successful check enables 100 search requests. Interactive access does not authorize scraping, systematic collection, or reuse of search output.

Hold with a pointer, or hold Space or Enter.

News


helpnetsecurity.com > 09/14/2026 > permify-open-source-authorization-as-a-service

Permify: Open-source authorization as a service

12+ hour, 33+ min ago   (209+ words) Permify is an open-source authorization service that answers access questions at run time: can user X view document Y, which posts can members of team Y edit. It keeps those rules in one place, apart from the application code that…...


helpnetsecurity.com > 09/10/2026 > product-showcase-gitguardian-honeytoken-decoy-service

Product showcase: GitGuardian Honeytoken catches credential theft as it happens

4+ day, 12+ hour ago   (730+ words) Credential harvesting on developer machines has widened. Earlier infostealers worked from a short list of known targets, mostly browser stores and a few cloud credential paths. The families active now cast a much wider net. Shai-Hulud, for instance, ran a…...


helpnetsecurity.com > 09/09/2026 > bleachbit-6-0-4-released

BleachBit 6.0.4 fixes secure wiping that skipped clusters on Windows

5+ day, 13+ hour ago   (275+ words) The open source cleaner BleachBit reached version 6.0.4 this week, erasing caches, browser traces, and files on Windows, Linux, and now macOS. If you shredded a sensitive file on Windows with an earlier build, parts of it may still sit on…...


helpnetsecurity.com > 09/07/2026 > toolhive-open-source-mcp-server-security

ToolHive: The open-source way to run any MCP server securely

1+ week, 12+ hour ago   (243+ words) ToolHive is an open-source platform that runs Model Context Protocol servers inside containers. An MCP server is the connector that lets an AI client like Cursor or Claude Code reach an outside tool, and Stacklok ships ToolHive under Apache 2.0, so…...


helpnetsecurity.com > 09/02/2026 > sift-open-source-secret-scanning

Open-source secrets scanning tool Sift hunts credentials in Microsoft 365, Slack, and Jira

1+ week, 5+ day ago   (323+ words) Colin Watson is CTO at Stratus Security and works the engagements himself. “For example, on my most recent pentest there were thousands of credentials in Jira ticket comments found by this tool and their pentester for 5 years prior had never…...


helpnetsecurity.com > 09/01/2026 > crowdsec-1-8-0-bot-detection

Bot detection arrives in CrowdSec 1.8.0, along with two DoS fixes

1+ week, 6+ day ago   (487+ words) Failed SSH logins pile up in an auth log, and a scanner walks a website looking for exposed admin paths. CrowdSec reads log sources and HTTP requests, works out which addresses are misbehaving, and hands the block to a separate…...


helpnetsecurity.com > 08/31/2026 > halo-record-open-source-ai-agent-audit-trail

Halo-record: Open-source audit trails for AI agents

2+ week, 12+ hour ago   (230+ words) Raw arguments never enter a record. Values get hashed and kept as a redacted summary, and the redaction is pattern matching against common secret and personal-data formats. The package has no runtime dependencies and runs about 5,300 lines of Python, which…...


helpnetsecurity.com > 08/26/2026 > the-linux-foundation-trace-ai-agent-security

Linux Foundation takes on TRACE, a hardware-backed runtime evidence specification for AI agents

2+ week, 5+ day ago   (220+ words) The Linux Foundation announced the contribution of TRACE (Trust, Runtime Attestation and Compliance Evidence), from OPAQUE. Collaboratively developed by AMD, Intel, Microsoft, OPAQUE and the Technology Innovation Institute (TII), TRACE creates a standard, open evidence layer that enables reliable governance…...


helpnetsecurity.com > 08/21/2026 > gitlab-19-3-updates

GitLab 19.3 helps enterprises scale agentic development securely

3+ week, 3+ day ago   (573+ words) GitLab has announced updates that give enterprises more control as they scale agentic software development. GitLab Dedicated customers, who already run their most sensitive software delivery workloads on GitLab, can now run GitLab Duo Agent Platform inside that same single…...


helpnetsecurity.com > 08/18/2026 > google-zero-trust-ai-agents

Google???s $10,000 refund test shows why AI agents need zero trust

3+ week, 6+ day ago   (712+ words) Google’s open-source autonomous Customer Support & Returns Agent, built using the Agent Development Kit (ADK) and Gemini, demonstrates how developers can apply zero-trust security principles to AI agents that interact with sensitive systems and take real-world actions. The project tests an…...