Aggregator
Why app modernization can leave you less secure
Enterprises typically “modernize” access patterns for an application by enabling industry standard protocols like OIDC or SAML to provide single sign-on (SSO) for legacy apps via a cloud identity provider (IDP). That’s a major step towards better user experience, improved credential hygiene, and centralized authentication, but it is not enough. Most modernization projects stop at the authentication layer, believing that identity transformation is complete once SAML or OIDC is wired up. What’s often overlooked is … More →
The post Why app modernization can leave you less secure appeared first on Help Net Security.
CVE-2025-5117 | Property Plugin 1.0.5/1.0.6 on WordPress property_package_user_role authorization
CVE-2025-26211 | Gibbon up to 28.x cross-site request forgery
CVE-2025-48744 | SIGB PMB prior 8.0.1.2 path traversal
CVE-2025-48743 | SIGB PMB prior 8.0.1.2 sql injection
CVE-2025-48742 | SIGB PMB prior 8.0.1.2 Installer missing authentication
CVE-2025-48382 | codelibs fess up to 14.19.1 org.codelibs.fess.helper.SystemHelper createTempFile permission assignment (GHSA-g88v-2j67-9rmx)
CVE-2025-48054 | radashi up to 12.5.0 set path prototype pollution (GHSA-2xv9-ghh9-xc69)
CVE-2025-33079 | IBM Controller/Cognos Controller 11.0.0/11.0.1/11.1.0 credentials storage
CVE-2025-48828 | vBulletin 6.0.3 Template improper protection of alternate path
CVE-2025-48827 | vBulletin up to 5.7.5/6.0.3 api.php?method=protectedMethod improper protection of alternate path
朝鲜“227研究中心”背后的网络暗战:东大如何应对新兴威胁?
美人计:情报世界里最古老而致命的武器
Когда операция ФБР — не ликвидация, а реклама: Lumma живее всех живых
How AI agents reshape industrial automation and risk management
In this Help Net Security interview, Michael Metzler, Vice President Horizontal Management Cybersecurity for Digital Industries at Siemens, discusses the cybersecurity implications of deploying AI agents in industrial environments. He talks about the risks that come with AI agents making semi-autonomous decisions, and why a layered security approach like Defense-in-Depth is key to keeping industrial systems safe. What are the implications of an AI agent being compromised in a critical infrastructure environment, such as an … More →
The post How AI agents reshape industrial automation and risk management appeared first on Help Net Security.