惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

H
Help Net Security
T
ThreatConnect
SecWiki News
SecWiki News
F
Future of Privacy Forum
AWS News Blog
AWS News Blog
C
Cisco Blogs
A
Arctic Wolf
Vercel News
Vercel News
The GitHub Blog
The GitHub Blog
Scott Helme
Scott Helme
V
V2EX
博客园 - 叶小钗
阮一峰的网络日志
阮一峰的网络日志
K
Kaspersky official blog
G
Google Developers Blog
freeCodeCamp Programming Tutorials: Python, JavaScript, Git & More
P
Privacy International News Feed
C
Cyber Attacks, Cyber Crime and Cyber Security
N
News | PayPal Newsroom
Schneier on Security
Schneier on Security
NISL@THU
NISL@THU
Microsoft Azure Blog
Microsoft Azure Blog
量子位
The Hacker News
The Hacker News
Stack Overflow Blog
Stack Overflow Blog
Security Latest
Security Latest
M
Microsoft Research Blog - Microsoft Research
Google Online Security Blog
Google Online Security Blog
博客园_首页
C
CXSECURITY Database RSS Feed - CXSecurity.com
I
InfoQ
Google DeepMind News
Google DeepMind News
Y
Y Combinator Blog
The Cloudflare Blog
Microsoft Security Blog
Microsoft Security Blog
Martin Fowler
Martin Fowler
Cisco Talos Blog
Cisco Talos Blog
钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知
T
Troy Hunt's Blog
F
Fox-IT International blog
S
Security @ Cisco Blogs
博客园 - 司徒正美
cs.CV updates on arXiv.org
cs.CV updates on arXiv.org
C
Comments on: Blog
Threat Intelligence Blog | Flashpoint
Threat Intelligence Blog | Flashpoint
L
LINUX DO - 最新话题
GbyAI
GbyAI
Project Zero
Project Zero
腾讯CDC
T
Tailwind CSS Blog

Help Net Security

Anthropic adds 28 security and compliance integrations for Claude Cisco refines its risk-based vulnerability disclosure for the AI era Authorities seize 800 servers used for cyberattacks and disinformation US states step up cyber defenses to protect local communities Lessons for organizations from the Verizon 2026 Data Breach Investigations Report OpenHack: Open-source AI-powered vulnerability research Boards want cyber risk in dollars, not CVE counts Turns out the C-suite loves shadow AI Week in review: GitHub breached via poisoned VS Code extension, critical NGINX flaw exploited $20 per zero-day is already the WordPress plugin reality Deleted Google API keys keep working for up to 23 minutes, researchers warn Kore.ai unveils AI-native platform for enterprise multiagent systems Suspected KimWolf botnet admin arrested over DDoS-for-hire operation Versa extends zero trust principles to AI agents and MCP workflows GitLab 19.0 adds AI workflows, secrets management, and self-hosted model support Proton Pass adds monitored credential sharing for AI agents Keepnet contributes voice and SMS phishing data to the 2026 Verizon DBIR CISA’s new KEV nomination form opens reporting to vendors and researchers Microsoft 365 users targeted by new phishing threat that bypasses MFA Meet Fractal, an OS made for microarchitecture reverse engineering Downtime has become a $600 billion business problem The new economics of fraud: Cheaper, faster, more convincing New infosec products of the week: May 22, 2026 Microsoft open-sources tools for designing and testing AI agents Authorities dismantle First VPN, used by ransomware actors GitHub, Grafana Labs breaches traced back to TanStack supply chain compromise Microsoft Defender vulnerabilities exploited in the wild (CVE-2026-41091, CVE-2026-45498) Virtru centers file collaboration around data-level protection ASAPP expands adversarial testing for enterprise AI systems Tenable Hexa AI automates remediation across attack surfaces Riverbed introduces new Aternity tools for autonomous IT operations Forward launches Predict to test network changes before deployment CTERA brings AI insights and automation for unstructured data Terra adds continuous network exploitation validation to its platform Why AI changed the threat model for travel technology Most dark web activity revolves around a handful of topics AI red teaming agents change how LLMs get tested Product showcase: Bitdefender Mobile Security for iOS protects privacy where scams begin Cyber threats push SMBs to spend more on security Webworm APT targets European government organizations with new backdoors Verizon DBIR: Vulnerability exploitation is the dominant initial access vector NanoCo lands $12 million seed funding, launches enterprise assistant built on NanoClaw FBI: $388 million lost in crypto ATM scams in 2026 ArmorCode gives security teams AI workers for exposure and remediation Novata uses AI to map risk across portfolios and supply chains TeamPCP breached GitHub’s internal codebase via poisoned VS Code extension Trust3 AI focuses on AI agent risks with MCP Security layer Encryption Consulting launches CertSecure Manager v3.3 with zero-touch certificate renewals Darwinium updates mobile SDKs to detect remote access scam activity Microsoft provides mitigation for “YellowKey” BitLocker bypass flaw (CVE-2026-45585) Communicating cyber risk in dollars boards understand CVE Lite CLI: Open-source dependency vulnerability scanner When your AI assistant has the keys to production 7 hard truths security pros should know: 2026 DevOps Threats Report What happens when your identity provider becomes the kill chain PureLogs infostealer is stealing credentials worldwide Selector extends AI-driven observability into multi-cloud environments LaunchDarkly adds real-time controls for AI agents in production Canonical ships Ubuntu Core 26 with 15 years of security maintenance New macOS infostealer impersonates Apple, Microsoft, and Google in a single attack chain The end of unencrypted Discord calls is here Babel Street targets AI-driven threats with new agentic investigation capabilities iProov brings identity verification to video meetings to reduce fraud risks Egnyte unveils Email Capture and AI features to unify fragmented data Public Instagram posts provide raw material for AI phishing campaigns Earbud sensors can authenticate users by their heartbeat, study finds AI infrastructure is cracking under sovereignty demands Cybersecurity jobs available right now: May 19, 2026 AI is drowning software maintainers in junk security reports Game over for 74 suspected scammers after Dutch cops plastered their faces on billboards Attackers are exploiting critical NGINX vulnerability (CVE-2026-42945) SmartBear expands ReadyAPI with AI-powered API testing capabilities Attackers accessed, downloaded code from Grafana Labs’ GitHub 201 arrested in INTERPOL disruption of phishing and fraud networks The AI backdoor your security stack is not built to see Lyrie: Open-source autonomous pentesting agent AI shrinks vulnerability exploitation window to hours Product showcase: McAfee + ChatGPT integration turns doubt into a scam check When ransomware hits, confidence doesn’t restore endpoints Debian 13.5 point release lands with security fixes, bug patches Week in review: Cisco patches SD-WAN 0-day, unpatched Microsoft Exchange Server flaw exploited Google lets Workspace admins apply one policy across all SAML apps Cisco patches another actively exploited SD-WAN zero-day (CVE-2026-20182) Akamai to acquire LayerX for $205 million Thieves unlock stolen iPhones using cheap tools sold on Telegram Unpatched Microsoft Exchange Server vulnerability exploited (CVE-2026-42897) Rocky Linux launches opt-in security repository for urgent fixes Keycard helps developers secure autonomous AI agents with scoped access Deepfake detection is losing ground to generative models Zombie linkages are keeping expired domains trusted for years The AI oversight paradox: Is the investment worth the cost of watching it? New infosec products of the week: May 15, 2026 Fragnesia: New Linux kernel LPE bug was spawned by Dirty Frag patch (CVE-2026-46300) HYCU aiR detects insider risk and AI activity from backups Cofense adds AI-powered campaign detection to stop phishing attacks Microsoft’s WinUI agent plugin trims token use by over 70% during development Microsoft turns Copilot Studio into an AI agent control center AI cyber capability is speeding past earlier projections CERN’s open source KiCad library gives the world 17,000 circuit board components Vector embedding security gap exposes enterprise AI pipelines
Cybersecurity jobs available right now: May 26, 2026
Anamarija Po · 2026-05-26 · via Help Net Security

cybersecurity jobs May 2026

Application Security Engineer

IG Group | India | Hybrid – View job details

As an Application Security Engineer, you will assess the security of web, mobile, and cloud applications through penetration testing, secure code reviews, threat modeling, and architecture reviews. Responsibilities also include integrating security into CI/CD pipelines, managing vulnerability remediation, supporting purple team activities, training developers on secure coding practices, and assisting with application security incident response.

CISO

LianLian | Austria | Hybrid – View job details

As a CISO, you will lead cybersecurity governance, regulatory compliance, and operational resilience efforts, including DORA and MiCA requirements. Responsibilities include overseeing security monitoring, incident response, resilience testing, business continuity, and digital asset security, including wallet, key, and third-party custody controls.

Get weekly updates on new cybersecurity job openings. Subscribe here!

Cyber Security Engineer

MetaComp | Singapore | On-site – View job details

As a Cyber Security Engineer, you will strengthen identity, endpoint, application, and cloud security through SSO, MFA, MDM, DevSecOps, and secrets management initiatives. Responsibilities also include improving threat detection and hunting capabilities, supporting purple team activities, building security automation, and maintaining security controls and compliance standards.

Fraud Investigations & Digital Forensics Manager

ADIB | UAE | On-site – View job details

As a Fraud Investigations & Digital Forensics Manager, you will lead and support fraud investigations and digital forensic activities, including investigating suspected fraud cases, identifying root causes, documenting findings, and recommending remediation actions. Responsibilities include conducting IT and digital forensic investigations, using data analytics to support investigations, maintaining investigation procedures, and coordinating with internal stakeholders to gather information and address control gaps.

GRC Manager

Sigma | USA | On-site – View job details

As a GRC Manager, you will lead governance, risk, and compliance programs by developing policies, oversight frameworks, and reporting processes aligned with business objectives. You will manage enterprise risk activities, including risk assessments, business continuity planning, disaster recovery, and third-party risk management.

Must read:
How to succeed at cybersecurity job interviews

Red Team Operator

Swift | USA | Hybrid – View job details

As a Red Team Operator, you will execute adversary simulations and penetration tests across enterprise, cloud, and hybrid environments. Responsibilities include supporting the full attack lifecycle, managing red team infrastructure, developing custom tooling, researching evasion techniques, and aligning operations with frameworks such as MITRE ATT&CK and TIBER.

Senior Cyber Security Engineer / CSET Team

Scientific Research Corporation | USA | On-site – View job details

As a Senior Cyber Security Engineer / CSET Team, you will support offensive security and red team operations by conducting adversarial emulation exercises using real-world tactics, techniques, and procedures (TTPs). Responsibilities include executing red team engagements from planning through reporting, performing security assessments, and providing security engineering guidance and risk reduction recommendations.

Senior Embedded Security Engineer

Cellebrite | Israel | Hybrid – View job details

As a Senior Embedded Security Engineer, you will develop and maintain custom Linux images and Board Support Package (BSP) components for embedded platforms used in digital forensics and law enforcement environments. Responsibilities include improving platform security, identifying and mitigating vulnerabilities, and working with research teams to address security challenges in mobile devices.

Senior Information Security Analyst

TreviPay | USA | Hybrid – View job details

As a Senior Information Security Analyst, you will monitor and investigate security alerts from tools such as SIEM, EDR, IDS/IPS, and CSPM platforms, validate incidents, and support or lead response activities including containment, remediation, and recovery. Responsibilities include developing detection logic and response playbooks, maintaining security tools and platforms, and working with IT and engineering teams to strengthen security controls and address vulnerabilities.

Senior Network Security Engineer

Perma Technologies | USA | On-site – View job details

As a Senior Network Security Engineer, you will manage and secure enterprise network environments with a focus on Palo Alto and Fortinet platforms. Responsibilities include configuring and maintaining firewalls and VPNs, troubleshooting complex network and security issues, improving security policies and automation, monitoring security events, and supporting assessments and compliance efforts.

Senior Penetration Tester

BreachLock | USA | Remote – View job details

As a Senior Penetration Tester, you will perform web application, API, and mobile security assessments with a focus on manual testing techniques, including business logic flaws, authentication weaknesses, authorization issues, and complex attack paths. Responsibilities also include internal and external network assessments and assumed breach engagements involving Active Directory enumeration, lateral movement, privilege escalation, and post-exploitation activities.

Senior Security Consultant (Android Malware Reverse Engineering)

NetSPI | United Kingdom | Remote – View job details

As a Senior Security Consultant focused on Android malware reverse engineering, you will analyze and reverse engineer Android applications, deliver findings to clients, and help develop remediation strategies to improve security posture. Responsibilities include researching new reverse engineering techniques and tools, contributing to service development and thought leadership initiatives, supporting pre-sales activities, and providing technical guidance to internal teams.

Senior Security Engineer

PheedLoop | Canada | On-site – View job details

As a Senior Security Engineer, you will lead internal red team activities and security testing across applications, infrastructure, and users to identify weaknesses and drive remediation. Responsibilities include conducting attack simulations, strengthening software supply chain security, improving endpoint security, leading incident response and threat hunting efforts, and developing security processes and playbooks.

Systems Cybersecurity Test Engineer

Chipright | Ireland | On-site – View job details

As a Systems Cybersecurity Test Engineer, you will design and execute cybersecurity-focused test strategies to validate both functional and security requirements across complex systems. Responsibilities include threat modeling, risk assessments, penetration and fuzz testing, attack analysis, and working with cross-functional teams to strengthen product security and support test automation efforts.

Threat Hunter

Nebulock | USA | Remote – View job details

As a Threat Hunter, you will conduct structured threat hunts across endpoint, identity, and log telemetry to identify post-compromise activity, lateral movement, and insider threats. You will develop hunt hypotheses, refine detection methods, and work with design partners to validate findings and improve detection coverage.