Meta Paid $78,000 Bounty for Vulnerability Exposing Customer Support Data
A security researcher discovered a broken access control vulnerability in Meta’s support infrastructure. The post Meta Paid $78,000...
A security researcher discovered a broken access control vulnerability in Meta’s support infrastructure. The post Meta Paid $78,000...
Hackers exfiltrated personal, financial, and health information from the company’s Oracle EBS instance in August 2025. The post...
Gaetje’s story shows that you don’t need to be a ‘deep bit-crawler’ to become a Chief Information Security...
Part of a larger toolkit, HollowGraph uses a compromised 365 account’s calendar as a two-way dead-drop. The post...
Attendees will be able to interact with leading solution providers and other end users facing similar challenges in...
Hackers stole names, addresses, Social Security numbers, credit/debit card numbers, and other information from a third-party management platform....
Longtime cybersecurity executive Richard Bird built the resource for security experts, journalists, policymakers, and everyday citizens. The post...
Cybersecurity researchers have flagged a new software supply chain attack codenamed SleeperGem targeting the Ruby ecosystem after three...
In an ironic twist, open-source artificial intelligence (AI) platform Hugging Face revealed that it was the victim of...
A solo Russian-speaking threat actor known as “bandcampro” outsourced a chunk of their operations to Google’s open-source Gemini...
Opening a crafted XZ archive in 7-Zip could let an attacker run code on the machine. The flaw,...
A previously undocumented threat actor has been attributed to the exploitation of recently disclosed SonicWall Secure Mobile Access...
Russian state-sponsored threat actors have been observed leveraging the infamous ClickFix strategy to trick Ukrainian targets into infecting...
F5 has shipped fixes for a critical nginx flaw that lets a remote, unauthenticated attacker trigger a heap...
Recent Comments