Exposed credentials for an email address at an Indian Toyota insurance broker led to customer information compromise.
Hi, what are you looking for?
Exposed credentials for an email address at an Indian Toyota insurance broker led to customer information compromise.
A joint advisory from CISA and the FBI warns about Androxgh0st malware attacks ensnaring devices in a botnet.
Out-of-date Confluence Data Center and Server instances are haunted by a critical vulnerability leading to remote code execution.
GitHub rotates credentials and releases patches after being alerted of a vulnerability affecting GitHub.com and GitHub Enterprise Server.
Oracle releases 389 new security patches to address 200 vulnerabilities as part of the first Critical Patch Update of 2024.
Vulnerabilities in Android-based PoS terminals from PAX can be exploited to downgrade bootloaders, execute arbitrary code.
A vulnerability in an Opera browser feature for sharing files between devices could have led to remote code execution (RCE), threat protection firm Guardio...
Two DoS vulnerabilities patched in 2022 and 2023 haunt nearly 180,000 internet-exposed SonicWall firewalls.
Ukrainian authorities have arrested an individual allegedly involved in a $2 million cryptojacking operation.
Attackers exploit a recent Windows SmartScreen bypass vulnerability to deploy the Phemedrone information stealer.
GitLab has resolved a critical authentication vulnerability allowing attackers to hijack password reset emails.
Device maker Framework is notifying users that their personal information was stolen in a data breach at its external accounting partner.
Researchers detail a CI/CD attack leading to PyTorch releases compromise via GitHub Actions self-hosted runners.
Researchers find no direct link between Russian APT Sandworm and last year’s attacks on Denmark’s critical infrastructure.
Apple’s latest Magic Keyboard firmware addresses a recently disclosed Bluetooth keyboard injection vulnerability.
Chinese APT Volt Typhoon appears engaged in new attacks against government entities in the US, UK, and Australia.
CISA has added a critical Microsoft SharePoint Server flaw (CVE-2023-29357) to its Known Exploited Vulnerabilities catalog.
Cisco Unity Connection flaw could allow remote, unauthenticated attackers to upload arbitrary files and execute commands on the system.
The compromised information includes names, contact information, dates of birth, health information, medical treatment details, Social Security numbers, and employee records.
An improper input validation flaw in Kyocera Device Manager allows attackers to capture credentials, compromise accounts.