Cybercrime Dashlane Brute-Force Attack Leads to Limited Encrypted Vault Downloads Dashlane’s security systems automatically locked accounts to protect them against the hacking attempts. Eduard KovacsJune 2, 2026
Identity & Access SIM Swaps Expose a Critical Flaw in Identity Security SIM swap attacks exploit misplaced trust in phone numbers and human processes to bypass authentication controls and seize high-value accounts. Torsten GeorgeMarch 10, 2026
Application Security GitHub Boosting Security in Response to NPM Supply Chain Attacks GitHub will implement local publishing with mandatory 2FA, granular tokens that expire after seven days, and trusted publishing. Ionut ArghireSeptember 24, 2025
Data Breaches Cisco Duo Says Hack at Telephony Supplier Exposed MFA SMS Logs Cisco Duo warns that breach exposed phone numbers, phone carriers, metadata and other logs that could lead to downstream social engineering attacks. Ryan NaraineApril 15, 2024
Identity & Access PyPI Enforcing 2FA for All Project Maintainers to Boost Security PyPI will require all accounts that maintain a project to enable two-factor authentication (2FA) by the end of 2023. Ionut ArghireMay 30, 2023