Identity & Access Management

03
Mar
Open S3 Bucket Exposes 2.5 Million Student Loan Records

Open S3 Bucket Exposes 2.5 Million Student Loan Records

A student loan servicing platform suffered a data breach when attackers discovered a publicly accessible Amazon S3 bucket that lacked
1 min read
03
Mar
Cloud Imperium Data Breach Exposes Code, Credentials, and Million‑Player Data

Cloud Imperium Data Breach Exposes Code, Credentials, and Million‑Player Data

Cloud Imperium, the UK‑based studio behind Star Citizen, quietly announced a security incident that gave attackers access to its
1 min read
02
Mar
OAuth Redirect Abuse Bypasses Defenses, Powers New Phishing Campaigns

OAuth Redirect Abuse Bypasses Defenses, Powers New Phishing Campaigns

Microsoft researchers discovered that threat actors are weaponizing OAuth’s redirect_uri parameter to create phishing links that appear to
1 min read
02
Mar
Chrome Extension Hijack Exploits New Gemini Panel, Threatening Sessions and Prompt Data

Chrome Extension Hijack Exploits New Gemini Panel, Threatening Sessions and Prompt Data

Palo Alto Networks discovered that malicious Chrome extensions can intercept and manipulate the newly added Gemini panel. By injecting script
1 min read
25
Feb
Zero‑Trust Lateral Defense: VMware vDefend Shields Inside Networks

Zero‑Trust Lateral Defense: VMware vDefend Shields Inside Networks

VMware’s vDefend platform expands zero‑trust principles beyond the perimeter, delivering continuous, real‑time monitoring of east‑west traffic
1 min read
25
Feb

Pro‑Russia Hacktivists Target OT with Credential‑Stuffing and Phishing

The Cybersecurity and Infrastructure Security Agency (CISA) issued an advisory warning of an organized wave of pro‑Russia hacktivist activity
1 min read