SafePal Data Breach: Authorization Flaw Exposes Data of Nearly 40,000 Customers
SafePal, a hardware wallet maker, has disclosed an authorization flaw in an order-tracking plug-in that exposed the personal information of approximately 39,798…
Latest cybersecurity news, breaches, vulnerability disclosures and industry developments.
SafePal, a hardware wallet maker, has disclosed an authorization flaw in an order-tracking plug-in that exposed the personal information of approximately 39,798…
Cybersecurity researchers at Wiz have disclosed a GitHub Actions workflow injection vulnerability in Snowflake's public snowflakedb/snowflake-connector-net repository. The flaw, present in the…
The rapid adoption of AI agents in the enterprise has introduced a new security challenge: the Model Context Protocol (MCP) servers that…
Threat actors are increasingly acquiring expired domains—known as "dropcatch domains"—to inherit their reputation and traffic, redirecting victims to scams and malware. According…
Identity and Access Management (IAM) compliance is the practice of proving that access controls are not just documented but actively enforced across…
Apple has issued a fresh batch of threat notifications to customers in 110 countries, warning that they may be targeted by mercenary…
Cybersecurity researchers at CTM360 have exposed a large-scale, global recruitment-themed phishing campaign that leverages Browser-in-the-Browser (BitB) windows to steal Google and Facebook…
Cybersecurity researchers at SpecterOps have detailed a post-exploitation technique that enables the Chrome DevTools Protocol (CDP) inside a running Google Chrome or…
A new White House memo signed by U.S. President Donald Trump directs the National Coordination Center (NCC) to establish a program allowing…
This week's ThreatsDay Bulletin covers a wide range of cybersecurity developments, including new attack techniques, data breaches, and product updates. Key highlights…