Security
Showing 12 of 140 articles · Page 2 of 12

Oldest Ever cURL Vulnerability Patched After 24 Years
cURL version 8.21.0 fixes CVE-2026-8932, a critical connection reuse flaw present since 2001, alongside 17 other security vulnerabilities.

Meta Suspends Employee Surveillance Program After Major Data Leak
Meta halts its AI training program that tracked employee keystrokes and screens after an internal leak exposed sensitive data to all staff.

LastPass Customer Data Leaked Following Third-Party Service Breach
LastPass confirms customer data leak via third-party platform Klue. Vaults are safe, but names, emails, and phone numbers were exposed.

New WhatsApp Web Phishing Attack Grants Remote Access via VBScript
New WhatsApp Web phishing attack uses VBScript to install remote access tools on Windows. Learn how to stay safe from this global malware campaign.

Hacker Exploits Weak Security to Send Fake Civil Defense Alerts in Brazil
A hacker capitalized on weak passwords and a lack of MFA to send fake Civil Defense alerts to ten Brazilian states via the official Idap platform.

Novo Nordisk Data Breach Leaks Ozempic Formula and Patient Records
Novo Nordisk suffers a 1.3 TB data breach leaking the Ozempic formula, clinical records, and patient data due to weak passwords and a GitHub token leak.

Critical Beats Studio Buds Security Patch Fixes Spying Vulnerability
Apple releases firmware update 1B211 for Beats Studio Buds to fix CVE-2025-20701, a Bluetooth flaw that allowed attackers to listen via the microphone.

Major FIFA API Security Flaw Put World Cup Broadcasts at Risk
A massive security flaw in FIFA's API allowed hackers to hijack World Cup broadcasts and control live stadium cameras. The vulnerability is now patched.

FBI Disrupted Mass Phishing Operation Targeting Millions of Credit Cards
The FBI dismantled a massive phishing operation involving 9,000 sites and 1M URLs that stole 3.8M credit card records and caused $1.9B in losses.

Arch Linux AUR Security Breach: Over 1,500 Malicious Packages Found
Arch Linux maintainers are removing 1,500+ malicious AUR packages. The security breach affects Node.js, Firefox components, and NeoVim plugins.

Kernel Vulnerability: How One Exclamation Mark Broke Linux Security
A typo in the Linux nf_tables subsystem (CVE-2026-23111) allows for 99% stable root privilege escalation. Learn how one character broke kernel security.

Massive Data Leak Hits Receita Federal with 1 Billion Records Exposed
A massive leak at Brazil's Receita Federal has exposed 1 billion records, including CPFs and CNPJs, via an unpatched old system vulnerability.