Researchers discovered the authentication bypass vulnerability while investigating a prior issue in the same service.
Related Articles
All CyberSecurityDive →Burned-out security leaders view AI as double-edged sword
Dive Brief: Overwhelmed cybersecurity executives hope AI can help them avoid missing signs of intrusions, even as they remain wary of the technology’s potential risks,…
White House’s state infrastructure cybersecurity initiative stalled
The Trump administration says it wants to help states implement innovative defenses. Most states are still waiting for the call to participate. Source link
UK authorities warn of retail-sector risks following cyberattack spree
U.K. authorities are urging organizations to remain vigilant following a series of cyberattacks against three leading retail companies, including the famed Harrods department store based…
Financially motivated cluster a key player in ToolShell exploitation
A financially motivated threat actor has been involved in a cluster of activity linked to the ToolShell vulnerability in Microsoft SharePoint, researchers at Palo Alto…
Treasury sanctions North Koreans involved in IT-worker schemes
Listen to the article 2 min This audio is auto-generated. Please let us know if you have feedback. The U.S. Department of the Treasury on…
DOJ, international partners take down BlackSuit group’s infrastructure
The U.S. government and seven international partners have seized the computer servers of the BlackSuit ransomware group and more than $1 million in cryptocurrency that…

