vulnu.com <- sign up for my weekly cybersecurity newsletter
We can connect some dots based on what they do as a company.
We can connect some dots based on what they do as a company.
Join over 30k pros who get my weekly newsletter for free:
Join over 30k pros who get my weekly newsletter for free:
It's all just OAuth tokens all the way down.
Read the whole story here:
It's all just OAuth tokens all the way down.
Read the whole story here:
While this is all good advice, it wouldn't have done much to stop this type of attack.
Hacks are just logins in 2025.
While this is all good advice, it wouldn't have done much to stop this type of attack.
Hacks are just logins in 2025.
Even apologized and said that was just them testing the login page.
Even apologized and said that was just them testing the login page.
Claims align with known Medusa TTPs focusing on high-value targets.
Claims align with known Medusa TTPs focusing on high-value targets.
Group has hit 300+ victims in past 4 years per US cyber authorities.
(img: TheHackerNews)
Group has hit 300+ victims in past 4 years per US cyber authorities.
(img: TheHackerNews)
Offer later increased to 25% of what they claimed would be "1% of BBC's total revenue."
Offer later increased to 25% of what they claimed would be "1% of BBC's total revenue."
He played along so we got a look inside their tactic here:
He played along so we got a look inside their tactic here:
Keys. Secrets. Deployment. All that jazz.
None of the tools help, if anything they make it super easy to do wrong.
Keys. Secrets. Deployment. All that jazz.
None of the tools help, if anything they make it super easy to do wrong.
@haroonmeer.canary.love : “With bootstrapping you need to be careful to not be timid when it’s time to be bold”
Just great life advice in general. Will remember this quote forever.
Oh and @hdm.io and @andrewmorr.is are cool too.
@haroonmeer.canary.love : “With bootstrapping you need to be careful to not be timid when it’s time to be bold”
Just great life advice in general. Will remember this quote forever.
Oh and @hdm.io and @andrewmorr.is are cool too.
Join over 30k pros: vulnu.com/subscribe
Join over 30k pros: vulnu.com/subscribe
Original article: www.404media.co/wome...
Original article: www.404media.co/wome...
This is why security and privacy pros hate these ID verification laws that require drivers license uploads - these apps just can't keep this stuff secure.
This is why security and privacy pros hate these ID verification laws that require drivers license uploads - these apps just can't keep this stuff secure.
The app is meant to be basically the "are we dating the same man?" Facebook group in a dating app.
In order to verify that the users are women, they ask for photos and driver's licenses.
The app is meant to be basically the "are we dating the same man?" Facebook group in a dating app.
In order to verify that the users are women, they ask for photos and driver's licenses.