Identity & access
-
Stolen passwords unlock SonicWall accounts at 30 organisations
An automated credential-stuffing campaign produced successful unauthorised SonicWall logins at 30 organisations without exploiting a software vulnerability.
-
Exposed BMCs leave server control outside normal defences
Researchers found tens of thousands of internet-accessible server-management controllers, including more than 24,000 that disclosed password-derived material before authentication.
-
Managed cloud identities cross privilege boundaries
Disputed findings in Azure and Google Cloud show how a provider-operated or customer-managed service identity can exercise authority beyond that held by the user initiating an action.
-
VPN bypass opens path to Qilin ransomware
A configuration-dependent GlobalProtect authentication bypass has become an initial-access route for intrusions involving credential theft, data exfiltration, encryption, and Qilin ransomware.
-
Remote hiring campaign reaches UK bank
Hundreds of suspicious applications for remote jobs at an unnamed British bank have placed recruitment controls alongside identity governance, insider risk, and sanctions compliance.
-
Hostile hotel Wi-Fi reroutes Microsoft logins
Attackers are compromising hospitality gateways and poisoning DNS responses to redirect connected users towards counterfeit Microsoft 365 authentication pages.
-
Azure Automation flaw crossed tenant boundary
Microsoft researchers chained an exposed service configuration with two Azure Automation flaws to assume an identity belonging to another cloud tenant.
-
Adobe extension crossed into WhatsApp Web
A patched Adobe Acrobat browser-extension flaw allowed malicious websites to read information rendered inside an open WhatsApp Web session.
-
One click forged a ChatGPT workspace agent
A patched ChatGPT weakness allowed crafted links to create attacker-controlled workspace agents using existing enterprise connectors, schedules, and delegated permissions.
-
Check Point flaw reaches firewall control plane
An actively exploited authentication bypass exposed internet-facing Check Point management systems, placing firewall policy and administrative infrastructure within an attacker’s reach.







