GhostToken GCP flaw let attackers backdoor Google accounts April 21, 2023 Google has addressed a Cloud Platform (GCP) security vulnerability impacting all users and allowing attackers to backdoor their accounts using
Critical infrastructure also hit by supply chain attack behind 3CX breach April 21, 2023 The X_Trader software supply chain attack that led to last month’s 3CX breach has also impacted at least several critical
Kubernetes RBAC abused to create persistent cluster backdoors April 21, 2023 Hackers use a novel method involving RBAC (Role-Based Access Control) to create persistent backdoor accounts on Kubernetes clusters and hijack
American Bar Association data breach hits 1.4 million members April 21, 2023 The American Bar Association (ABA) has suffered a data breach after hackers compromised its network and gained access to older
University websites using MediaWiki, TWiki hacked to serve Fortnite spam April 21, 2023 Websites of multiple U.S. universities are serving Fortnite and ‘gift card’ spam. Researchers observed Wiki and documentation pages being hosted by universities including Stanford, MIT, Berkeley,