Sansec blocked the first exploits of CVE-2026-71362, an unauthenticated account takeover in Adobe Commerce rated 9.1.
Chick-fil-A disclosed a credential stuffing attack that compromised customer accounts in the Chick-fil-A One loyalty program.
Zoom fixed CVE-2026-53412, a critical account takeover vulnerability with a CVSS score of 9.8 affecting Windows users.
Pentera Labs showed how a compromised email inbox can lead to remote code execution on a target machine by hijacking…
A 15-year-old Japanese student used a ChatGPT-assisted program to cancel over 46,800 accounts on Bandai Channel, forcing a month-long service…
The EvilTokens phishing kit encrypts its landing page content with AES GCM to bypass static URL analysis, exploiting Microsoft's device…
A coordinated phishing campaign using over 300 cloned FIFA sites is targeting fans ahead of the 2026 World Cup, aiming…
An overlooked debug flag in six Microsoft 365 Android apps allowed any untrusted app on the device to silently steal…