Lapsus$ breached TMobile

Lapsus$ breached TMobile

The LAPSUS$ group made headlines this year after a string of high profile attacks on Nvidia, Microsoft and Samsung. Seven members of the group have since been arrested, but it seems…
TruffleHog 3.0 ! Supports 600 Key Types

TruffleHog 3.0 ! Supports 600 Key Types

The newest version of TruffleHog has launched with support for more than 600 key types, furthering the tool’s ability to hunt for credential leaks. Leaked credentials, including secret key pairs,…
Java Digital Signature Bypass Vulnerability

Java Digital Signature Bypass Vulnerability

Security researcher Khaled Nassar released a PoC code for a new digital signature bypass vulnerability, tracked as CVE-2022-21449 with CVSS score: 7.5 in Java. An unauthenticated attacker with network access via multiple…
Atlassian released updates for Jira Seraph

Atlassian released updates for Jira Seraph

Atlassian released a security advisory for Jira and Jira Service Management, regarding an auth bypass vulnerability in its web authentication framework, Jira Seraph. The vulnerability actually relies in the core…