
OPSEC FAIL: US Military Email Going to Mali — via Typo
MX Mixup: Russian-allied government can intercept “highly sensitive information”—because there’s no “I” in .ML ... Read More

China Breaches Microsoft Cloud — Spied on US Govt. Email
Storm-0558 Brewing: Multiple Microsoft failures cause data leaks at State and Commerce depts., plus 23 other orgs ... Read More

Contec SolarView: Critical Bug Unpatched After 14 MONTHS
PV OT: VPN PDQ! 9.8 CVSS known since May 2022—but still exploitable on 400+ net-connected OT/ICS/SCADA systems ... Read More

Digital ‘Birth Certificates’ for Vehicular Cybersecurity
There's a growing likelihood for catastrophic cyberattacks on vehicles that could disable brakes, take over steering and even steal personal information ... Read More

Fortinet Bug: RUN — Don’t Walk — to Patch Critical RCE
Or just get it off the internet, stat ... Read More

Ironic: LetMeSpy Spyware Hackers Were Hacked (by Hackers)
Content warning: Abuse, stalking, controlling behavior, Schadenfreude, irony, doxxing ... Read More

GDPR FAIL: US Firm ‘Profiles Half the World’ — it’s Max Schrems Again
NYOB accuses TeleSign, Proximus and BICS of misusing phone users’ private data. Reputation scoring = privacy violation? ... Read More

Reddit Ransomware Raid Redux: BlackCat/ALPHV Demands $4.5M
And now, this: John-Oliver-pics protest won’t change Reddit policy, but will ransom demand work? ... Read More

PharMerica Breach: The Lure of Health Care Data
Two months after noticing suspicious activity in its systems, PharMerica disclosed that nearly six million patients had their health care data stolen by threat actors. The large pharmacy services company, which has more than 2,500 locations in the U.S., filed a data breach notification in May 2023. PharMerica noted that ... Read More

CISA Warning: MOVEit Has Yet Another Zero-Day SQL Injection RCE Bug [updated]
Once is happenstance. Twice is coincidence. Three times is sheer incompetence ... Read More