The credentials provided access to accounts on Amazon Web Services, Slack, Dropbox, Twitter, and other services
A command injection vulnerability gives attackers full control over the cameras
Over 600 Elasticsearch instances had their data wiped and replaced with a ransom message
A bug in the CA's domain validation system could have allowed attackers to obtain certificates without authorization
The new ransomware program features strong offline decryption and a new payment scheme
Patches for Edge, Office, and Windows fix three vulnerabilities
The latest variant had default credentials for a Huawei desktop virtualization solution
Truffle Hog can find access tokens and keys that are 20 characters or longer inside source code repositories
The malware is now encrypting files on both Windows and Linux systems and asks for $216,000 to restore them
The Plone security team believe reports of FBI.gov being hacked through a zero-day Plone exploit are false