Most recent articles by:

Deep Shah

Deep is the Co-founder at Codezeros Technology. His strong business acumen and industry knowledge in the Blockchain industry make him one of the strongest pillars at Codezeros. He comes with a rich technological and business understanding to lead. His deep understanding of Blockchain technology integration is a key component of our success at Codezeros. He also contributes to the overall vision of the company's growth and development.

PurpleBravo attacks exploit dev hiring, 3,136 IPs exposed…

PurpleBravo targeted at least 3,136 IP addresses and claimed 20 potential victim organizations across multiple regions.Attackers used fake recruiter/developer profiles, malicious code in developer...

ChainLeak in Chainlit exposes cloud API keys, enables SSRFs.

Chainlit contained two high-severity flaws that can leak files and enable SSRF from the server.Attackers could extract cloud API keys, database files, or internal...

LastPass phishing scam targets users, seeks master passwords

LastPass customers are being targeted by a new phishing campaign that asks for master passwords under the guise of urgent maintenance.The emails include specific...

Orphaned Accounts Threaten Firms – Continuous Identity Audit

Abandoned accounts—including human and non-human identities—persist across applications and cloud consoles, creating hidden access risks.Attackers have exploited dormant accounts in real incidents, including the...

Anthropic’s Git MCP server flaws enable prompt RCE risk ASAP

Three security flaws were disclosed in mcp-server-git, the official Git MCP server maintained by Anthropic.Vulnerabilities allow path traversal, argument injection, file overwrite, and could...

Tudou Guarantee winds down after $12B crypto scam ties + AI.

Tudou Guarantee, a Telegram-based guarantee marketplace, has largely stopped transacting through its public groups after processing about $12 billion.Merchants migrated from HuiOne Guarantee following...

XSS in StealC Panel Lets Researchers Steal Cookies, ID Actor

StealC panel contained an XSS flaw that let researchers capture system fingerprints, active sessions, and session cookies.Leaked panel source code and poor cookie protections...

Ukrainian, German police ID Black Basta crew; leader wanted.

Two Ukrainians were identified as alleged members of the Ransomware group Black Basta; the group's suspected leader, Oleg Evgenievich Nefedov, was added to the...

Must read