Curated news, CVE analysis, and threat reports from the world's top cybersecurity sources.
This article reports on the takedown of the Kratos phishing-as-a-service platform by German and US authorities. The operation, called Operation Olympus Blade, seized over 200 servers and led to the arrest of the platform's developer in Indonesia.
The article reports the takedown of the Kratos phishing-as-a-service platform by German and U.S. law enforcement. Over 200 servers were seized, and the suspected developer was arrested in Indonesia, disrupting a network that facilitated widespread credential theft.
The Good | Authorities Dismantle Kratos Phishing Network & Arrest Its Developer Kratos, a prominent phishing-as-a-service (PhaaS) platform, was dismantled from the inside out this week thanks to <a...
A Vatican prayer application exposed the personal data of over 700,000 users through a poorly secured API that leaked names, email addresses, country of origin, and application status information globally. The porous API did not require proper authentication or authorization checks, allowing anyone who discovered the endpoint to access the complete user database.
A Vatican prayer application exposed the personal data of over 700,000 users through a poorly secured API that leaked names, email addresses, country of origin, and application status information globally. The porous API did not require proper authentication or authorization checks, allowing anyone who discovered the endpoint to access the complete user database.
This article details a data leak from the Vatican's official prayer app, which exposed over 700,000 users' personally identifiable information. A poorly secured API endpoint allowed anyone with a browser to access names, email addresses, and countries of users.