A critical phpBB authentication bypass is putting countless online communities at risk right now. The flaw, tracked...
OAuth
A critical authentication vulnerability has been discovered in the popular auth library, a tool used by developers...
Microsoft Defender Security Research has uncovered a sophisticated, wide-scale phishing campaign that weaponizes the Device Code Authentication...
Security researchers exposed three critical vulnerabilities in Authlib, the widely used library for building OAuth and OpenID...
The developers of pgAdmin, the most widely used open-source administration and development platform for PostgreSQL, have patched...
The FreePBX project has issued an important security advisory addressing two vulnerabilities that pose significant risks to...
Renowned network services provider Cloudflare has also emerged as a victim in the recent Salesforce CRM attack,...
Resecurityβs HUNTER Team uncovered a severe misconfiguration: sensitive Azure Active Directory (Azure AD) application credentials exposed in...
The Google Threat Intelligence Group (GTIG) has issued an urgent advisory on a widespread data theft campaign...
Proofpoint has revealed a persistent wave of adversary-in-the-middle (AiTM) phishing campaigns that exploit Microsoft OAuth applications to...
A security vulnerability in Synologyβs Active Backup for Microsoft 365 (ABM) software has exposed countless organizationsβ cloud...
According to a new report by Proofpoint, attackers are now actively exploiting the TeamFiltration penetration testing framework...
Volexity has identified a series of advanced social engineering operations by suspected Russian threat actors targeting Microsoft...
A critical vulnerability in the OAuth authentication standard has been discovered, potentially exposing millions of websites and...