DeepSeek Exposes Database with Over 1 Million Chat Records

https://www.wiz.io/blog/wiz-research-uncovers-exposed-deepseek-database-leak DeepSeek, a Chinese AI startup, has suffered a significant data breach, exposing sensitive user data and internal information. Two publicly accessible databases containing over a million log...
Developer Security Training – Beyond Annual Compliance

Developer Security Training – Beyond Annual Compliance

Let’s be honest – most security training is boring. Really boring. Annual compliance videos, outdated slideshows, generic best practices that don’t apply to your tech stack. No wonder developers tune out. But it doesn’t have to be this way. THE...

Cybersecurity Needs to Start Saying ‘No’ Again

https://www.darkreading.com/cyber-risk/security-needs-start-saying-no-again For years, cybersecurity teams were often perceived as the “Department of No,” constantly blocking initiatives due to security concerns. However, in an effort to demonstrate value...
Hundreds of Fake Reddit Sites Push Lumma Stealer Malware

Hundreds of Fake Reddit Sites Push Lumma Stealer Malware

https://www.bleepingcomputer.com/news/security/hundreds-of-fake-reddit-sites-push-lumma-stealer-malware Cybercriminals are leveraging hundreds of fake Reddit and WeTransfer websites to distribute the Lumma Stealer malware. These deceptive websites mimic the appearance...

Subaru Flaw Could Have Let Hackers Track and Control Vehicles

https://samcurry.net/hacking-subaru A critical security vulnerability in Subaru’s Starlink service could have allowed attackers to remotely control and track vehicles in the United States, Canada, and Japan. The flaw, discovered by security researchers Sam Curry...

MasterCard DNS Misconfiguration Exposed for Years

https://krebsonsecurity.com/2025/01/mastercard-dns-error-went-unnoticed-for-years A critical error in MasterCard’s domain name system (DNS) configuration went unnoticed for nearly five years. This misconfiguration could have allowed attackers to intercept or...