Folgen

  • PayPal Left PII Exposed for Half a Year
    Feb 23 2026

    Usually data breaches happen from an attacker breaking in, but sometimes an organization inadvertently leaks their own data, PayPal did just this with the most sensitive data about small business owners and it sat on the internet for 6 months.

    Sources: https://pastebin.com/hxqJeJey

    Mehr anzeigen Weniger anzeigen
    7 Min.
  • Outlook Add In Hijacked to Steal Accounts
    Feb 16 2026

    Outlook add ins can really improve the user experience of the application, allowing for extended capabilities. However if a developer abandons an add in project and leaves it without updates without properly removing it or discontinuing support it could lead to threat actors hijacking a trusted add in and using it to steal information.

    Sources: https://pastebin.com/7Kny6W8M

    Mehr anzeigen Weniger anzeigen
    7 Min.
  • Panera Data Breach from Failed Extortion
    Feb 9 2026

    The Shiny Hunters failed to extort Panera in a data theft attack and leaked the data found. Thankfully the damage seems rather minimal as the information is, for the most part, not all that sensitive.

    Sources: https://pastebin.com/EXKcrrDL

    Mehr anzeigen Weniger anzeigen
    5 Min.
  • When Vibe Coding Your Ransomware Goes Wrong
    Feb 2 2026

    They say never to pay a ransomware, but this one you should especially never pay because you will definitely not get anything back if you do. As it turns out vibe coding can lead to mistakes that end up with threat actors losing the keys to their own ransomware.

    Sources: https://pastebin.com/VuSZpJKQ

    Mehr anzeigen Weniger anzeigen
    6 Min.
  • AI Slop Kills cURL Bug Bounty Program
    Jan 26 2026

    Bug bounty programs are a good way to practice your hacking skills while contributing to the greater good, but unfortunately some people want the rewards without having the skills, which have resulted in cURL being overwhelmed by completely nonsensical AI slop bug reports.

    Sources: https://pastebin.com/ZBdpci1U

    Mehr anzeigen Weniger anzeigen
    7 Min.
  • WhisperPair Vulnerability Allows Eavesdropping on Your Calls
    Jan 19 2026

    Bluetooth is the standard these days for listening to audio but it presents some issues that wired doesn't, and I don't mean sound quality. Implementations of Bluetooth protocols can have vulnerabilities and when those hit it could mean you're being listened to.

    Sources: https://pastebin.com/Kq9TieQC

    Mehr anzeigen Weniger anzeigen
    5 Min.
  • Instgram Breach Exposes 17.5 Million Accoounts
    Jan 12 2026

    Instagram users saw a barrage of password reset attempts on their accounts and it seems to be related to a dataset that was just leaked to BreachForums of scraped user data.

    Sources: https://pastebin.com/AfMVFBDm

    Mehr anzeigen Weniger anzeigen
    7 Min.
  • $7 Million in Crypto Stolen from Trust Wallet Users
    Dec 29 2025

    The holiday season is a rather expensive time of year, not just with gift buying but with scams that take advantage of the season. One thing rather unexpected however, was a Christmas Eve update that drained the wallets of some TrustWallet users.

    Sources: https://pastebin.com/NHqAjqzM

    Mehr anzeigen Weniger anzeigen
    5 Min.