Tag: security

Portable Lifeprint printer app on iOS and Android leaked millions of user photos and sensitive data – this is what we know

Lifeprint app leak exposed 2 million private photos and user information Misconfigured storage also revealed firmware keys creating risk of malicious printer hijacks Users face threats of blackmail, identity theft and harassment from exposed data A major privacy incident has exposed millions of private photos from Lifeprint, a portable photo…

Read More

Red Hat confirms major data breach after hackers claim mega haul

Crimson Collective breached Red Hat’s GitHub, stealing 570GB from 28,000 internal projects Hackers claim to have stolen 800 Customer Engagement Records with sensitive infrastructure data Red Hat confirmed breach but denied evidence of stolen CERs or impact on other services Red Hat confirmed suffering a data breach, but did not…

Read More

“Everybody’s under pressure to do more with less” – Why Okta says you need an AI agent governance strategy, and sooner rather than later

AI agents are all the rage – in fact, a recent study confirmed 96% of European businesses reported using or planning to use AI agents by 2026. AI agents inherently need a whole host of permissions to be able to act on a user’s behalf; everything from your calendar to…

Read More

Around 50,000 Cisco firewalls are vulnerable to attack, so patch now

50,000 Cisco firewalls vulnerable to actively exploited RCE flaws CVE-2025-20333 and 20362 Cisco and CISA urge immediate patching; no workarounds available for affected ASA/FTD devices Shadowserver found 48.8K unpatched IPs; top affected countries include USA, UK, and Germany Around 50,000 internet-connected Cisco firewalls are vulnerable to two actively exploited flaws,…

Read More

Broadcom finally patches dangerous VMware zero-day exploited by Chinese hackers

Broadcom patches CVE-2025-41244, a high-severity VMware privilege escalation zero-day Chinese actor UNC5174 exploited the bug using malicious binaries in paths like /tmp/httpd UNC5174 previously targeted French government and commercial sectors using Ivanti CSA vulnerabilities Broadcom has patched a high-severity vulnerability affecting its VMware Aria Operations and VMware Tools that was…

Read More

Germany’s government wants to replace passwords with passkeys

The German government wants to make passkeys its main authentication method Claims passkeys are more secure, easy to use and resistant to phishing attempts Passkey familiarity is still pretty low, Germany admitted (in 2024) The German government has set out plans to replace passwords with passkeys as the main authentication…

Read More