Identity and Access n8n: leaked API tokens still opened 321 live instances
GitGuardian found thousands of n8n tokens in public commits. A total of 321 active instances accepted keys that exposed workflows and downstream credentials.
Daily news, analysis and practical guides explaining what happened, who is affected and what to do next. We also turn this knowledge into practical training for organisations.
Identity and Access GitGuardian found thousands of n8n tokens in public commits. A total of 321 active instances accepted keys that exposed workflows and downstream credentials.
Supply Chain Security An evil-twin campaign in Open VSX used lookalike names and extension code to harvest developer workstation data. Here is the mechanism and IDE supply-chain response.
AI Security CVE-2026-41679 and related Paperclip flaws showed that an agent bundle is an executable supply chain. We explain the import path, runtime boundary and controls.
Cloud, Infrastructure and DevSecOps A 22-year-old IPMI 2.0 weakness still exposes the server management plane. We explain RAKP, offline cracking and secure BMC isolation.
AI Security A Pillar Security researcher showed a public triage agent passing instructions to a privileged Gemini workflow. We explain the impact and secure pattern.
Threats and Incidents The hospital disclosed the scope of a May 2025 incident: identity, financial and medical data may have been present in acquired files. We explain response steps.
Penetration Testing and AppSec Microsoft's annual review lists 2,531 eligible reports and 562 rewarded researchers. We examine what the numbers mean for VDPs, AI and triage.
Cloud, Infrastructure and DevSecOps Forescout disclosed hardcoded keys, weak certificate validation and a device-adoption race in Omada zero-touch provisioning. Here is the risk and response plan.
Threats and Incidents A new loader-as-a-service combines fake CAPTCHAs, steganography, browser cache and in-memory execution. We break down the chain and defenses.
Human Security A campaign impersonates the popular Roblox scripting tool. We analyse the Java chain, theft scope and practical signals for users and SOC teams.
Vulnerabilities and CVEs N-able issued an urgent hotfix after attacks on N-central servers. We cover affected versions, MSP risk, Cloudflared traces and response priorities.
Identity and Access Unit 42 documented three attacks on Google Password Manager in Chrome for Windows. We explain the prerequisites, user-verification flag and defenses.
Threats and Incidents PNLD confirmed publication of names, organisations and work email addresses. We separate the official notice from ExfilSquad claims and explain response steps.
Vulnerabilities and CVEs An RNG integration defect reduced entropy in some COLDCARD seeds. We explain the affected firmware, technical mechanism and safe fund migration.
Threats and Incidents A macOS campaign starts with an ad and fake update, then resolves C2 through Ethereum. We analyse the chain, detection signals and defence.
Once a month, a concise summary of the vulnerabilities and threats that matter. No spam, unsubscribe anytime.