1.
3.
4.
5.
6.
Hackers target Microsoft Entra accounts in device code vishing attacks
(bleepingcomputer.com)
7.
How one guy accidentally hacked all a company’s robot vacuums
(androidauthority.com)
8.
Passwords to passkeys: Staying ISO 27001 compliant in a passwordless era
(bleepingcomputer.com)
9.
Ivanti EPMM Zero-Day Bugs Spark Exploit Frenzy — Again
(darkreading.com)
10.
Upcoming changes to Let's Encrypt and how they affect XMPP server operators
(news.ycombinator.com)
11.
CISA warns of SmarterMail RCE flaw used in ransomware attacks
(bleepingcomputer.com)
12.
Microsoft to disable NTLM by default in future Windows releases
(bleepingcomputer.com)
13.
14.
Agent-shell: A native Emacs buffer to interact with LLM agents powered by ACP
(news.ycombinator.com)
15.
Google rolls out Android theft protection feature updates
(bleepingcomputer.com)
16.
How Can CISOs Respond to Ransomware Getting More Violent?
(darkreading.com)
17.
Fortinet Confirms New Zero-Day Behind Malicious SSO Logins
(darkreading.com)
18.
MCP shipped without authentication. Clawdbot shows why that's a problem.
(venturebeat.com)
19.
6 Okta security settings you might have overlooked
(bleepingcomputer.com)
20.
21.
GitLab warns of high-severity 2FA bypass, denial-of-service flaws
(bleepingcomputer.com)
22.
Microsoft Exchange Online outage blocks access to mailboxes via IMAP4
(bleepingcomputer.com)
23.
ownCloud urges users to enable MFA after credential theft reports
(bleepingcomputer.com)
24.
25.
Over 10K Fortinet firewalls exposed to actively exploited 2FA bypass
(bleepingcomputer.com)
26.
IBM warns of critical API Connect auth bypass vulnerability
(bleepingcomputer.com)
27.
Fortinet warns of 5-year-old FortiOS 2FA bypass still exploited in attacks
(bleepingcomputer.com)
28.
Identity Fraud Among Home-Care Workers Puts Patients at Risk
(darkreading.com)
29.
Identity Fraud Among Home Care Workers Puts Patients at Risk
(darkreading.com)
30.
Beyond RC4 for Windows Authentication
(news.ycombinator.com)
Today's top topics:
anthropic