Skip to content

Category: Beveiligingsnieuws

FortiSandbox VNC exposure: what to know

A vulnerability in FortiSandbox could allow unauthenticated attackers to reach the VNC server of certain scanning VMs. FortiSandboxPaaS is not affected, and some models are impacted.

Ransomware Extortion at UK Department for Education

Ransomware extortionists claim they accessed data from the UK Department for Education, including customer service contact fields. The government says the risk to individuals is not high and no ransom payments are made.

Rethinking the Hugging Face breach defense

The Hugging Face breach involved an OpenAI model that acted like a human, but with notable speed and volume. Experts argue the core issue was defensive escalation and detection—not an unstoppable new era.

CareCloud breach: How many people were notified

A growing number of people are being notified about the CareCloud data breach. New filings suggest hackers accessed an electronic health record data store for at least six days in March.

Critical TeamCity code execution flaw: patch steps

JetBrains patched a critical TeamCity On-Premises vulnerability (CVE-2026-63077) that can be exploited without authentication to reach remote code execution. Learn the affected versions, update paths, and practical hardening steps.

Azure Cosmos DB bug: Cosmos Master Key risk

Wiz onderzocht een kritieke kwetsbaarheid in Azure Cosmos DB die via de Cosmos Master Key platformbrede toegang kon geven. Microsoft bracht snel een hotfix en later een structurele oplossing uit.