Topic: database security
-
149 Million Login Credentials Leaked in Database Breach
A massive, publicly accessible database containing nearly 149 million stolen login credentials—including 48 million for Gmail—was discovered and taken offline, highlighting the persistent threat of unsecured data troves. The database, found by a security researcher, was highly organized and conta...
Read More » -
Trellix Enhances Data Security for Generative AI
Rapid adoption of generative AI has created significant security vulnerabilities, outpacing traditional measures and increasing data breach costs, with 88% of businesses deploying AI last year. Trellix has introduced a unified data security framework and enhanced products, including AI risk dashb...
Read More » -
New LiteLLM Bug Exploited Hours After Disclosure
A critical LiteLLM security flaw was disclosed, enabling attackers to bypass authentication and access or modify sensitive data in the proxy’s database, including API keys and user data. The vulnerability was exploited within hours of its public release, highlighting active monitoring of disclosu...
Read More » -
Patch MongoDB Now: Critical Security Alert
A critical, high-severity vulnerability (CVE-2025-14847) in MongoDB allows unauthenticated attackers to remotely read uninitialized heap memory due to a flaw in the server's zlib compression implementation. The vulnerability impacts a wide range of MongoDB versions, from 3.6 through 8.2.2, and th...
Read More » -
Hundreds With Top Secret Clearance Exposed in House Democrats' Data Breach
A data breach exposed personal information of over 450 individuals with top secret US government security clearances, part of a larger database of 7,000 job applicants for House Democrats, discovered by a security researcher in an unsecured online database. The unprotected data, found on the Dome...
Read More » -
$4.5M Bounty: Zeroday Cloud Hacking Contest
The Zeroday Cloud hacking competition, backed by Google Cloud, AWS, and Microsoft, offers a $4.5 million prize pool for discovering critical vulnerabilities in open-source cloud and AI tools during the Black Hat Europe conference. Participants can compete in six categories, such as AI and Kuberne...
Read More » -
$4.5M Prize: New Cloud Hacking Challenge Opens
Wiz, AWS, Google Cloud, and Microsoft have launched the Zeroday.Cloud hacking competition with a $4.5 million prize pool to uncover critical vulnerabilities in cloud infrastructure, culminating in live exploits at Black Hat Europe. The contest features six technology categories with tiered reward...
Read More » -
Firezone: Open-Source Remote Access Made Secure
Firezone is an open-source platform offering secure remote access through a least-privilege model, distinguishing it from traditional VPNs by granting only necessary permissions. It utilizes the WireGuard protocol for speed and security, with features like short-lived keys and a simplified Policy...
Read More »