What happened Threat actors are actively exploiting an unauthenticated information disclosure vulnerability in the Gravity SMTP WordPress plugin, which is installed on more than 100,000 WordPress ...
ServiceNow confirmed attackers exploited an unauthenticated API flaw to access customer data before a June 5 patch, the third ...
Wordfence has blocked 17M+ exploit attempts targeting a Gravity SMTP bug that leaks API keys, OAuth tokens, and full system reports without authentication.
API vulnerability scanning and API penetration testing are both important methods for ensuring the security of an API, but they have distinct differences in terms of their scope, methodology and ...
A researcher claims an AI-assisted pipeline helped earn $500,000 in Google bug bounty payouts, raising API security and ...
A computer being used in a workplace. — © Tim Sandle, A computer being used in a workplace. — © Tim Sandle, Major finance company Experian experienced a data ...
On Thursday, Checkmarx security researcher Paulo Silva revealed the discovery of multiple security failings in the Coursera online learning platform, which caters to millions of learners, both at home ...
While Twitter already claimed it had fixed its API vulnerability, BleepingComputer reports that hackers could exploit 5.4 million users’ data through the same vulnerability. The stolen data is shared ...
Major finance company Experian experienced a data leak due to an API vulnerability that exposed the credit scores of tens of millions of people living in the U.S. Bill Demirkapi, who is an independent ...