#account


Critical Keycloak Password Reset Flaw Could Let Unauthenticated Attackers Take Over Any Account

Aug 24, 2026 // 15:03

Red Hat and the Keycloak project have released patches to address a critical security flaw in the open-source identity and access management server that could […]

Hacker claims 3.6 million Azure account records stolen from major companies

Aug 17, 2026 // 23:57

A threat actor is selling employee databases allegedly stolen from the Microsoft Azure infrastructure of multiple Fortune 500 companies after gaining access using compromised credentials. […]

Hacker claims 3.6 million Azure account records stolen from major companies

Aug 17, 2026 // 23:57

A threat actor is selling employee databases allegedly stolen from the Microsoft Azure infrastructure of multiple Fortune 500 companies after gaining access using compromised credentials. […]

CTM360 Research Reveals How Insurance Phishing Has Evolved Into Real-Time Account Hijacking

Jul 25, 2026 // 13:38

For years, phishing campaigns targeting financial institutions followed the same playbook. Victims were tricked into entering usernames and passwords, attackers collected the credentials, and accounts […]

Zoom Patches Critical Windows Flaw That Could Enable Account Takeover

Jul 16, 2026 // 10:27

Zoom has released security updates for a critical security flaw impacting Zoom Workplace for Windows that could facilitate account takeover. The vulnerability, tracked as CVE-2026-53412 […]

Zoom warns of critical account takeover vulnerability

Jul 15, 2026 // 23:17

Zoom is warning of a critical vulnerability in its desktop client and software development kit for Windows that could be exploited by an unauthenticated party to […]

Webinar: Why account takeovers remain one of the hardest threats to stop

Jun 25, 2026 // 15:16

Organizations continue to invest in phishing defenses, identity protection, and multi-factor authentication, yet account takeover attacks remain one of the most disruptive security incidents facing […]

DoJ Seizes Huione Cloud Account Tied to Cyber Scam Money Laundering

Jun 24, 2026 // 13:42

The U.S. Department of Justice (DoJ) on Tuesday announced the seizure of a cloud computing account put to use by subsidiaries of Cambodia-based corporate conglomerate […]

Why Account Takeovers Are Rising and How to Stop Them

Jun 17, 2026 // 17:16

Organizations now manage thousands of human and non-human identities across cloud services, software-as-a-service applications, endpoints and remote environments.  As hybrid working, Bring-Your-Own-Device (BYOD) and third-party […]

144 Mastra npm Packages Compromised via Hijacked Contributor Account

Jun 17, 2026 // 15:01

As many as 144 npm packages associated with the Mastra namespace (“@mastra/*”), a popular open-source JavaScript and TypeScript framework for building artificial intelligence (AI) applications, […]