#any


Critical Keycloak Password Reset Flaw Could Let Unauthenticated Attackers Take Over Any Account

Aug 24, 2026 // 15:03

Red Hat and the Keycloak project have released patches to address a critical security flaw in the open-source identity and access management server that could […]

Azure Cosmos DB Flaw Exposed Platform-Wide Key That Could Access Any Database

Jul 30, 2026 // 16:41

A now-patched vulnerability in Azure Cosmos DB could have let an attacker escape the service’s Gremlin query sandbox and obtain full read and write access […]

Microsoft 365 Android Apps Let Any App Steal Account Tokens via Leftover Debug Flag

Jun 3, 2026 // 18:04

A development flag left switched on in production builds of several Microsoft 365 Android apps disabled the check that limits account-token sharing to trusted Microsoft […]

A cyberattack targeting Stryker, a medical technology company, caused widespread device failures affecting tens of thousands of units. The incident did not involve any malicious software.

Mar 17, 2026 // 21:14

The recent cyberattack on Stryker, a large medical device company, affected only its internal Microsoft systems and remotely erased data from tens of thousands of […]