Security
Headlines
HeadlinesLatestCVEs

Source

PortSwigger

Social media scam: Twitter bots are tricking users into making PayPal and Venmo payments into fraudsters’ accounts

Social engineering scammers are using cloned social media accounts to carry out deceit

PortSwigger
Better future? Safari browser extension is preparing for Apple’s ‘post-privacy’ world

‘Apple’s plans to violate your privacy have left a sour taste in our mouths’, says developers

Google Chrome to incorporate new secure payment feature

New tech touted as faster and stronger than web-based authentication alternatives

OWASP toasts 20th anniversary with revised Top 10 for 2021

Non-profit confirms latest iteration of web attack hit list during 24-hour live event

Opera browser patches My Flow remote code execution vulnerability

A bug bounty hunter was able to pivot from XSS to full-blown RCE

Developers fix multitude of vulnerabilities in Apache HTTP Server

High-impact SSRF and request smuggling bugs among flaws addressed in bumper patch cycle

Meet TruffleHog – a browser extension for finding secret keys in JavaScript code

API keys are accidentally being leaked by websites. Here’s how to find them

Bitcoin.org hack nets giveaway scammers $17,000 overnight

Open source project back online after fraudsters dangled double-your-money lure