Profile avatar
dinosn.bsky.social
Head of Threat & Vulnerability Mgmt @ Henkel AG & Co. KGaA https://t.co/NC1orlKrW3 Also at : @dinosn
2,930 posts 685 followers 1 following
Prolific Poster

BeyondTrust warns of pre-auth RCE in Remote Support software www.bleepingcomputer.com/news/securit...

Asana warns MCP AI feature exposed customer data to other orgs www.bleepingcomputer.com/news/securit...

Is b For Backdoor? Pre-Auth RCE Chain In Sitecore Experience Platform labs.watchtowr.com/is-b-for-bac...

Google’s $32 Billion Wiz Deal Draws DOJ Antitrust Scrutiny: Report www.securityweek.com/googles-32-b...

Washington Post's email system hacked, journalists' accounts compromised www.bleepingcomputer.com/news/securit...

High-Severity Vulnerabilities Patched in Tenable Nessus Agent www.securityweek.com/high-severit...

CISA Releases Ten Industrial Control Systems Advisories www.cisa.gov/news-events/...

GitLab patches high severity account takeover, missing auth issues www.bleepingcomputer.com/news/securit...

'Major compromise' at NHS temping arm exposed gaping security holes go.theregister.com/feed/www.the...

Ivanti Workspace Control hardcoded key flaws expose SQL credentials www.bleepingcomputer.com/news/securit...

OpenAI working to fix ChatGPT outage affecting users worldwide www.bleepingcomputer.com/news/technol...

Update: Dumping Entra Connect Sync Credentials posts.specterops.io/update-dumpi...

Supply chain attack hits Gluestack NPM packages with 960K weekly downloads www.bleepingcomputer.com/news/securit...

HMRC: Crooks broke into 100k accounts, stole £43M from British taxpayer in late 2024 go.theregister.com/feed/www.the...

US offers $10M for tips on state hackers tied to RedLine malware www.bleepingcomputer.com/news/securit...

Vodafone Germany Fined $51 Million Over Privacy, Security Failures www.securityweek.com/vodafone-ger...

Exclusive: Hackers Leak 86 Million AT&T Records with Decrypted SSNs hackread.com/hackers-leak...

Sleeper Sound: LayerX Uncovers Malicious “Sleeper” Sound Management Extensions with Nearly 1.5 Million Users Worldwide layerxsecurity.com/blog/sleeper...

Vulnerability leaks Vanta customer info www.scworld.com/brief/vulner...

Police takes down AVCheck site used by cybercriminals to scan malware www.bleepingcomputer.com/news/securit...

Threat Actor Claims TikTok Breach, Puts 428 Million Records Up for Sale hackread.com/threat-actor...

Adidas confirms criminals stole data from customer service provider go.theregister.com/feed/www.the...

Alleged AT&T breach compromises 31M records www.scworld.com/brief/allege...

M&S warns of £300M dent in profits from cyberattack go.theregister.com/feed/www.the...

SK Telecom says malware breach lasted 3 years, impacted 27 million numbers www.bleepingcomputer.com/news/securit...

Coinbase Extorted, Offers $20M for Info on Its Hackers www.darkreading.com/cyberattacks...

The Epoch Times purportedly hacked, 32M records exposed www.scworld.com/brief/the-ep...

Broadcom employee data stolen by ransomware crooks following hit on payroll provider go.theregister.com/feed/www.the...

Data broker protection rule quietly withdrawn by CFPB www.malwarebytes.com/blog/news/20...

The Good, the Bad and the Ugly in Cybersecurity – Week 20 www.sentinelone.com/blog/the-goo...

CISA tags recently patched Chrome bug as actively exploited www.bleepingcomputer.com/news/securit...

Scammers are deepfaking voices of senior US government officials, warns FBI go.theregister.com/feed/www.the...

Commit Stomping blog.zsec.uk/commit-stomp...

Expression Payloads Meet Mayhem - Ivanti EPMM Unauth RCE Chain (CVE-2025-4427 and CVE-2025-4428) labs.watchtowr.com/expression-p...

Coinbase extorted for $20M. Support staff bribed. Customers scammed. One hell of a breach disclosure… go.theregister.com/feed/www.the...

CISA Releases Twenty-Two Industrial Control Systems Advisories www.cisa.gov/news-events/...

Coinbase Agents Bribed, Data of ~1% Users Leaked; $20M Extortion Attempt Fails thehackernews.com/2025/05/coin...

Russia-Linked APT28 Exploited MDaemon Zero-Day to Hack Government Webmail Servers thehackernews.com/2025/05/russ...

Kosovo authorities extradited admin of the cybercrime marketplace BlackDB.cc securityaffairs.com/177870/cyber...

New Chrome Vulnerability Enables Cross-Origin Data Leak via Loader Referrer Policy thehackernews.com/2025/05/new-...

Microsoft Restructures: 6,000 Jobs Cut Amid AI Focus securityonline.info/microsoft-re...

The cryptography behind passkeys blog.trailofbits.com/2025/05/14/t...

Steel giant Nucor Corporation facing disruptions after cyberattack www.bleepingcomputer.com/news/securit...

North Korean Hackers Stole $88M by Posing as US Tech Workers hackread.com/north-korean...

Analyzing the Attack Surface of Ivanti's DSM code-white.com/blog/ivanti-...

Microsoft to Lay Off About 3% of Its Workforce www.securityweek.com/microsoft-to...

Siemens RUGGEDCOM Flaws Scored CVSS 9.9: Command Injection Bugs Threaten Industrial Networks securityonline.info/siemens-rugg...

Ivanti warns of critical Neurons for ITSM auth bypass flaw www.bleepingcomputer.com/news/securit...

PoC Released: CVE-2025-31258 Sandbox Escape in macOS via RemoteViewServices securityonline.info/poc-released...

CISA mutes own website, shifts routine cyber alerts to Musk’s X, RSS, email go.theregister.com/feed/www.the...