Exposed APP_KEYs threaten widespread Laravel app compromise More than 600 apps in the open-source PHP web framework Laravel could be subjected to remote code execution attacks using APP_KEYs for data encryption that have been exposed on GitHub, according to The Hacker News.
Cybernews reports that popular Chicago-based classical music radio station WFMT had its systems claimed to have been compromised by the Play ransomware operation, which has already leaked a portion of the pilfered data.
Global job search and resume-building platform LiveCareer had more than 5.1 million files belonging to job seekers inadvertently leaked as a result of an unsecured Microsoft Azure storage container, Cybernews reports.
BleepingComputer reports that major Australian airline Qantas had information from 5.7 million customers stolen following an attack against its call center's third-party customer service platform on June 30.
An in-depth report by threat intelligence researchers reveals that most combolists and URL-login-password files sold or circulated on dark web markets are outdated, misleadingly marketed, and often repackaged from older breaches, reports GBHackers News.
Handala hacktivists claim attack against independent Iranian news outlet Cybernews reports that independent Iranian news provider Iran International had all of its systems and communications purportedly breached by the pro-Iranian hacktivist operation Handala Hack, which also claimed to exfiltrate the firm's entire internal data dump.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.