Twilio’s Authy App Breach Exposes Millions of Phone Numbers

July 3, 2024 at 11:51PM Twilio, a cloud communications provider, disclosed a mobile security breach in the Authy 2FA app. Threat actors exploited an unauthenticated endpoint to access user data, prompting the company to secure the endpoint. Although no direct system breach was proven, Twilio urged users to upgrade their apps due to possible phishing … Read more

AndroxGh0st Malware Targets Laravel Apps to Steal Cloud Credentials

March 21, 2024 at 09:48AM Cybersecurity researchers have uncovered AndroxGh0st, a tool used to target and steal sensitive data from Laravel applications. The tool exploits various vulnerabilities, such as CVE-2017-9841, to access and control targeted systems. As cloud environments are increasingly targeted, it’s crucial to keep software updated and monitor for suspicious activity. Krebs on … Read more