Tag
IFSC Code Finder Portal version 1.0 suffers from an ignored default credential vulnerability.
GYM Management System version 1.0 suffers from an ignored default credential vulnerability.
Emergency Ambulance Hiring Portal version 1.0 suffers from a remote SQL injection vulnerability that allows for authentication bypass.
ManageEngine DeviceExpert version 5.9.7 build 5970 allows for usernames and salted MD5 password hashes to be disclosed.
COVID19 Testing Management System version 1.0 suffers from an ignored default credential vulnerability.
BP Monitoring Management System version 1.0 version 1.0 suffers from a remote SQL injection vulnerability that allows for authentication bypass.
Auto/Taxi Stand Management System version 1.0 suffers from a remote SQL injection vulnerability that allows for authentication bypass.
The attack is ongoing...
The incident is a reminder why organizations need to pay attention to how they store and secure data in SaaS and cloud environments.
In this case study, a CISO helps a B2B marketing automation company straighten out its manual compliance process by automating it.