How businesses can integrate token technology into existing payment systemsHelp Net Security·Jun 13, 00:00 UTC · Jun 13, 2024Data breach57
Case Study: Are CSRF Tokens Sufficient in Preventing CSRF Attacks?The Hacker News·Apr 3, 10:49 UTC · Apr 3, 2025Data breach60
Microsoft accidentally exposed 38 terabytes of data from employee workstationsThe Record·Sep 18, 20:04 UTC · Sep 18, 2023Data breach57
Stealing cookies: Researchers describe how to bypass modern authenticationCyberScoop·May 6, 10:00 UTC · May 6, 2024Data breach in the wild60
KICKICO security breach - hackers stole over $7.7 million worth of KICK tokensSecurity Affairs·Jul 30, 08:43 UTC · Jul 30, 2018Data breach57
Palo Alto Networks disclosed a data breach linked to Salesloft Drift incidentSecurity Affairs·Sep 4, 10:41 UTC · Sep 4, 2025Data breach57
Secure transactions top retailers' wish lists this holiday seasonHelp Net Security·Dec 7, 00:00 UTC · Dec 7, 2021Data breach60
Beware the man in the cloud: How to protect against a new breed of cyberattackHelp Net Security·Jan 21, 00:00 UTC · Jan 21, 2019Data breach57
Attackers chained three bugs to breach into the Facebook platformSecurity Affairs·Oct 1, 12:59 UTC · Oct 1, 2018Data breach45
Google Warns Salesloft Drift Breach Impacts All Drift Integrations Beyond SalesforceThe Hacker News·Sep 3, 19:02 UTC · Sep 3, 2025Data breach45
Attacker Accessed Dozens of Repositories After OAuth Token TheftInfosecurity Magazine·Apr 19, 09:30 UTC · Apr 19, 2022Data breach145
Supply-chain attack hits Zscaler via Salesloft Drift, leaking customer infoSecurity Affairs·Sep 1, 17:37 UTC · Sep 1, 2025Data breach57
GitHub Says Hackers Breached Dozens of Organizations Using Stolen OAuth Access TokensThe Hacker News·May 28, 08:22 UTC · May 28, 2022Data breach45
Third-Party ChatGPT Plugins Could Lead to Account TakeoversThe Hacker News·Mar 18, 05:47 UTC · Mar 18, 2024Data breach45
UAT-10608: Inside a large-scale automated credential harvesting operation targeting web applicationsCisco Talos·Apr 2, 10:00 UTC · Apr 2, 2026Data breachCVE-2025-55182160
Internet Archive was breached twice in a monthSecurity Affairs·Oct 21, 13:36 UTC · Oct 21, 2024Data breach57
Non-Human Access is the Path of Least Resistance: A 2023 RecapThe Hacker News·Dec 15, 00:00 UTC · Dec 15, 2023Data breach57
API authentication failures demonstrate the need for zero trustHelp Net Security·Oct 5, 00:00 UTC · Oct 5, 2022Data breach57
Facebook Hacked — 10 Important Updates You Need To Know AboutThe Hacker News·Sep 29, 14:37 UTC · Sep 29, 2018Data breach60
Cloudflare, Zscaler among companies impacted by Salesloft Drift incidentThe Record·Sep 3, 12:56 UTC · Sep 3, 2025Data breach57
Risk related to non-human identities: Believe the hype, reject the FUDHelp Net Security·Sep 16, 08:08 UTC · Sep 16, 2024Data breach57
Why you should be rushing to deploy multi-factor authentication to support remote workHelp Net Security·May 5, 00:00 UTC · May 5, 2020Data breach57
Self-Replicating Worm Hits 180+ npm Packages to Steal Credentials in Latest Supply Chain AttackThe Hacker News·Sep 22, 15:17 UTC · Sep 22, 2025Data breach157
Hackers breached Salesloft ’s GitHub in March, and used stole tokens in a mass attackSecurity Affairs·Sep 8, 19:20 UTC · Sep 8, 2025Data breach145
Internet Archive Secures Zendesk Account, Works Toward RestorationInfosecurity Magazine·Oct 23, 12:15 UTC · Oct 23, 2024Data breach45
Stolen Access Tokens Lead to New Internet Archive BreachInfosecurity Magazine·Oct 21, 16:30 UTC · Oct 21, 2024Data breach60
TransArmor Personal Data Protection from Fiserv tokenizes and encrypts personal dataHelp Net Security·Apr 9, 00:00 UTC · Apr 9, 2020Data breach57
Facebook Finds 'No Evidence' Hackers Accessed Connected ThirdThe Hacker News·Oct 3, 07:27 UTC · Oct 3, 2018Data breach57
Self-replicating worm hits 180+ npm packages in (largely) automated supply chain attackHelp Net Security·Sep 16, 00:00 UTC · Sep 16, 2025Data breach57
Microsoft AI research division accidentally exposed 38TB of sensitive dataSecurity Affairs·Sep 18, 20:58 UTC · Sep 18, 2023Data breach45
Microsoft AI researchers exposed sensitive signing keys, internal messagesCyberScoop·Sep 18, 18:55 UTC · Sep 18, 2023Data breach in the wild60
Microsoft changes signing key system breached by Chinese hackers to steal US gov’t dataThe Record·Jul 14, 20:51 UTC · Jul 14, 2023Data breach45
Hardware-grade enterprise authentication without hardware: new SIM security solution for IAMThe Hacker News·Oct 25, 19:21 UTC · Oct 25, 2021Data breach57
Self-Propagating Supply Chain Worm Hijacks npm Packages to Steal Developer TokensThe Hacker News·Apr 24, 17:03 UTC · Apr 24, 2026Data breach157
GitHub Notifies Victims Whose Private Data Was Accessed Using OAuth TokensThe Hacker News·May 28, 08:20 UTC · May 28, 2022Data breach45
Attackers breached Docker Hub, grabbed keys and tokensHelp Net Security·Apr 29, 00:00 UTC · Apr 29, 2019Data breach160
Forg365 PhaaS Targets Microsoft 365 with Device Code and AitM Session TheftThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2026Data breach45
Mini Shai-Hulud returns, compromising hundreds of npm packagesCyberScoop·May 19, 21:21 UTC · May 19, 2026Data breach in the wild60
SAP-Related npm Packages Compromised in CredentialThe Hacker News·Apr 30, 16:39 UTC · Apr 30, 2026Data breach60