Shopify pays $15,250 bug bounty for a Christmas Eve vulnerabilityCyberScoop·Feb 8, 19:41 UTC · Feb 8, 2018Vulnerability in the wild60
A flaw in Shopify API flaw exposed revenue and traffic data of storesSecurity Affairs·Apr 22, 08:57 UTC · Apr 22, 2019Vulnerability42
Rogue employees at Shopify accessed customer info without authorizationSecurity Affairs·Sep 23, 17:25 UTC · Sep 23, 2020Vulnerability30
DOM-XSS Bug Affecting Tinder, Shopify, Yelp, and MoreSecurity Affairs·Oct 12, 08:45 UTC · Oct 12, 2018Vulnerability55
Magento, WooCommerce, WordPress, and Shopify Exploited in Web Skimmer AttackThe Hacker News·Jun 7, 03:59 UTC · Jun 7, 2023Vulnerability30
Branch.io Flaws may have affected as many as 685 million individualsSecurity Affairs·Oct 15, 07:39 UTC · Oct 15, 2018Vulnerability30
Open-source maintainers still work underfunded as sponsorship crosses $100 millionHelp Net Security·Jul 21, 00:00 UTC · Jul 21, 2026Vulnerability55
Dependency Confusion Supply-Chain Attack Hit Over 35 HighThe Hacker News·Feb 10, 12:57 UTC · Feb 10, 2021Vulnerability42
GorgonAgora: 4,800+ fake storefronts skim cards across hundreds of impersonated brandsSansec (Magento / e-commerce security)·Jun 3, 19:37 UTC · Jun 3, 2026Vulnerability55
Researchers Uncover Chrome Extensions Abusing Affiliate Links and Stealing ChatGPT AccessThe Hacker News·Jan 31, 07:21 UTC · Jan 31, 2026VulnerabilityCVE-2020-2870735
Microsoft, Google widen passkey support for its usersHelp Net Security·May 3, 00:00 UTC · May 3, 2024Vulnerability30
GitHub Secure Open Source Fund: Project maintainers, apply now!Help Net Security·Nov 20, 00:00 UTC · Nov 20, 2024Vulnerability130
Authorities seize SlilPP, a marketplace for stolen login credentialsThe Record·Dec 9, 00:00 UTC · Dec 9, 2022Vulnerability30
HackerOne updates Internet Bug Bounty program to improve the security of open source softwareHelp Net Security·Sep 23, 00:00 UTC · Sep 23, 2021Vulnerability55
Dependency Confusion: Another Supply-Chain VulnerabilitySchneier on Security·Mar 15, 13:39 UTC · Mar 15, 2021Vulnerability42
Drupal-based sites open to attack via double extension files (CVE-2020-13671)Help Net Security·Nov 25, 07:22 UTC · Nov 25, 2020Vulnerability in the wildCVE-2020-1367160
Cybersecurity Leaders Oppose VoatzInfosecurity Magazine·Sep 14, 17:49 UTC · Sep 14, 2020Vulnerability30
Magecart Group 8 skimmed card info from 570+ online shopsHelp Net Security·Jul 8, 00:00 UTC · Jul 8, 2020Vulnerability42
HackerOne raises $36.4M to expand global market reachHelp Net Security·Sep 10, 00:00 UTC · Sep 10, 2019Vulnerability55
Hackers earn nearly $2 million in bounties during HackerOne's live hacking eventHelp Net Security·Sep 4, 00:00 UTC · Sep 4, 2019Vulnerability55
A total of six Hackers already become millionaires on HackerOneSecurity Affairs·Aug 29, 15:29 UTC · Aug 29, 2019Vulnerability55
Group-IB report: JS-sniffers infected 2440 websites around the worldSecurity Affairs·Apr 3, 13:51 UTC · Apr 3, 2019Vulnerability42
2 HackerOne members received each over $1M via Bug Bounty ProgramsSecurity Affairs·Mar 2, 14:59 UTC · Mar 2, 2019Vulnerability30
The fix for the DOM-based XSS in Branch.io introduced a new XSS flawSecurity Affairs·Oct 23, 06:49 UTC · Oct 23, 2018Vulnerability30
StackRox upgrades its Container Security PlatformHelp Net Security·Jul 13, 00:00 UTC · Jul 13, 2018Vulnerability30