How NTLM is being abused in 2025 cyberattacksKaspersky Securelist·Nov 26, 15:53 UTC · Nov 26, 2025Exploit / PoC in the wild160
Strong Authentication - Robust Identity and Access Management Is a Strategic ChoiceSecurity Affairs·Jul 29, 12:29 UTC · Jul 29, 2022Data breach60
6 Mistakes Organizations Make When Deploying Advanced AuthenticationThe Hacker News·May 15, 00:00 UTC · May 15, 2024Data breach60
Stealing cookies: Researchers describe how to bypass modern authenticationCyberScoop·May 6, 10:00 UTC · May 6, 2024Data breach in the wild60
BIO-Key enhances its PortalGuard IDaaS cloud-delivered authentication solutionHelp Net Security·Feb 4, 00:00 UTC · Feb 4, 2021Ransomware60
Yubico's latest authentication keys get the jump on a 'passwordless' futureCyberScoop·Sep 24, 20:29 UTC · Sep 24, 2018Exploit / PoC in the wild60
RSA Authentication SDK affected by two critical vulnerabilities, patch it now!Security Affairs·Dec 4, 08:15 UTC · Dec 4, 2017VulnerabilityCVE-2017-14377CVE-2017-1437860
It's time to put multi-factor authentication in the NIST Cyber FrameworkCyberScoop·May 1, 13:08 UTC · May 1, 2017Data breach in the wild60
How AI and ML are transforming digital banking securityHelp Net Security·Jan 14, 00:00 UTC · Jan 14, 2025Data breach60
January 2026 CVE Landscape: 23 Critical Vulnerabilities Mark 5% Increase, APT28 Exploits Microsoft Office ZeroRecorded Future·Feb 24, 00:00 UTC · Feb 24, 2026Vulnerability in the wildCVE-2026-21509CVE-2026-23760CVE-2026-1281+1 CVEs160
Technical and Cost Concerns of Passwordless Authentication Bother Security LeadersInfosecurity Magazine·Oct 1, 16:30 UTC · Oct 1, 2020Data breach60
WebAuthn Passwordless Authentication Now Available for Atlassian ProductsThe Hacker News·Jun 15, 00:00 UTC · Jun 15, 2020Data breach60
Five-year-old Fortinet FortiOS SSL VPN flaw actively exploitedSecurity Affairs·Dec 25, 19:40 UTC · Dec 25, 2025Ransomware in the wildCVE-2020-12812CVE-2018-13379CVE-2019-559160
CyberArk Identity Bridge manages user access and authentication for Linux environmentsHelp Net Security·Jan 31, 00:00 UTC · Jan 31, 2025Ransomware60
Ivanti fixed a maximum severity flaw in its EPM softwareSecurity Affairs·Sep 11, 09:20 UTC · Sep 11, 2024VulnerabilityCVE-2024-29847CVE-2024-32840CVE-2024-32842+13 CVEs160
BlackByte blends tried-and-true tradecraft with newly disclosed vulnerabilities to support ongoing attacksCisco Talos·Aug 28, 10:00 UTC · Aug 28, 2024VulnerabilityCVE-2024-3708560
Sixgill launches Integrity 1.0 for blockchain-enforced data authenticityHelp Net Security·Nov 21, 00:00 UTC · Nov 21, 2019Data breach60
Multi-factor authentication provider Silverfort raises $11.5 million Series ACyberScoop·Jun 25, 19:32 UTC · Jun 25, 2018Data breach in the wild60
Auth0 authentication bypass issue exposed enterprises to hackSecurity Affairs·Apr 8, 15:47 UTC · Apr 8, 2018VulnerabilityCVE-2018-6873CVE-2018-687460
Twitter upgrades two-factor authentication options by allowing third party appsCyberScoop·Dec 20, 21:17 UTC · Dec 20, 2017Exploit / PoC in the wild60
Public PoC Released for Exploited Check Point SmartConsole Authentication BypassThe Hacker News·Jul 29, 08:59 UTC · Jul 29, 2026Exploit / PoC in the wildCVE-2026-16232160
Critical cPanel Authentication Vulnerability Identified — Update Your Server ImmediatelyThe Hacker News·May 4, 16:03 UTC · May 4, 2026Vulnerability in the wildCVE-2026-4194060
October 2025 CVE LandscapeRecorded Future·Dec 9, 00:00 UTC · Dec 9, 2025Ransomware in the wildCVE-2025-59287CVE-2025-61882CVE-2025-41244+29 CVEs60
August 2025 CVE LandscapeRecorded Future·Nov 21, 00:00 UTC · Nov 21, 2025Ransomware in the wildCVE-2025-8088CVE-2025-7775CVE-2025-57819+5 CVEs60
Removing the blind spots that allow lateral movementHelp Net Security·Jul 19, 00:00 UTC · Jul 19, 2022Threat actor60
Authentication Bypass Vulnerability Found in Auth0 Identity PlatformThe Hacker News·Apr 9, 18:01 UTC · Apr 9, 2018VulnerabilityCVE-2018-6873CVE-2018-687460
Despite NIST's warnings, SMS still being used for twoCyberScoop·Dec 12, 19:40 UTC · Dec 12, 2016Exploit / PoC in the wild60
Overlooked essentials: API security best practicesHelp Net Security·Sep 19, 11:38 UTC · Sep 19, 2024Data breach60
How to Effectively Prevent Email Spoofing Attacks in 2021?The Hacker News·Mar 29, 11:45 UTC · Mar 29, 2021Ransomware60
RSA SecurID Access innovations support organizations struggling to protect their workforcesHelp Net Security·Aug 12, 00:00 UTC · Aug 12, 2020Data breach60
Increased appetite for biometrics fueled by speed, security and convenienceHelp Net Security·Feb 20, 11:40 UTC · Feb 20, 2019Data breach60
Less than 10 percent of Google users turn on twoCyberScoop·Jan 18, 02:01 UTC · Jan 18, 2018Data breach in the wild60
Most Americans have never heard of multiCyberScoop·Nov 7, 14:00 UTC · Nov 7, 2017Data breach in the wild60
Entersekt offers FIDO authentication to improve security for financial institutionsHelp Net Security·Sep 19, 00:00 UTC · Sep 19, 2021Data breach60
PAN-OS GlobalProtect Authentication Bypass (CVE-2026The Hacker News·May 31, 12:13 UTC · May 31, 2026Vulnerability in the wildCVE-2026-0257CVE-2026-3561660
Actively Exploited nginx-ui Flaw (CVE-2026-33032) Enables Full Nginx Server TakeoverThe Hacker News·Apr 15, 00:00 UTC · Apr 15, 2026Vulnerability in the wildCVE-2026-33032CVE-2026-27944CVE-2026-27825+1 CVEs60
Hewlett Packard Enterprise fixes critical authentication bypass in Aruba AOSSecurity Affairs·Mar 11, 11:28 UTC · Mar 11, 2026VulnerabilityCVE-2026-23813CVE-2026-23814CVE-2026-23815+3 CVEs60