๐Ÿš€ Wow, someone finally misconfigured the Infinity Fabric! ๐Ÿ›  Apparently, breaking #AMD #SEV-SNP is as easy as tying your shoelaces together and hoping for the best. ๐Ÿฅด Next time, maybe try configuring the firmware with an actual manual instead of a fortune cookie. ๐Ÿคก
https://xca-attacks.github.io/fabricked/ #InfinityFabric #Misconfiguration #FirmwareFails #TechHumor #SecurityBreach #HackerNews #ngated
Fabricked

Misconfiguring Infinity Fabric to Break AMD SEV-SNP

XCA

NEW by me:

Many immigrants have enough anxiety these days without their lawyer leaking their files and having the files all wind up in the hands of criminals. Read about what happened with a NYC law firm in my new post.

No need to hack when itโ€™s leaking: Dalbir Singh & Associates law firm edition:

https://databreaches.net/2026/05/14/no-need-to-hack-when-its-leaking-dalbir-singh-associates-law-firm-edition/

#dataleak #immigration #incidentresponse #misconfiguration #KillSec #DSDLaw

@SchizoDuckie @joncampbell @campuscodi

A misconfigured server tied to the carding marketplace Jerryโ€™s Store exposed 345,000 stolen credit cards after an #AI coding error.

Read: https://hackread.com/misconfigured-server-hackers-leak-stolen-credit-cards/

#CyberSecurity #CyberCrime #DataLeak #Misconfiguration #JerrysStore

Misconfigured Server Run by Hackers Leaks 345,000 Stolen Credit Cards

A misconfigured server tied to the carding marketplace Jerryโ€™s Store exposed 345,000 stolen credit cards after an AI coding error caused a major security flaw.

Hackread - Cybersecurity News, Data Breaches, AI and More

Misconfiguration Exposes Azure AI Agent to Unauthorized Access

A single misconfiguration in Microsoft's Azure SRE Agent turned a troubleshooting tool into a live wiretap, potentially allowing outsiders to intercept sensitive conversations, commands, and credentials from other companies in real time. This alarming security flaw may have left organizations vulnerable to unauthorized access,โ€ฆ

https://osintsights.com/misconfiguration-exposes-azure-ai-agent-to-unauthorized-access?utm_source=mastodon&utm_medium=social

#CloudSecurity #Azure #Misconfiguration #UnauthorizedAccess #EmergingThreats

Misconfiguration Exposes Azure AI Agent to Unauthorized Access

Learn how a misconfigured Azure SRE Agent exposed conversations to unauthorized access and discover steps to protect your organization's cloud security now.

OSINTSights

McGraw Hill Data Leak Exposes 13.5M Records After Salesforce Misconfiguration

McGraw Hill, a leading publisher of educational materials, recently suffered a significant data leak, exposing a staggering 13.5 million records due to a misconfigured Salesforce-hosted page. This alarming breach highlights the importance of robust data security measures, even for companies with a traditional focus like textbookโ€ฆ

https://osintsights.com/mcgraw-hill-data-leak-exposes-135m-records-after-salesforce-misconfiguration?utm_source=mastodon&utm_medium=social

#DataLeak #McgrawHill #Salesforce #Misconfiguration #Education

McGraw Hill Data Leak Exposes 13.5M Records After Salesforce Misconfiguration

McGraw Hill data leak exposes 13.5M records due to Salesforce misconfiguration, learn how to protect your data now and prevent similar breaches effectively online today.

OSINTSights

โš™๏ธ Technical Spotlight: New Session at BSides Luxembourg 2026

โ˜๏ธ๐Ÿ’ฅ ๐—–๐—Ÿ๐—ข๐—จ๐—— ๐— ๐—œ๐—ฆ๐—–๐—ข๐—ก๐—™๐—œ๐—š๐—จ๐—ฅ๐—”๐—ง๐—œ๐—ข๐—ก๐—ฆ: ๐—ฃ๐—ข๐—ž๐—˜ ๐—ฃ๐—ข๐—ž๐—˜, ๐—•๐—ฅ๐—˜๐—”๐—–๐—› โ€“ Kat Fitzgerald ( @rnbwkat ) ๐Ÿ”โ˜๏ธ

Cloud breaches arenโ€™t going awayโ€”theyโ€™re evolving.

Forget the classic โ€œpublic bucketโ€ mistakes. In 2026, real-world breaches are driven by over-privileged identities, risky SaaS integrations, forgotten environments, and insecure defaults in AI and Kubernetes. These arenโ€™t obvious misstepsโ€”theyโ€™re systemic risks hiding in plain sight.

This talk breaks down the modern hierarchy of cloud misconfigurations based on recent breach data, then shifts the focus from reacting to preventing. Using Policy as Code (PaC), security becomes proactiveโ€”blocking risky deployments before they ever reach production.

Youโ€™ll also explore the Toxic Trilogy: assets that are publicly exposed, highly privileged, and critically vulnerable. When these overlap, breaches arenโ€™t just possibleโ€”theyโ€™re predictable.

Kat Fitzgerald ( @rnbwkat )is a Chicago-based cybersecurity professional with a passion for cloud security, OSS, and creative defensive strategies. Known for blending technical depth with a unique personality (and a certain opinionated flamingo), Kat brings real-world insights into modern cloud risks and how to stop them before they start.

๐Ÿ“ฑ Want to easily navigate all talks, villages, and stages?
Check out the official schedule on Hacker Tracker:
https://hackertracker.app/schedule?conf=BSIDESLUX2026

๐Ÿ“… Conference Dates: 6โ€“8 May 2026 | 09:00โ€“18:00
๐Ÿ“ 14, Porte de France, Esch-sur-Alzette, Luxembourg
๐ŸŽŸ๏ธ Tickets: https://2026.bsides.lu/tickets/
๐Ÿ“… Schedule Link: https://pretalx.com/bsidesluxembourg-2026/schedule/

#BSidesLuxembourg2026 #CloudSecurity #Misconfiguration #Kubernetes #PolicyAsCode #DevSecOps #CyberSecurity

Hello cyber pros! It's been a week of critical reminders about cloud security, diligent patching, and the evolving nature of warfare. Let's dive into the latest:

Salesforce Cloud Misconfigurations Under Attack โš ๏ธ
- Threat actors are actively exploiting "overly permissive" guest user configurations in Salesforce Experience Cloud to steal sensitive data.
- This isn't a Salesforce platform vulnerability, but rather a customer misconfiguration. Attackers are using modified Aura Inspector tools to scan and extract data from public-facing sites.
- Actionable advice: audit guest user profiles, set company-wide defaults to "private", disable public APIs, restrict visibility, disable self-registration if not needed, and regularly review event monitoring logs.

๐Ÿ‘๏ธ Dark Reading | https://www.darkreading.com/application-security/overly-permissive-salesforce-cloud-configs-crosshairs

Microsoft's March Patch Tuesday ๐Ÿ›ก๏ธ
- Microsoft released patches for 83 CVEs this month, with six identified as "more likely to exploit" and eight critical severity.
- A notable critical RCE (CVE-2027-21536, CVSS 9.8) in the Microsoft Devices Pricing Program was already patched and mitigated, uniquely identified by an AI agent.
- Two publicly known (zero-day) flaws, CVE-2026-26127 (.NET DoS) and CVE-2026-21262 (SQL Server EoP), are considered low threat despite public disclosure.
- Key EoP vulnerabilities include three in the Windows kernel (CVE-2026-24289, CVE-2026-26132, CVE-2026-24287) and others in SMB Server (CVE-2026-24294) and Microsoft Graphics Component (CVE-2026-23668), all with higher exploit likelihood.
- Two RCEs in Microsoft Office (CVE-2026-26113, CVE-2026-26110, CVSS 8.4) can be exploited via the Preview Pane without opening malicious files. Mitigate by disabling Preview Pane and restricting untrusted Office files.

๐Ÿ‘๏ธ Dark Reading | https://www.darkreading.com/application-security/microsoft-patches-83-cves-march-update

Cloud Resilience in Modern Warfare โ˜๏ธ
- Recent Middle East conflicts saw physical attacks, including drone strikes, on AWS facilities in the UAE and Bahrain, causing significant structural damage and service disruptions.
- This highlights a critical shift: hyper-scale cloud data centres are now "Tier 1 strategic targets" in modern warfare, as militaries and governments increasingly rely on cloud infrastructure.
- Traditional cloud resilience strategies, designed for natural disasters, are insufficient against kinetic attacks that can permanently destroy hardware or sever physical connectivity.
- Organisations must rethink disaster recovery and data governance, especially for real-time, low-latency workloads. The concept of "Allied Data Sovereignty" may emerge, advocating for data backups in allied nations to ensure survival during crises.

๐Ÿ‘๏ธ Dark Reading | https://www.darkreading.com/cyber-risk/middle-east-conflict-highlights-cloud-resilience-gaps

#CyberSecurity #ThreatIntelligence #CloudSecurity #Salesforce #Misconfiguration #PatchTuesday #Microsoft #Vulnerabilities #RCE #EoP #CyberWarfare #CloudResilience #InfoSec

'Overly Permissive' Salesforce Cloud Configs in the Crosshairs

Some customers have mishandled guest user configurations otherwise intended to allow third-party access to important โ€” and sensitive โ€” client data.

Dark Reading

Lukasz Olejnik (@lukOlejnik)

OpenClaw ์‚ฌ์šฉ์ž๊ฐ€ ๋ธŒ๋ผ์šฐ์ €๋ฅผ ์ธํ„ฐ๋„ท(0.0.0.0)์— ๋…ธ์ถœํ•ด ์„ค์ •์ด ๊ณต๊ฐœ๋œ ATM์ฒ˜๋Ÿผ ๋™์ž‘, ์‹ ์šฉ์นด๋“œ๊ฐ€ ์ง€์† ์ฒญ๊ตฌ๋ผ ํ•œ๋„ ๊ฑฐ์˜ ์ดˆ๊ณผ๋œ ์‚ฌ๊ณ  ๋ฐœ์ƒ. ๊ธฐ๋ณธ๊ฐ’ ๋˜๋Š” ์ž˜๋ชป๋œ ๊ตฌ์„ฑ์—์„œ OpenClaw ์„œ๋น„์Šค๊ฐ€ ๋ชจ๋“  ์ธํ„ฐํŽ˜์ด์Šค์—์„œ ๋ฆฌ์Šค๋‹ํ•ด ์™ธ๋ถ€ ์ ‘๊ทผ ๋ฐ ์š”๊ธˆ ํ”ผํ•ด์— ์ทจ์•ฝํ•˜๋‹ค๋Š” ๋ณด์•ˆ ๊ฒฝ๊ณ ์„ฑ ๋‚ด์šฉ์ž…๋‹ˆ๋‹ค.

https://x.com/lukOlejnik/status/2031673770448941252

#openclaw #security #devtools #misconfiguration

Lukasz Olejnik (@lukOlejnik) on X

Someone using @OpenClaw to write programs exposed the browser to the internet turning his setup to a public ATM. The credit card was continuously charged, nearly maxing out the limit. In default or improper configurations, OpenClaw's services listen on all interfaces (0.0.0.0),

X (formerly Twitter)
Cloudflare misconfiguration behind recent BGP route leak

Cloudflare has shared more details about a recent 25-minute Border Gateway Protocol (BGP) route leak affecting IPv6 traffic, which caused measurable congestion, packet loss, and approximately 12 Gbps of dropped traffic.

BleepingComputer

๐Ÿ“ฐ EY Leaks 4TB+ SQL Database Packed with Corporate Secrets via Cloud Misconfiguration

CRITICAL LEAK: Consulting giant EY exposed a 4TB+ unencrypted SQL database to the public internet. ๐Ÿ˜ณ The backup file, found by researchers, contained API keys, passwords & other corporate secrets. #DataBreach #CloudSecurity #Misconfiguration

๐Ÿ”— https://cyber.netsecops.io/articles/consulting-giant-ey-exposes-4tb-sql-database-to-internet/?utm_source=mastodon&utm_medium=social&utm_campaign=twitter_auto

EY Leaks 4TB+ SQL Database Packed with Corporate Secrets via Cloud Misconfiguration

Consulting firm EY exposed a 4TB+ unencrypted SQL Server backup file containing API keys, passwords, and other sensitive data on the public internet due to a cloud misconfiguration.

CyberNetSec.io