A #DHS Data Hub Exposed Sensitive Intel to Thousands of Unauthorized Users

A #misconfigured platform used by the Department of Homeland Security left national #security information—including some related to the #surveillance of Americans—accessible to thousands of people.
#nationalsecurity #privacy

https://www.wired.com/story/a-dhs-data-hub-exposed-sensitive-intel-to-thousands-of-unauthorized-users/

A DHS Data Hub Exposed Sensitive Intel to Thousands of Unauthorized Users

A misconfigured platform used by the Department of Homeland Security left national security information—including some related to the surveillance of Americans—accessible to thousands of people.

WIRED

A recent research has exposed more than 40 * 10³ IoT cameras happily showing their feed _and_ location to anyone who can browse and use search engines specialized in the indexing of the misconfigured devices.

More than 14 * 10³ are localised in the USA.

Read more here.

Note:
I know that there are more than a million of these cameras world wide misconfigured an open on just port 80 http not even TLS 443, with admin / admin as credentials 🪪

https://www.theregister.com/2025/06/10/40000_iot_cameras_exposed/

#Infosec #nightmare #not #news #IoT #cameras #security #misconfigured #streaming #TLS #HTTP

In a remote or hybrid workplace, misunderstandings multiply. Misconfigured settings, unclear policies, and tech errors can all create moments of frustration. A simple apology from IT or leadership when a rollout goes wrong can de-escalate anger and restore goodwill. Without it, resentment...

https://medium.com/@mrsno1special/when-apologies-improve-security-culture-ce4332ea5999

# #remote #hybrid #misunderstandings #misconfigured #unclear

When Apologies Improve Security Culture - MrsNo1Special - Medium

In most organizations, security conversations revolve around prevention and response. But what about repair? Apologies — genuine, timely, human apologies — can be a powerful tool for strengthening…

Medium
Misconfigured Docker Servers Under Attack by Xanthe Malware - The never-before-seen Xanthe cryptomining botnet has been targeting misconfigured Docker APIs. https://threatpost.com/misconfigured-docker-servers-xanthe-malware/161732/ #cloudsecurity #misconfigured #cryptomining #websecurity #ciscotalos #dockerapi #malware #botnet #docker #monero #xanthe #xmrig #ssh
Misconfigured Docker Servers Under Attack By Xanthe Malware

The never-before-seen Xanthe cryptomining botnet has been targeting misconfigured Docker APIs.

Threatpost - English - Global - threatpost.com