ex-aws-sns-signingcerturl-spoofing-cve-2026-47074
CVE-2026-47074: ex_aws_sns verify_message/1 fails to validate SigningCertURL, allowing unauthenticated SNS message signature spoofing; affects versions 2.0.1 to before 2.3.5.
CVE-2026-47074: ex_aws_sns verify_message/1 fails to validate SigningCertURL, allowing unauthenticated SNS message signature spoofing; affects versions 2.0.1 to before 2.3.5.
The Crime and Policing Act 2026 introduces corporate liability provisions with implications for governance and health and safety compliance.
Magic Link in WSO2 Identity Server can be driven to consume all memory and cause service unavailability; immediate checks, rate limiting and vendor contact advised.
New airspace restrictions at RAF Cosford Airshow require duty holders to update risk management and governance to stay compliant with UK health and safety law.
ShinyHunters claim a ransom after a reported breach of Canvas affecting roughly 275 million students and 9,000 institutions; immediate supplier engagement, forced credential resets and ISO-aligned steps advised.
ShinyHunters claimed responsibility for a Canvas incident affecting almost 9,000 schools, with outages and personally identifying information reported; urgent supplier checks, log preservation and backup testing are immediate priorities.
Critical CVE-2026-8076: CashDro 3 web admin panel allows numeric PINs and lacks account lockout, enabling brute-force admin access to POS cash systems.
Donec ullamcorper nulla non metus auctor fringilla. Cras justo odio, dapibus ac facilisis in, egestas eget
Sign up to receive updates, promotions, and sneak peaks of upcoming products. Plus 20% off your next order.
Sign up to receive updates, promotions, and sneak peaks of upcoming products. Plus 20% off your next order.
Sign up to receive updates, promotions, and sneak peaks of upcoming products. Plus 20% off your next order.