Tag

#data exposure

10 stories taggeddata exposure.

A corporate office environment with desks and computers, with security incident notifications visible on multiple screens and incident response team members gat
AI Security

When Meta's Own AI Agent Leaked Internal Data: The 'Shady AI' Governance Gap

A Sev 1 incident inside Meta shows how sanctioned AI tools, not just rogue ones, are quietly becoming an insider risk problem.

4 min read
A laptop screen showing a meeting recording application with live video feeds of government and corporate calls visible in an unsecured database viewer, unprote
Vulnerabilities

AI Meeting Bot Tl;dv Left Government and Corporate Calls Wide Open

A security researcher found a misconfigured database in the popular meeting-recording app tl;dv that let anyone see live government and corporate video calls, and, in most cases, join them uninvited.

4 min read
Smartphone displaying the Click to Pray app interface with user profile data exposed in the background, database visualization showing 700,000 records accessibl
Vulnerabilities

Vatican Prayer App Left 700,000 Users' Names and Emails Exposed for Anyone to Grab

A basic security blunder on the Catholic Church's official Click to Pray app meant that anyone with a browser could pull the personal details of every registered user, no hacking skills required.

4 min read
An office worker's computer screen showing multiple cloud application windows open simultaneously with sensitive customer data visible in each, filing cabinets
Cloud Security

Your Company Uses Hundreds of Cloud Apps. Security Teams Can See Inside Almost None of Them.

Three real breaches show how misconfigured software-as-a-service tools leak customer records, private messages, and source code, all without anyone breaking down a single door.

4 min read
Illustration: a dimly lit server rack in a data centre, one server unit glowing with an unusually bright open port indicator
Threat Intelligence

Cybercrime Crew Leaves Its Own Server Wide Open, Exposing 1.4 Million Website Target List

A misconfigured server ran unprotected for three weeks, handing researchers a rare look inside a mass WordPress hacking operation now tracked as WP-SHELLSTORM.

3 min read
A close-up, sharply focused photograph of a glowing laptop screen in a darkened office, showing lines of green and white code reflecting faintly on a glass desk
AI Security

A Hidden Note in a Bug Report Tricked GitHub's AI Into Leaking Company Secrets

Researchers showed how a single crafted message in a public GitHub issue could fool an AI assistant into reading private code and posting it online for anyone to see.

3 min read
Illustration: a darkened desk with a gaming laptop open
Vulnerabilities

Opera GX Bug Let Any Website Silently Install a Data-Stealing Add-On

One page visit was enough to rebuild a signed-in user's Gmail address. Opera has patched the flaw.

3 min read
Illustration: A modern open-plan corporate office at dusk, empty of people
AI Security

The Automation Nobody Reviewed: How AI-Built Workflows Are Quietly Leaking Enterprise Data

A developer asked an AI to speed up a document approval process. It worked perfectly and exposed sensitive HR files to hundreds of colleagues. This is happening across businesses right now.

3 min read
Illustration: an illuminated server rack inside a darkened data centre
Vulnerabilities

One Researcher, 14 Flaws, Millions of Indians at Risk

A young independent security researcher found gaping holes in Indian government portals, including an admin panel left wide open to the entire internet. The government fixed everything within three weeks.

3 min read
Illustration: A vast dark server room with rows of illuminated rack servers stretching into the distance
AI Security

Dify AI Platform Carried Multi-Tenant Flaws Exposing Private Chats and Internal APIs

Cross-tenant data leakage vulnerabilities in Dify's cloud service let attackers read other users' conversations, preview documents, and probe internal API endpoints.

3 min read
© 2026 Threat Vectr