API Security Need to Know: Lessons Learned From the Peloton Security Incident

By now most have heard about the Peloton data breach incident and no doubt the security team at Peloton is working long, hard hours to pull themselves out of this horrible situation. The damage is done but there are lessons we can, and should, learn fr… Continue reading API Security Need to Know: Lessons Learned From the Peloton Security Incident

Tales from the Front Lines: How Third-Party APIs Simplify Enumeration Attacks

As a mechanism to offload PCI risks, many retailers are now using third-party credit card processing for their online transactions. The retailer’s benefit is they are no longer handling the credit card data, thereby reducing the cardholder footprint (a… Continue reading Tales from the Front Lines: How Third-Party APIs Simplify Enumeration Attacks

US Postal Service Left 60 Million Users Data Exposed For Over a Year

The United States Postal Service has patched a critical security vulnerability that exposed the data of more than 60 million customers to anyone who has an account at the USPS.com website.

The U.S.P.S. is an independent agency of the American federal … Continue reading US Postal Service Left 60 Million Users Data Exposed For Over a Year

Google+ is Shutting Down After a Vulnerability Exposed 500,000 Users’ Data

Google is going to shut down its social media network Google+ after the company suffered a massive data breach that exposed the private data of hundreds of thousands of Google Plus users to third-party developers.

According to the tech giant, a securi… Continue reading Google+ is Shutting Down After a Vulnerability Exposed 500,000 Users’ Data