Tag
A Dutch suicide prevention hotline was found to share sensitive visitor metadata with Google and Microsoft without proper consent, leading to the suspension of tracking tools and potential GDPR violations.
A Red Access investigation reveals that thousands of AI-generated web apps on platforms like Lovable and Replit are exposing sensitive private data due to misconfigurations. This highlights significant security risks associated with the rising trend of 'vibe coding' and unvetted AI tool usage.
Vercel has confirmed an intrusion by the hacker group ShinyHunters, who are openly selling core source code, internal database access, and secrets for $2 million. All Vercel users should immediately review and rotate environment variables and related keys.