Security Updates Exposed: Multiple Vulnerabilities Across Platforms
A recent ThreatsDay bulletin highlights numerous security updates and vulnerabilities across various platforms. One notable campaign, dubbed City-Forum, has been targeting unauthenticated guest user access in Salesforce Experience Cloud sites and ServiceNow portals. The attackers exploit a little-known technique to exfiltrate data from Salesforce LWR sites using GraphQL, affecting telecoms, banks, and financial services firms.
Trezor's shipping provider, ShipMonk, experienced a data breach exposing customer order data, including names, addresses, phone numbers, and email addresses. Customers in specific countries between May 10th and August 8th are potentially affected.
Currency has patched an issue in its CLI coding agent allowing cloned repositories to run arbitrary commands on developers' machines before prompting for trust. This vulnerability was fixed three days after responsible disclosure on July 20th.