Former US Managers Plead Guilty to Tech-Support Fraud
Former CEO Adam Young and former Chief Security Officer Harrison Gevirtz of C.A. Cloud Attribution Ltd. pleaded guilty to supporting fraudsters by providing them with phone numbers, call recording and forwarding services that enabled scams worth millions of dollars. Sentencing is scheduled for June 2025.
CISA Administrator Exposed AWS GovCloud Keys on GitHub
A CISA contractor stored highly sensitive credentials for AWS GovCloud accounts and internal systems in a public GitHub repository, containing cloud keys, plaintext passwords, and administrative data—rated by security firm GitGuardian as the most severe government data leak of their career.
Critical Drupal SQL Injection Actively Exploited and Added to CISA Catalog
A SQL injection vulnerability in Drupal Core is actively exploited and added by CISA to the catalog of known exploited vulnerabilities; Imperva has documented over 15,000 attack attempts against 6,000 websites, primarily targeting gaming and financial sites, with security patches available.











