Pular para o conteúdo principal

The Identity at the Core

A crônica definitiva da gestão de identidades e acessos

THE HACKER NEWS

Claude Opus 5 Helped Researchers Take Over OpenAI Staff Accounts via Chained Flaws

Three researchers at the security firm Hacktron used Anthropic's Claude Opus 5 to chain two flaws and take over the ChatGPT and Codex accounts of several OpenAI employees, then reach an internal OpenAI code repository. The chain began with a bug in the software that runs OpenAI's public help forum and moved through a weakness in OpenAI's own login system. This was security research,

Por The Hacker News
THE HACKER NEWS

Critical Pre-Auth RCE in Orkes Conductor Workflow Platform Exploited in the Wild

A critical vulnerability impacting Orkes Conductor is being actively exploited in the wild, according to Fortinet. The vulnerability in question is CVE-2026-58138 (CVSS v3.1 score: 9.8/CVSS v4 score: 9.3), which relates to a case of unauthenticated remote code execution. "Orkes Conductor 3.21.21 before 3.30.2 contains an unauthenticated remote code execution vulnerability that allows remote

Por The Hacker News
THE HACKER NEWS

CrowdSec Says TanStack npm Attack Led to Copy of 170 Private GitHub Repositories

An attacker copied about 170 of CrowdSec's private GitHub repositories on May 22 using the account of an employee who had just left, CrowdSec said on September 18. The French security company had kept his GitHub access open. CrowdSec says his laptop was compromised in May's supply chain attack on TanStack, in which malicious versions of TanStack's npm packages stole credentials from

Por The Hacker News

IAM no Canadá

Regulação e conformidade que definem como a identidade é gerida onde você está
30 de set. - 1 de out., 2026

CanSecWest

Vancouver, BC, CA
3 de out.-4, 2026

BSides Toronto

Toronto, ON, CA
6 de out.-8, 2026

SecTor Canada

Toronto, ON, CA
21 de out. de 2026

SailPoint Navigate Toronto

Toronto, ON, CA
17 de mar. de 2027datas a confirmar

BSides Vancouver

Vancouver, BC, CA
Calendário completo →

Ainda não há matérias publicadas para esta região. Cada entrada do rastreador aponta para a página do próprio regulador; todo domingo o rastreador relê essas páginas, e qualquer mudança de status é revisada por um editor antes de aparecer aqui.

🚨 Ops... Mais Uma
Inteligência ao vivo sobre violações e vulnerabilidades - atualizada em tempo real
Inteligência de Violações
AO VIVO
Rastreador de Vulnerabilidades
AO VIVO

Não Perca Nenhuma Violação, CVE ou Mudança no Setor

Junte-se a milhares de profissionais de IAM que recebem o Briefing de Inteligência semanal toda segunda-feira de manhã.

Frequência
O que incluir