The security defect, tracked as CVE-2026-33017 (CVSS score: 9.3), is a case of missing authentication combined with code injection that could result in remote code execution.
“The POST /api/v1
The men violated U.S. export controls laws by scheming to divert massive quantities of the high-performance servers assembled in the United States to China.
The post 3 Men Charged With Conspiring to Smuggle US Artificial Intelligence to China appeared first on SecurityWeek.
The company will use the investment to expand its platform’s capabilities and grow channel partnerships.
The post Eclypsium Raises $25 Million for Device Supply Chain Security appeared first on SecurityWeek.
The US has seized several domains used by Handala in cyber-enabled psychological operations.
The post US Confirms Handala Link to Iran Government Amid Takedown of Hackers’ Sites appeared first on SecurityWeek.
Cape offers a privacy-focused mobile virtual network operator (MVNO) service for consumers, enterprises, and governments.
The post Cape Raises $100 Million for Protection Against Cellular Security Threats appeared first on SecurityWeek.
Between late December 2025 and mid-January 2026, hackers stole personal and health plan information from Navia’s environment.
The post Navia Data Breach Impacts 2.7 Million appeared first on SecurityWeek.
The attacks started on February 27 and have targeted e-commerce platforms, global brands, and government services.
The post Thousands of Magento Sites Hit in Ongoing Defacement Campaign appeared first on SecurityWeek.
