news.mlab.sh
574 results
threat-intel

CISA Admin Leaked AWS GovCloud Keys on Github

A contractor for CISA inadvertently exposed highly privileged AWS GovCloud credentials and internal CISA system information via a public GitHub repository. The repository contained plaintext passwords, cloud keys, and lo…

Krebs on Security · May 18, 2026 High
vulnerability

Zero-Day Exploit Against Windows BitLocker

A new zero-day exploit, dubbed YellowKey, has been discovered targeting Windows BitLocker encryption. The vulnerability allows attackers to bypass BitLocker's security measures with physical access to the affected device…

Schneier on Security · May 18, 2026 High