logo

DomainTools | Breaking Badness Cybersecurity Podcast - 190. The Weak Security Default in Our Stars

ID: ee381473-4bfc-5008-9866-617c26faf931

STIX ID: report--ee381473-4bfc-5008-9866-617c26faf931

Feed Name: DomainTools

Threat Score
65/100

Date Published: 2026-01-09

Date Updated: 2026-04-27

Author: domaintools.com

...
...

The report describes two recent security issues: attackers leveraged a Squarespace migration/account-signup weakness to hijack domains for multiple DeFi sites (risking credential theft, drive-by malware, or fund theft) and JFrog researchers discovered a leaked GitHub admin token in a public Docker image that could have enabled code injection into PyPI; the PyPI token was rapidly revoked and no exploitation was reported at the time.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.