Cybercriminal gangs have hacked public websites to extract data including Amazon Web Services (AWS) cloud credentials from organisations. Cybersecurity researchers Noam Rotem and Ran Locar of CyberCyber Labs found the data in an AWS storage bucket left open due to a misconfiguration, stored by an attacker. The cyberattacks have been connected to threat groups Nemesis and ShinyHunters, known for a hack on Ticketmaster earlier in 2021. AWS responded to insider reports of the operation by urging users to store credentials safely.

Apple New macOS Tahoe Feature Warns Users on ClickFix Attacks
Apple has introduced a new security mechanism in the macOS Tahoe 26.4 release candidate to protect users against social engineering campaigns known as ClickFix attacks.


