A security incident disclosed that hackers exploited over 3,000 publicly available ASP.NET machine keys to execute remote code on IIS servers using ViewState code injection. This breach underscores developers’ vulnerabilities in managing machine keys, critical for web application security. Microsoft advises regular key rotation, enhanced monitoring, and using security tools to mitigate these risks and detect potential attacks.

77% of security leaders say they'd fire staff who fall for phishing scams, even though they've done the same thing
A new report uncovers worrying complacency amongst IT and security leaders