A critical IDOR vulnerability (CVE-2025-27507) in ZITADEL’s Admin API exposes organizations to account takeover risks, allowing low-privilege users to manipulate sensitive settings. Rated 9.0/10 on the CVSS scale, attackers can reroute LDAP authentication, extract credentials, or deploy phishing. ZITADEL has released patches; organizations must upgrade and audit configurations to mitigate risks.

The days of bringing your own device to work could be coming to an end
Security concerns are leading organizations to reevaluate their “bring your own device” (BYOD) policies. With increasing threats to data protection and privacy, many businesses are