Tuesday , August 4 2026

Recent Posts

80 internet-exposed MongoDB database instances found in Bangladesh

MongoDB

BGD e-GOV CIRT found 80 insecure MongoDB databases in Bangladesh exposed online, affected by the CVE-2025-14847 vulnerability (MongoBleed). This critical flaw allows remote attackers to access sensitive server data when zlib compression is enabled. MongoDB is often used to store personal, financial, and operational information. This exposure poses significant risks …

Read More »

RondoDox botnet uses React2Shell flaw to breach Next.js servers

RondoDox

The RondoDox botnet is using the serious React2Shell vulnerability (CVE-2025-55182) to infect unprotected Next.js servers with malware and cryptominers. RondoDox, a large-scale botnet first reported by Fortinet in July 2025, targets various n-day vulnerabilities in global attacks. In November, VulnCheck discovered new variants of RondoDox that exploit the critical remote …

Read More »

Coupang to split $1.18 billion for data leak

Coupang

Coupang, a South Korean e-commerce company, announced on Monday a 1.69 trillion won ($1.18 billion) compensation deal for 33.7 million affected accounts due to a major data leak, which upset users and lawmakers. Each customer will receive vouchers worth 50,000 won. Coupang founder Kim Bom apologized for last month’s data …

Read More »