One Healthcare Archive Was Breached. 9.5 Million Patients Paid the Price.

A breach at Aesto Health reached 9.5 million people across at least two dozen providers, exposing medical, financial and identity data stored in AWS.

A breach at Aesto Health reached 9.5 million people across at least two dozen providers, exposing medical, financial and identity data stored in AWS.

Attackers are exploiting a critical Langflow endpoint to steal OpenAI keys, AWS credentials and administrator secrets. Patching is only the first step.

AWS has fixed a high-severity OpenSearch SQL Plugin flaw that turns a low-privilege search account into a route to arbitrary code execution on the server. The dangerous part is the permission boundary: the account only needs basic read and search…

AWS fixed a Strands Agents Tools flaw that let a crafted prompt use the batch tool to bypass human consent and execute Python on the agent host.

Truffle Security says 88 percent of 64,024 leaked AWS keys it re-checked were still active. The median key was five years old, exposing a failure of revocation and privilege governance.