<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>authentication bypass</title>
	<atom:link href="https://axisofeasy.com/tag/authentication-bypass/feed/" rel="self" type="application/rss+xml" />
	<link>https://axisofeasy.com</link>
	<description>Rapid Coverage of a World Gone Full Cyberpunk</description>
	<lastBuildDate>Mon, 10 Aug 2026 21:18:29 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=7.1</generator>

<image>
	<url>https://axisofeasy.com/wp-content/uploads/2018/07/cropped-easydns-big-bolt-512x512-32x32.png</url>
	<title>authentication bypass</title>
	<link>https://axisofeasy.com</link>
	<width>32</width>
	<height>32</height>
</image> 
	<item>
		<title>#AxisOfEasy 462: The npm Worm That Ate The JavaScript Supply Chain</title>
		<link>https://axisofeasy.com/aoe/axisofeasy-462-the-npm-worm-that-ate-the-javascript-supply-chain/?pk_campaign=feed&#038;pk_kwd=axisofeasy-462-the-npm-worm-that-ate-the-javascript-supply-chain&#038;utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=axisofeasy-462-the-npm-worm-that-ate-the-javascript-supply-chain</link>
					<comments>https://axisofeasy.com/aoe/axisofeasy-462-the-npm-worm-that-ate-the-javascript-supply-chain/?pk_campaign=feed&#038;pk_kwd=axisofeasy-462-the-npm-worm-that-ate-the-javascript-supply-chain#comments</comments>
		
		<dc:creator><![CDATA[Mark E. Jeftovic]]></dc:creator>
		<pubDate>Fri, 07 Aug 2026 22:00:49 +0000</pubDate>
				<category><![CDATA[#AxisOfEasy]]></category>
		<category><![CDATA[active exploitation]]></category>
		<category><![CDATA[AI regulation]]></category>
		<category><![CDATA[AI security]]></category>
		<category><![CDATA[authentication bypass]]></category>
		<category><![CDATA[Check Point]]></category>
		<category><![CDATA[CI/CD security]]></category>
		<category><![CDATA[cisa kev]]></category>
		<category><![CDATA[Cisco]]></category>
		<category><![CDATA[Claude]]></category>
		<category><![CDATA[cloud security]]></category>
		<category><![CDATA[compliance]]></category>
		<category><![CDATA[credential theft]]></category>
		<category><![CDATA[Cybersecurity]]></category>
		<category><![CDATA[data breaches]]></category>
		<category><![CDATA[enterprise security]]></category>
		<category><![CDATA[EU AI Act]]></category>
		<category><![CDATA[Fastjson]]></category>
		<category><![CDATA[GitHub]]></category>
		<category><![CDATA[hard-coded credentials]]></category>
		<category><![CDATA[incident response]]></category>
		<category><![CDATA[javascript]]></category>
		<category><![CDATA[Malware]]></category>
		<category><![CDATA[MFA]]></category>
		<category><![CDATA[Npm]]></category>
		<category><![CDATA[passkeys]]></category>
		<category><![CDATA[patch management]]></category>
		<category><![CDATA[phishing]]></category>
		<category><![CDATA[Privacy]]></category>
		<category><![CDATA[Remote code execution]]></category>
		<category><![CDATA[Revolut]]></category>
		<category><![CDATA[Russian espionage]]></category>
		<category><![CDATA[search indexing]]></category>
		<category><![CDATA[software provenance]]></category>
		<category><![CDATA[supply chain attacks]]></category>
		<category><![CDATA[synthetic content]]></category>
		<category><![CDATA[threat intelligence]]></category>
		<category><![CDATA[vCenter]]></category>
		<category><![CDATA[vmware]]></category>
		<category><![CDATA[zero-day vulnerabilities]]></category>
		<category><![CDATA[Zimbra]]></category>
		<guid isPermaLink="false">https://axisofeasy.com/?p=34218</guid>

					<description><![CDATA[The npm Worm That Ate The JavaScript Supply Chain
75 Million Revolut Records For Sale, Revolut Says Nothing To See Here
Your "Private" Claude Chats Were On Google The Whole Time... this and more in AofE  #462<img src="//axisofeasy.com/wp-content/plugins/matomo/app/matomo.php?idsite=1&amp;rec=1&amp;url=https%3A%2F%2Faxisofeasy.com%2Faoe%2Faxisofeasy-462-the-npm-worm-that-ate-the-javascript-supply-chain%2F%3Fpk_campaign%3Dfeed%26pk_kwd%3Daxisofeasy-462-the-npm-worm-that-ate-the-javascript-supply-chain&amp;action_name=%23AxisOfEasy%20462%3A%20The%20npm%20Worm%20That%20Ate%20The%20JavaScript%20Supply%20Chain&amp;urlref=https%3A%2F%2Faxisofeasy.com%2Ffeed%2F" style="border:0;width:0;height:0" width="0" height="0" alt="" />]]></description>
		
					<wfw:commentRss>https://axisofeasy.com/aoe/axisofeasy-462-the-npm-worm-that-ate-the-javascript-supply-chain/?pk_campaign=feed&#038;pk_kwd=axisofeasy-462-the-npm-worm-that-ate-the-javascript-supply-chain/feed/</wfw:commentRss>
			<slash:comments>7</slash:comments>
		
		
			</item>
		<item>
		<title>#AxisOfEasy 454: Anthropic Splits Its Most Capable Model In Two — One For The Public, One For Cyber Defenders</title>
		<link>https://axisofeasy.com/aoe/axisofeasy-454-anthropic-splits-its-most-capable-model-in-two-one-for-the-public-one-for-cyber-defenders/?pk_campaign=feed&#038;pk_kwd=axisofeasy-454-anthropic-splits-its-most-capable-model-in-two-one-for-the-public-one-for-cyber-defenders&#038;utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=axisofeasy-454-anthropic-splits-its-most-capable-model-in-two-one-for-the-public-one-for-cyber-defenders</link>
					<comments>https://axisofeasy.com/aoe/axisofeasy-454-anthropic-splits-its-most-capable-model-in-two-one-for-the-public-one-for-cyber-defenders/?pk_campaign=feed&#038;pk_kwd=axisofeasy-454-anthropic-splits-its-most-capable-model-in-two-one-for-the-public-one-for-cyber-defenders#comments</comments>
		
		<dc:creator><![CDATA[Mark E. Jeftovic]]></dc:creator>
		<pubDate>Fri, 12 Jun 2026 22:00:28 +0000</pubDate>
				<category><![CDATA[#AxisOfEasy]]></category>
		<category><![CDATA[account security]]></category>
		<category><![CDATA[Account Takeover]]></category>
		<category><![CDATA[AI safety controls]]></category>
		<category><![CDATA[AI security]]></category>
		<category><![CDATA[AI surveillance]]></category>
		<category><![CDATA[AI-powered support tools]]></category>
		<category><![CDATA[Anthropic]]></category>
		<category><![CDATA[authentication bypass]]></category>
		<category><![CDATA[authentication flaws]]></category>
		<category><![CDATA[AWS credentials]]></category>
		<category><![CDATA[Azure credentials]]></category>
		<category><![CDATA[Check Point VPN]]></category>
		<category><![CDATA[Claude API keys]]></category>
		<category><![CDATA[Claude Fable 5]]></category>
		<category><![CDATA[cloud credential theft]]></category>
		<category><![CDATA[cloud infrastructure]]></category>
		<category><![CDATA[cloud security]]></category>
		<category><![CDATA[cloudflare]]></category>
		<category><![CDATA[credential theft]]></category>
		<category><![CDATA[cyber defenders]]></category>
		<category><![CDATA[Cybersecurity]]></category>
		<category><![CDATA[data extortion]]></category>
		<category><![CDATA[data retention]]></category>
		<category><![CDATA[denial of service]]></category>
		<category><![CDATA[developer security]]></category>
		<category><![CDATA[Discord breach claims]]></category>
		<category><![CDATA[easyClaw]]></category>
		<category><![CDATA[easydns]]></category>
		<category><![CDATA[easynode]]></category>
		<category><![CDATA[Gemini API keys]]></category>
		<category><![CDATA[GitHub account takeover]]></category>
		<category><![CDATA[GitHub Actions]]></category>
		<category><![CDATA[Google Cloud]]></category>
		<category><![CDATA[Instagram accounts]]></category>
		<category><![CDATA[Instagram Reels]]></category>
		<category><![CDATA[IP exhaustion]]></category>
		<category><![CDATA[Malware]]></category>
		<category><![CDATA[malware-as-a-service]]></category>
		<category><![CDATA[Mandiant]]></category>
		<category><![CDATA[Meta breach]]></category>
		<category><![CDATA[Miasma malware]]></category>
		<category><![CDATA[Microsoft Defender]]></category>
		<category><![CDATA[model access controls]]></category>
		<category><![CDATA[Mozilla]]></category>
		<category><![CDATA[Mythos 5]]></category>
		<category><![CDATA[Nightmare Eclipse]]></category>
		<category><![CDATA[npm supply chain attack]]></category>
		<category><![CDATA[OIDC tokens]]></category>
		<category><![CDATA[open source ecosystem]]></category>
		<category><![CDATA[OpenClaw]]></category>
		<category><![CDATA[password reset abuse]]></category>
		<category><![CDATA[Patch Tuesday]]></category>
		<category><![CDATA[phishing awareness]]></category>
		<category><![CDATA[PowerShell malware]]></category>
		<category><![CDATA[privilege escalation]]></category>
		<category><![CDATA[Project Glasswing]]></category>
		<category><![CDATA[proof of concept exploit]]></category>
		<category><![CDATA[ransomware]]></category>
		<category><![CDATA[Red Hat compromise]]></category>
		<category><![CDATA[SLSA attestations]]></category>
		<category><![CDATA[social engineering]]></category>
		<category><![CDATA[software supply chain security]]></category>
		<category><![CDATA[SolarWinds Serv-U]]></category>
		<category><![CDATA[student privacy]]></category>
		<category><![CDATA[threat intelligence]]></category>
		<category><![CDATA[TikTok scams]]></category>
		<category><![CDATA[Two-Factor Authentication]]></category>
		<category><![CDATA[Vidar malware]]></category>
		<category><![CDATA[VPS hosting]]></category>
		<category><![CDATA[vulnerability discovery]]></category>
		<category><![CDATA[Windows Security]]></category>
		<category><![CDATA[zero-day vulnerabilities]]></category>
		<guid isPermaLink="false">https://axisofeasy.com/?p=33999</guid>

					<description><![CDATA[Anthropic Splits Its Most Capable Model in Two — One for the Public, One for Cyber Defenders
Disgruntled Ex-Microsoft Researcher Drops Seventh Zero-Day, Targets Defender
Meta Bug Exposes 20,000+ Instagram Accounts... this and more in AofE  #454<img src="//axisofeasy.com/wp-content/plugins/matomo/app/matomo.php?idsite=1&amp;rec=1&amp;url=https%3A%2F%2Faxisofeasy.com%2Faoe%2Faxisofeasy-454-anthropic-splits-its-most-capable-model-in-two-one-for-the-public-one-for-cyber-defenders%2F%3Fpk_campaign%3Dfeed%26pk_kwd%3Daxisofeasy-454-anthropic-splits-its-most-capable-model-in-two-one-for-the-public-one-for-cyber-defenders&amp;action_name=%23AxisOfEasy%20454%3A%20Anthropic%20Splits%20Its%20Most%20Capable%20Model%20In%20Two%20%E2%80%94%20One%20For%20The%20Public%2C%20One%20For%20Cyber%20Defenders&amp;urlref=https%3A%2F%2Faxisofeasy.com%2Ffeed%2F" style="border:0;width:0;height:0" width="0" height="0" alt="" />]]></description>
		
					<wfw:commentRss>https://axisofeasy.com/aoe/axisofeasy-454-anthropic-splits-its-most-capable-model-in-two-one-for-the-public-one-for-cyber-defenders/?pk_campaign=feed&#038;pk_kwd=axisofeasy-454-anthropic-splits-its-most-capable-model-in-two-one-for-the-public-one-for-cyber-defenders/feed/</wfw:commentRss>
			<slash:comments>3</slash:comments>
		
		
			</item>
		<item>
		<title>#AxisOfEasy 420: RedNovember&#8217;s Global Cyber-Espionage Blitz</title>
		<link>https://axisofeasy.com/aoe/axisofeasy-420-rednovembers-global-cyber-espionage-blitz/?pk_campaign=feed&#038;pk_kwd=axisofeasy-420-rednovembers-global-cyber-espionage-blitz&#038;utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=axisofeasy-420-rednovembers-global-cyber-espionage-blitz</link>
					<comments>https://axisofeasy.com/aoe/axisofeasy-420-rednovembers-global-cyber-espionage-blitz/?pk_campaign=feed&#038;pk_kwd=axisofeasy-420-rednovembers-global-cyber-espionage-blitz#comments</comments>
		
		<dc:creator><![CDATA[Mark E. Jeftovic]]></dc:creator>
		<pubDate>Fri, 03 Oct 2025 22:00:48 +0000</pubDate>
				<category><![CDATA[#AxisOfEasy]]></category>
		<category><![CDATA[1.2 million passengers]]></category>
		<category><![CDATA[1500 organizations]]></category>
		<category><![CDATA[ACSC]]></category>
		<category><![CDATA[Africa]]></category>
		<category><![CDATA[Android]]></category>
		<category><![CDATA[APT]]></category>
		<category><![CDATA[arbitrary code execution]]></category>
		<category><![CDATA[ArcaneDoor]]></category>
		<category><![CDATA[ASA]]></category>
		<category><![CDATA[authentication bypass]]></category>
		<category><![CDATA[aviation]]></category>
		<category><![CDATA[banking trojan]]></category>
		<category><![CDATA[BCC]]></category>
		<category><![CDATA[Bill C-36]]></category>
		<category><![CDATA[Bill C-8]]></category>
		<category><![CDATA[Bill C-9]]></category>
		<category><![CDATA[Bitcoin Treasury]]></category>
		<category><![CDATA[C-2]]></category>
		<category><![CDATA[C-26]]></category>
		<category><![CDATA[C-8]]></category>
		<category><![CDATA[C-9]]></category>
		<category><![CDATA[Canada]]></category>
		<category><![CDATA[Canadian Bitcoin Conference]]></category>
		<category><![CDATA[Canadian Bitcoin Podcast]]></category>
		<category><![CDATA[Canadian Human Rights Act]]></category>
		<category><![CDATA[censorship]]></category>
		<category><![CDATA[Central Asia]]></category>
		<category><![CDATA[Charter of Rights and Freedoms]]></category>
		<category><![CDATA[China]]></category>
		<category><![CDATA[CISA]]></category>
		<category><![CDATA[Cisco]]></category>
		<category><![CDATA[Cisco ASA]]></category>
		<category><![CDATA[Citizen Lab]]></category>
		<category><![CDATA[Cobalt Strike]]></category>
		<category><![CDATA[command-and-control]]></category>
		<category><![CDATA[Criminal Code]]></category>
		<category><![CDATA[CVE-2025-20333]]></category>
		<category><![CDATA[CVE-2025-20362]]></category>
		<category><![CDATA[cyber campaign]]></category>
		<category><![CDATA[cyber defense]]></category>
		<category><![CDATA[cyber espionage]]></category>
		<category><![CDATA[Cybersecurity]]></category>
		<category><![CDATA[data breach]]></category>
		<category><![CDATA[deepfakes]]></category>
		<category><![CDATA[developer data]]></category>
		<category><![CDATA[Digital Safety Commission]]></category>
		<category><![CDATA[easydns]]></category>
		<category><![CDATA[Elon Musk]]></category>
		<category><![CDATA[espionage]]></category>
		<category><![CDATA[Europe]]></category>
		<category><![CDATA[exfiltration]]></category>
		<category><![CDATA[F5 BIG-IP]]></category>
		<category><![CDATA[fake recruiters]]></category>
		<category><![CDATA[FBI]]></category>
		<category><![CDATA[Fortinet]]></category>
		<category><![CDATA[free speech]]></category>
		<category><![CDATA[FTD]]></category>
		<category><![CDATA[genocide]]></category>
		<category><![CDATA[geopolitics]]></category>
		<category><![CDATA[harmful online content]]></category>
		<category><![CDATA[hate speech]]></category>
		<category><![CDATA[IDs]]></category>
		<category><![CDATA[India]]></category>
		<category><![CDATA[Indian Cyber Crime Coordination Centre]]></category>
		<category><![CDATA[Insikt Group]]></category>
		<category><![CDATA[IT Act 2000]]></category>
		<category><![CDATA[Ivanti Connect Secure]]></category>
		<category><![CDATA[Joey Temprile]]></category>
		<category><![CDATA[Justice M Nagaprasanna]]></category>
		<category><![CDATA[Karnataka High Court]]></category>
		<category><![CDATA[Klopatra]]></category>
		<category><![CDATA[LESLIELOADER]]></category>
		<category><![CDATA[Line Dancer]]></category>
		<category><![CDATA[Line Runner]]></category>
		<category><![CDATA[loyalty programs]]></category>
		<category><![CDATA[Mark Jeftovic]]></category>
		<category><![CDATA[MCP server]]></category>
		<category><![CDATA[Melanie Joly]]></category>
		<category><![CDATA[Ministry of Home Affairs]]></category>
		<category><![CDATA[mitigation]]></category>
		<category><![CDATA[Montreal]]></category>
		<category><![CDATA[NCSC]]></category>
		<category><![CDATA[Net-Star malware]]></category>
		<category><![CDATA[North Korea]]></category>
		<category><![CDATA[online misuse]]></category>
		<category><![CDATA[Outlook Web Access]]></category>
		<category><![CDATA[Panama]]></category>
		<category><![CDATA[Pantegana]]></category>
		<category><![CDATA[passports]]></category>
		<category><![CDATA[peace bonds]]></category>
		<category><![CDATA[personal data]]></category>
		<category><![CDATA[Phantom Taurus]]></category>
		<category><![CDATA[phone hijacking]]></category>
		<category><![CDATA[PoC exploits]]></category>
		<category><![CDATA[Qantas]]></category>
		<category><![CDATA[ransomware]]></category>
		<category><![CDATA[Recorded Future]]></category>
		<category><![CDATA[RedNovember]]></category>
		<category><![CDATA[Rialto Theatre]]></category>
		<category><![CDATA[ROM manipulation]]></category>
		<category><![CDATA[Sahyog portal]]></category>
		<category><![CDATA[Scattered Spider]]></category>
		<category><![CDATA[Sean Fraser]]></category>
		<category><![CDATA[secrets]]></category>
		<category><![CDATA[Section 69A]]></category>
		<category><![CDATA[Secure Firewall]]></category>
		<category><![CDATA[social engineering]]></category>
		<category><![CDATA[SonicWall]]></category>
		<category><![CDATA[SparkRAT]]></category>
		<category><![CDATA[spearphishing]]></category>
		<category><![CDATA[state-sponsored]]></category>
		<category><![CDATA[Steven Guilbeault]]></category>
		<category><![CDATA[Storm-1849]]></category>
		<category><![CDATA[Storm-2077]]></category>
		<category><![CDATA[Surveillance]]></category>
		<category><![CDATA[surveillance bills]]></category>
		<category><![CDATA[TAG-100]]></category>
		<category><![CDATA[Taiwan]]></category>
		<category><![CDATA[transportation networks]]></category>
		<category><![CDATA[twitter]]></category>
		<category><![CDATA[U.S. defense contractors]]></category>
		<category><![CDATA[UAT4356]]></category>
		<category><![CDATA[VNC]]></category>
		<category><![CDATA[vulnerabilities]]></category>
		<category><![CDATA[WestJet]]></category>
		<category><![CDATA[women’s safety]]></category>
		<category><![CDATA[X Corp]]></category>
		<category><![CDATA[zero-day]]></category>
		<guid isPermaLink="false">https://axisofeasy.com/?p=32373</guid>

					<description><![CDATA[... this and more in AofE  #420<img src="//axisofeasy.com/wp-content/plugins/matomo/app/matomo.php?idsite=1&amp;rec=1&amp;url=https%3A%2F%2Faxisofeasy.com%2Faoe%2Faxisofeasy-420-rednovembers-global-cyber-espionage-blitz%2F%3Fpk_campaign%3Dfeed%26pk_kwd%3Daxisofeasy-420-rednovembers-global-cyber-espionage-blitz&amp;action_name=%23AxisOfEasy%20420%3A%20RedNovember%26%238217%3Bs%20Global%20Cyber-Espionage%20Blitz&amp;urlref=https%3A%2F%2Faxisofeasy.com%2Ffeed%2F" style="border:0;width:0;height:0" width="0" height="0" alt="" />]]></description>
		
					<wfw:commentRss>https://axisofeasy.com/aoe/axisofeasy-420-rednovembers-global-cyber-espionage-blitz/?pk_campaign=feed&#038;pk_kwd=axisofeasy-420-rednovembers-global-cyber-espionage-blitz/feed/</wfw:commentRss>
			<slash:comments>2</slash:comments>
		
		
			</item>
	</channel>
</rss>
