Twonky Server Critical Vulnerabilities Let Attackers Bypass Authentication
Security researchers at Rapid7 discovered that an attacker can leak encrypted admin passwords through an unprotected API endpoint.
The full story
This article is one source in a clustered incident — the cluster page carries the summary, timeline and every other outlet covering it.
