Following Orders: A Day in the Life of an Iranian Telegram Bot Farm | UpGuard
Inside 24 hours of an Iranian Telegram bot farm: how a misconfigured server exposed the operation selling fake followers to financial scammers.
Inside 24 hours of an Iranian Telegram bot farm: how a misconfigured server exposed the operation selling fake followers to financial scammers.
Adult-content creators filing DMCA takedowns are inadvertently exposing thousands of compromised .gov and .edu sites used for parasite SEO scams.
An exposed DBHub instance leaked millions of records from India's largest real estate platform—the biggest MCP server breach to date.
Free World Cup streams and black-market betting sites are leaking fan data. UpGuard research reveals the hidden cyber risks of the 2026 tournament.
An exposed Azure storage bucket contained millions of documents sent through a jail messaging app, including driver's licenses used for identity verification.
A misconfigured MCP server provided complete access to a private equity firm's data lake, illustrating the unique risks of AI adoption for specialized knowledge workers.
A publicly accessible server with email logs reveals how much information such infrastructure holds–including evidence of attackers looking for it.
An exposed database of dark web threat intel reveals how China responds to the common threat of the cyber-criminal underground.
UpGuard research found a trove of sensitive information in an exposed Elastic database. Getting to the bottom of what it meant led us down an interesting path.
Tens of thousands of AI-enabled web applications using the Streamlit framework are publicly available, exposing PII and other confidential data.