Tag
high
advisory
CVE-2026-1989: Authorization Bypass in PAVO Pay through User-Controlled Key
3 TTPs 1 CVECVE-2026-1989 describes a high-severity authorization bypass vulnerability affecting PAVO Financial Technology Solutions Inc.'s PAVO Pay, allowing attackers to exploit trusted identifiers via a user-controlled key to gain unauthorized access or escalate privileges within the system.
PAVO Pay
authorization-bypass
vulnerability
financial-services
web-application
cve
3t
1c
critical
threat
Qilin Ransomware Claims New Financial Services Victim
2 rules 20 TTPs 60 IOCsThe Qilin ransomware group, known for its Golang-based ransomware and double extortion tactics, has claimed a new victim in the Financial Services sector, www.tqfinancials.com, as part of its ongoing campaign, highlighting the persistent threat of data encryption and exfiltration.
Qilin
+1
ransomware
double-extortion
financial-services
golang
2r
20t
60i