In a chilling reminder of the fragility of enterprise-grade security integrations, a critical vulnerability has been uncovered in the popular "OAuth Single Sign On – SSO (OAuth Client)" plugin developed by miniOrange. This flaw, assigned the identifier CVE-2026-57807, allows unauthenticated attackers to bypass traditional login protocols and masquerade as any user—including those with full administrative […]
Massive Data Breach at Nelnet Servicing Exposes Personal Records of 2.5 Million Student Loan Borrowers
In a significant cybersecurity lapse that has sent shockwaves through the higher education finance sector, Nelnet Servicing—a major provider of servicing systems and web portals for student loan giants EdFinancial and the Oklahoma Student Loan Authority (OSLA)—has confirmed a massive data breach. The incident, which impacted approximately 2,501,324 individuals, has exposed highly sensitive personal information, […]

