Critical Security Flaw in Social Login Plugin for WordPress Exposes Users’ Accounts

29/06/2023 0 Comments 0 tags

A critical security flaw has been disclosed in miniOrange’s Social Login and Register plugin for WordPress that could enable a malicious actor to log in as any user-provided information about email address

Newly Uncovered ThirdEye Windows-Based Malware Steals Sensitive Data

29/06/2023 0 Comments 0 tags

A previously undocumented Windows-based information stealer called ThirdEye has been discovered in the wild with capabilities to harvest sensitive data from infected hosts. Fortinet FortiGuard Labs, which made the discovery, said it found

Alert: New Electromagnetic Attacks on Drones Could Let Attackers Take Control

28/06/2023 0 Comments 0 tags

Drones that don’t have any known security weaknesses could be the target of electromagnetic fault injection (EMFI) attacks, potentially enabling a threat actor to achieve arbitrary code execution and compromise

CryptosLabs Scam Ring Targets French-Speaking Investors, Rakes in €480 Million

28/06/2023 0 Comments 0 tags

Cybersecurity researchers have exposed the workings of a scam ring called CryptosLabs that’s estimated to have made €480 million in illegal profits by targeting users in French-speaking individuals in France,

8Base Ransomware Spikes in Activity, Threatens U.S. and Brazilian Businesses

28/06/2023 0 Comments 0 tags

A ransomware threat called 8Base that has been operating under the radar for over a year has been attributed to a “massive spike in activity” in May and June 2023.

5 Things CISOs Need to Know About Securing OT Environments

28/06/2023 0 Comments 0 tags

For too long the cybersecurity world focused exclusively on information technology (IT), leaving operational technology (OT) to fend for itself. Traditionally, few industrial enterprises had dedicated cybersecurity leaders. Any security

Critical SQL Injection Flaws Expose Gentoo Soko to Remote Code Execution

28/06/2023 0 Comments 0 tags

Multiple SQL injection vulnerabilities have been disclosed in Gentoo Soko that could lead to remote code execution (RCE) on vulnerable systems. “These SQL injections happened despite the use of an

EncroChat Bust Leads to 6,558 Criminals’ Arrests and €900 Million Seizure

27/06/2023 0 Comments 0 tags

Europol on Tuesday announced that the takedown of EncroChat in July 2020 led to 6,558 arrests worldwide and the seizure of €900 million in illicit criminal proceeds. The law enforcement agency said

Beyond Asset Discovery: How Attack Surface Management Prioritizes Vulnerability Remediation

27/06/2023 0 Comments 0 tags

As the business environment becomes increasingly connected, organizations’ attack surfaces continue to expand, making it challenging to map and secure both known and unknown assets. In particular, unknown assets present

New Ongoing Campaign Targets npm Ecosystem with Unique Execution Chain

27/06/2023 0 Comments 0 tags

Cybersecurity researchers have discovered a new ongoing campaign aimed at the npm ecosystem that leverages a unique execution chain to deliver an unknown payload to targeted systems. “The packages in question