Severe Security Flaw Exposes Over a Million WordPress Sites to Hijack

12/05/2023 0 Comments 0 tags

A security vulnerability has been disclosed in the popular WordPress plugin Essential Addons for Elementor that could be potentially exploited to achieve elevated privileges on affected sites. The issue, tracked as CVE-2023-32243,

Spanish Police Takes Down Massive Cybercrime Ring, 40 Arrested

11/05/2023 0 Comments 0 tags

The National Police of Spain said it arrested 40 individuals for their alleged involvement in an organized crime gang called Trinitarians. Among those apprehended include two hackers who carried out

New APT Group Red Stinger Targets Military and Critical Infrastructure in Eastern Europe

11/05/2023 0 Comments 0 tags

A previously undetected advanced persistent threat (APT) actor dubbed Red Stinger has been linked to attacks targeting Eastern Europe since 2020. “Military, transportation, and critical infrastructure were some of the entities being

How Attack Surface Management Supports Continuous Threat Exposure Management

11/05/2023 0 Comments 0 tags

According to Forrester, External Attack Surface Management (EASM) emerged as a market category in 2021 and gained popularity in 2022. In a different report, Gartner concluded that vulnerability management vendors

Babuk Source Code Sparks 9 Different Ransomware Strains Targeting VMware ESXi Systems

11/05/2023 0 Comments 0 tags

Multiple threat actors have capitalized on the leak of Babuk (aka Babak or Babyk) ransomware code in September 2021 to build as many as nine different ransomware families capable of

Andoryu Botnet Exploits Critical Ruckus Wireless Flaw for Widespread Attack

11/05/2023 0 Comments 0 tags

A nascent botnet called Andoryu has been found to exploit a now-patched critical security flaw in the Ruckus Wireless Admin panel to break into vulnerable devices. The flaw, tracked as CVE-2023-25717 (CVSS score: 9.8), stems from improper

GitHub Extends Push Protection to Prevent Accidental Leaks of Keys and Other Secrets

11/05/2023 0 Comments 0 tags

GitHub has announced the general availability of a new security feature called push protection, which aims to prevent developers from inadvertently leaking keys and other secrets in their code. The Microsoft-owned

Twitter Finally Rolling Out Encrypted Direct Messages — Starting with Verified Users

11/05/2023 0 Comments 0 tags

Twitter is officially beginning to roll out support for encrypted direct messages (DMs) on the platform, more than six months after its chief executive Elon Musk confirmed plans for the feature in November 2022.

Google Announces New Privacy, Safety, and Security Features Across Its Services

10/05/2023 0 Comments 0 tags

Google unveiled a slew of new privacy, safety, and security features today at its annual developer conference, Google I/O. The tech giant’s latest initiatives are aimed at protecting its users

Sophisticated DownEx Malware Campaign Targeting Central Asian Governments

10/05/2023 0 Comments 0 tags

Government organizations in Central Asia are the target of a sophisticated espionage campaign that leverages a previously undocumented strain of malware dubbed DownEx. Bitdefender, in a report shared with The Hacker News, said