Tusk: unraveling a complex infostealer campaign

Summary Kaspersky Global Emergency Response Team (GERT) has identified a complex campaign, consisting of multiple sub-campaigns orchestrated by Russian-speaking cybercriminals. The sub-campaigns imita ...

Continue Reading
HHS OIG Report Underscores Challenges of Securing the Cloud

On July 22, 2024, HHS (Health and Human Services) OIG published a report identifying a need for the Department of Health and Human Services, Office of the Secretary (HHS OS) to improve key security co ...

Continue Reading
Wordfence Intelligence Weekly WordPress Vulnerability Report (August 5, 2024 to August 11, 2024)

_ Did you know Wordfence runs a Bug Bounty Program for all WordPress plugin and themes at no cost to vendors? Through October 14th, r__esearchers can earn up to $32,100, for all in-scope vulnerabiliti ...

Continue Reading
OpenMetadata 1.2.3 Authentication Bypass / SpEL Injection

...Read More ...

Continue Reading
CVE-2024-7628 MStore API – Create Native Android & iOS Apps On The Cloud <= 4.15.2 – Authentication Bypass to Account Takeover

The MStore API – Create Native Android &amp; iOS Apps On The Cloud plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 4.15.2. This is due to the use of ...

Continue Reading
Earn Up to $31,200 Per Vulnerability: Introducing the WordPress Bug Bounty Superhero Challenge!

Today, we’re incredibly excited to launch a new challenge for the Wordfence Bug Bounty Program: the WordPress Superhero Challenge! Through October 14th, we’re introducing a new active installation ...

Continue Reading
WordPress Post SMTP Mailer/Email Log Plugin < 2.8.7 Multiple Vulnerabilities

The WordPress...Read More ...

Continue Reading
Trix has a cross-site Scripting vulnerability on copy & paste

The Trix editor, versions prior to 2.1.4, is vulnerable to XSS when pasting malicious code. This vulnerability is a bypass of the fix put in place for https://github.com/basecamp/trix/security/advisor ...

Continue Reading

Back to Main

Subscribe for the latest news: