January 16, 2024 | Cybernews
Sucuri specialists discover a new Balada Injector campaign targeting vulnerable WordPress websites, exploiting an XSS vulnerability in the Popup Builder plugin and injecting a backdoor disguised as the wp-felody.php plugin, affecting over 1 million sites.
January 16, 2024 | Cybernews
US lawmakers, including Senators Ron Wyden and Cynthia Lummis, are urging an investigation into the recent hack of the SEC’s social media account on X platform, raising concerns about the agency’s cybersecurity measures and failure to implement multi-factor authentication.
January 15, 2024 | Cybernews
The US Cybersecurity and Infrastructure Security Agency (CISA) has issued advisories addressing security issues and vulnerabilities in nine industrial control systems (ICS) products used in critical infrastructure sectors, urging users and administrators to implement recommended mitigations.
January 15, 2024 | Cybernews
German technology manufacturer Bosch successfully addresses vulnerability in smart thermostats, protecting users from potential attacks by fixing a firmware replacement vulnerability.
January 15, 2024 | Cybernews
The Medusa ransomware group has launched a leak site and a Telegram channel to share stolen data and negotiate ransom payments, increasing their activities and posing a serious threat to cybersecurity.
January 15, 2024 | Cybernews
GitLab has released security updates to fix two critical vulnerabilities that allow for account takeovers without user interaction by exploiting bugs in the email verification process and password reset functionality.