Category: security

US government warns this popular CMS software has a worrying security flaw

CISA adds Craft CMS bug to its KEV catalog The bug was found in Craft CMS versions 4 and 5 It allows for remote code execution The US Government’s Cybersecurity and Infrastructure Security Agency (CISA) has added a new bug in Craft CMS versions 4 and 5 to its Known…

Read More

Security flaw in popular stalkerware apps is exposing phone data of millions

Cocospy and Spyic were found to be leaking sensitive information The developers are not responding and the bugs have not been fixed People’s photos, messages, call logs, and more, are at risk Email addresses, text messages, call logs, photographs, and other sensitive data, belonging to millions of people may have…

Read More

Top US mineral firm hit by cyberattack that saw thieves steal $500,000

NioCorp has notified the SEC of a cyberattack It was tricked into sending a payment to the wrong account It notified law enforcement and is trying to recover the funds NioCorp Developments, a Canadian mineral exploration firm operating in Nebraska, has reported suffering a cyberattack in which it lost half…

Read More

Salt Typhoon hackers used this clever technique to attack US networks

Cisco reveals Salt Typhoon used CVE-2018-0171 to breach target networks It needed login credentials, first The attackers are highly sophisticated and well-funded, Cisco said Chinese state-sponsored threat actor Salt Typhoon was abusing a vulnerability in the Smart Install feature of Cisco IOS software and Cisco IOS XE software to compromise…

Read More

Major website hijacking scam sees over 35,000 sites attacked, redirected to gambling sites, so be on your guard

Researchers found more than 35,000 compromised websites Sites were carrying malicious code that took over the browser window Visitors were being served casino landing pages More than 35,000 websites have been compromised in a major hacking campaign that saw users redirected to malicious pages, or possibly even served malware, experts…

Read More

The US Is Considering a TP-Link Router Ban—Should You Worry?

Several government departments are investigating TP-Link routers over Chinese cyberattack fears, but the company denies links. Source

Read More