Category: security

Admins everywhere are making this really basic password security mistake

It seems that even IT admins, who should know better, aren’t even using strong passwords to secure portals.  Research from cybersecurity firm Outpost24 has found that out of close to two million admin passwords, over 40,000 of them were simply ‘admin’, a common default password that is supposed to be…

Read More

Watch out – this nasty Android trojan can record your video and audio calls

Cybersecurity experts from F-Secure are warning Android users to be careful when downloading applications from third-party sources, as they could end up installing some nasty malware. In their report, the researchers said that unnamed threat actors engaged in SMS phishing to try and deliver the SpyNote banking trojan to the…

Read More

A new wave of Discord malware is on the rise – here’s what you need to know

Advanced Persistent Threats (APT) have been observed abusing Discord to target critical infrastructure in Ukraine and steal sensitive data.  This is according to a new report from Trellix, whose researchers said this was the first time an APT (which are usually state, or state-sponsored groups) abused the popular communication and…

Read More

Even the FBI says you need to patch this Atlassian Confluence bug right now

The Cybersecurity and Infrastructure Security Agency (CISA), Federal Bureau of Investigation (FBI), and Multi-State Information Sharing and Analysis Center (MS-ISAC) warned Atlassian Confluence server users to patch their endpoints immediately.  The warning was issued after new findings suggesting a recently discovered flaw – CVE-2023-22515 – is being actively exploited in…

Read More

Another major WordPress security flaw has been discoverd – so patch now

A zero-day vulnerability was recently discovered in a highly popular add-on for the WordPress website builder, potentially putting at risk some 200,000 people who are using it.  Cybersecurity researchers from Wordfence and WPScan (both WordPress security firms) discovered the vulnerability in Royal Elementor Addons and Templates, a website-building add-on kit…

Read More

Cisco reports major security flaw, users urged to patch immediately

Hackers are exploiting a critical vulnerability in some Cisco devices to gain full admin control of entire networks, the company has revealed..  In a security advisory from its Talos research team, the company urged users to apply the newly released patch without hesitation. The vulnerability is found in the Web…

Read More