Tag: security
Faulty Shopify plugin puts hundreds of websites at risk of invasive attacks – find out how to stay safe
Consentik, a cookie consent & consent management app for Shopify, kept sensitive data in an open archive The archive was available for at least 100 days, if not more It included site analytics data, Shopify Personal Access Tokens, and Facebook Auth Tokens A major, reputable Shopify plugin, was leaking sensitive…
Read MoreNorth Korean hackers release malware-ridden packages into npm registry
Security researchers spotted 67 malicious packages on npm The packages are part of the Contagious Interview campaign They are most likely deployed by North Korean attackers North Korean hackers have been seen pushing dozens of malicious packages to npm in an attempt to compromise western technology products through supply chain…
Read MoreUK launches new Vulnerability Research Institute to protect critical infrastructure and UK business
VRI will complement NCSC’s current vulnerability research efforts It will be tasked with communicating NCSC’s needs with external experts The goal is to understand the flaws, patches, and research methodology The UK’s National Cyber Security Centre (NCSC) just announced the forming of The Vulnerability Research Initiative (VRI), a new program…
Read MoreGoogle Gemini can be hijacked to display fake email summaries in phishing scams
Gemini in Workspace presents unique opportunities for fraud, researchers warn The AI tool can be tricked to display fake security warnings Businesses should make sure invisible text is not processed by the AI Cybercriminals have found a creative new way to abuse Google’s Generative Artificial Intelligence (GenAI) to steal people’s…
Read MoreA major security flaw in top eSIM system could put billions of devices at risk – here’s what we know
A test eSIM profile used by billions of devices carried a major flaw It allowed malicious actors with physical access the ability to deploy applets A patch is now available, so users should upgrade now Security researchers have discovered a vulnerability in eSIM technology used in virtually all smartphones and…
Read MoreWordPress users beware – this popular plugin has been hijacked to push potential malware
The RocketGenius website served a malicious variant of the Gravity Forms WordPress add-on for two days The variant harvested extensive information and allowed for RCE The malware affected only manual downloads and composer installations Gravity Forms, a popular WordPress add-on with at least a million users, was victim of a…
Read MoreRecent Posts
- This elite mini hi-fi hub is perfect for limited shelf-space and smaller homes, but compact does not mean cheap
- Philips Hue just launched over a dozen new smart lights and accessories — here’s every syncing device, light strip, and wall panel worth your money
- Apple’s foldable ‘iPhone Duo’ will reportedly start at $2,000
- 20% Off Brooks Promo Code | September 2026
- ‘A masterclass in sensor-to-shooter kill chain management’: Blackhawk Company commander explains what he learned from controversial US-Ukraine ‘drone-first’ wargame
Archives
- September 2026
- August 2026
- July 2026
- June 2026
- May 2026
- April 2026
- March 2026
- February 2026
- January 2026
- December 2025
- November 2025
- October 2025
- September 2025
- August 2025
- July 2025
- June 2025
- May 2025
- April 2025
- March 2025
- February 2025
- January 2025
- December 2024
- November 2024
- October 2024
- September 2024
- August 2024
- July 2024
- June 2024
- May 2024
- April 2024
- March 2024
- February 2024
- January 2024
- December 2023
- November 2023
- October 2023
- September 2023