A new phishing campaign is targeting Telegram users by turning the platform’s own security features into a...
Account Takeover
TP-Link has issued a security advisory regarding multiple vulnerabilities discovered in its Omada Controller software, a popular...
A critical security vulnerability has been unearthed in the Academy LMS plugin for WordPress, a popular tool...
A critical security vulnerability has been found in Cal.com, the popular open-source scheduling platform used by individuals...
A critical vulnerability has been discovered in Appsmith, the popular open-source platform used by organizations to build...
A critical vulnerability in the widely used PrestaShop e-commerce platform has been analyzed by vulnerability researcher Ananda...
A sprawling cybercrime operation that weaponized trusted search engines to drain millions from American bank accounts has...
Cybercriminals have found a new way to turn corporate security protocols against themselves, weaponizing a legitimate Microsoft...
The RedDrip team at QiAnXin Threat Intelligence Center has released a new report detailing a multi-year series...
The Post SMTP plugin, used by over 400,000 WordPress sites to ensure reliable email delivery, has been...
A newly disclosed vulnerability in the Spirit Framework plugin for WordPress has put thousands of websites at...
The Formbricks project, an open-source platform for building in-app and website surveys, has released an urgent patch...
The open-source generative AI development platform FlowiseAI, widely used for building AI agents and LLM workflows, has...
The developers of pgAdmin, the most widely used open-source administration and development platform for PostgreSQL, have patched...
The Frappe Framework, a widely used full-stack application platform that powers ERPNext, has been found vulnerable to...
Last month, a critical vulnerability was reported to Wordfence that now threatens more than 22,000 WordPress websites...
Security researchers at Wordfence have uncovered a vulnerability in the popular AI Engine plugin for WordPress, which...
According to a new report by Proofpoint, attackers are now actively exploiting the TeamFiltration penetration testing framework...
GitLab has issued urgent security updates for its Community Edition (CE) and Enterprise Edition (EE), addressing a...
Security researchers at HiddenLayer have disclosed a critical privilege escalation vulnerability in Backend.AI, a widely used container-based...
A severe vulnerability in the PayU CommercePro plugin for WordPress, which has over 5,000 active installations, allows...
ZITADEL, a modern identity and access management platform, has patched a critical vulnerability in its password reset...