Cybercriminals have found a new way to turn corporate security protocols against themselves, weaponizing a legitimate Microsoft...
Account Takeover
The RedDrip team at QiAnXin Threat Intelligence Center has released a new report detailing a multi-year series...
The Post SMTP plugin, used by over 400,000 WordPress sites to ensure reliable email delivery, has been...
A newly disclosed vulnerability in the Spirit Framework plugin for WordPress has put thousands of websites at...
The Formbricks project, an open-source platform for building in-app and website surveys, has released an urgent patch...
The open-source generative AI development platform FlowiseAI, widely used for building AI agents and LLM workflows, has...
The developers of pgAdmin, the most widely used open-source administration and development platform for PostgreSQL, have patched...
The Frappe Framework, a widely used full-stack application platform that powers ERPNext, has been found vulnerable to...
Last month, a critical vulnerability was reported to Wordfence that now threatens more than 22,000 WordPress websites...
Security researchers at Wordfence have uncovered a vulnerability in the popular AI Engine plugin for WordPress, which...
According to a new report by Proofpoint, attackers are now actively exploiting the TeamFiltration penetration testing framework...
GitLab has issued urgent security updates for its Community Edition (CE) and Enterprise Edition (EE), addressing a...
Security researchers at HiddenLayer have disclosed a critical privilege escalation vulnerability in Backend.AI, a widely used container-based...
A severe vulnerability in the PayU CommercePro plugin for WordPress, which has over 5,000 active installations, allows...
ZITADEL, a modern identity and access management platform, has patched a critical vulnerability in its password reset...
A recently disclosed vulnerability in WSO2 products, identified as CVE-2024-6914, poses a severe security threat to organizations...
RAGFlow, the open-source Retrieval-Augmented Generation (RAG) platform developed by Infiniflow, has been found vulnerable to a serious...
Despite widespread adoption of multi-factor authentication (MFA) as a critical safeguard against unauthorized access, cybercriminals are once...
GitLab has issued a security advisory urging users to upgrade their self-managed GitLab installations immediately. The advisory...
Volexity has identified a series of advanced social engineering operations by suspected Russian threat actors targeting Microsoft...