Malware Campaign Exploits Popup Builder WordPress Plugin to Infect 3,900+ Sites
Mar 12, 2024NewsroomWordPress / Website Security A new malware campaign is leveraging a high-severity security flaw in the Popup Builder plugin for WordPress to inject malicious JavaScript code. According to Sucuri, the campaign has infected more than 3,900 sites over the past three weeks. “These attacks are orchestrated from domains less than a month old, […]
Google’s Post-Quantum Upgrade Doesn’t Mean We’re All Protected Yet
Last year, the National Institute of Standards and Technology (NIST) began the process of standardizing the post-quantum cryptography (PQC) algorithms it selected — the final step before making these mathematical tools available so that organizations around the world can integrate them into their encryption infrastructure. Following this, the National Security Agency (NSA), Cybersecurity and Infrastructure […]
Patch Tuesday, March 2024 Edition – Krebs on Security
Apple and Microsoft recently released software updates to fix dozens of security holes in their operating systems. Microsoft today patched at least 60 vulnerabilities in its Windows OS. Meanwhile, Apple’s new macOS Sonoma addresses at least 68 security weaknesses, and its latest update for iOS fixes two zero-day flaws. Last week, Apple pushed out an […]
15,000+ Roku Accounts Compromised — Take These Steps to Protect Yourself
Hackers used one of the oldest tricks in the book to turn a buck. All at the expense of several thousand Roku users. Roku notified users that “certain individual Roku accounts” might have been accessed by someone other than their owners. The method of attack involved credential stuffing, where stolen passwords from one account are […]
A prescription for insights: Cisco Full-Stack Observability supercharges healthcare
More than a path to digitization or a mere advancement in monitoring, Cisco Full-Stack Observability solutions are a strategic asset that empower patient care and clinical outcomes via secure, performant, always-available digital experiences The healthcare ecosystem faces an entirely new environment than it did even just a few short years ago. Healthcare organizations are under […]
59 CVEs primed for Microsoft’s March Patch Tuesday – Sophos News
On Tuesday Microsoft released 59 CVEs, including 41 for Windows. A remarkable 20 other product groups or tools are also affected. Of the CVEs addressed, just two are considered Critical in severity by Microsoft, both in Windows (specifically, in Hyper-V). At patch time, none of the issues has been publicly disclosed, or is known to […]
Data of 27,000 people stolen in September ransomware attack
Stanford University says the personal information of 27,000 individuals was stolen in a ransomware attack impacting its Department of Public Safety (SUDPS) network. The university discovered the attack on September 27 and disclosed one month later that it was investigating a cybersecurity incident impacting SUDPS systems. In an update published on Monday, Stanford said the […]