Latest security news
- PHP Webshell Campaign Targets WordPress Through Critical WooCommerce Plugin Bug
- CISA and NIST Issue Guidance to Protect Cloud Identity Tokens
- Parallels Desktop flaw hands any local user root on a Mac (CVE-2026-90894)
- Self-improving AI should slow down, von der Leyen tells EU lawmakers
- Cyber-Attacks Cost Organizations $52,000 on Average
- CenterPoint Energy confirms data breach following claims on hacking forum
- Zero-Day Flaw in TP-Link Cameras Enables Eavesdropping
- One runaway AI agent racked up a $50,000 cloud bill
- Acronis backup plugin flaw exploited in targeted attacks (CVE-2026-87886)
- Iranian hackers use CHOSEN BRICK data-stealing malware to spy on dissidents and journalists
- Major Cyber Vendors Turn to New UK Testing Program as MITRE Evaluations Face Changes
- NCSC and Allies Warn of Iranian Spyware Campaign
- Most Fraudulent Hires Receive Credentials Before Detection
- Most Firms Unable to Recover Quickly from Ransomware
- Black Axe Members Extradited to US Over Internet Fraud Claims
- AI the Top Priority for New Spend as Cyber Budgets Flatline
- Microsoft Releases Emergency Patch to Fix RDS Vulnerability
- Malicious Twitch Extension Exposes 31,000 Users' OAuth Tokens
- Human Attacker Hits Machine-Speed Exploitation of Marimo RCE
- Defense Cyber Spending Set to Surge Amid Rising Attacks on Military Systems
- Revolut Confirms Data Breach Through Fake Government Requests
Attackers are exploiting a critical flaw in a third-party WooCommerce plugin to upload PHP webshells
(C) Do-Know.com (http://do-know.com/). Do not copy without permission from info at do-know.com.