Malware on WordPress sites lets hackers run remote code
Researchers found malware targeting WordPress sites, using backdoors for remote code execution. The attacks exploit vulnerabilities, highlighting the need for better security. WordPress Vulnerabilities Attackers placed malicious scripts in the [...]
RansomHub Now Targets Windows, ESXi, Linux, and FreeBSD
RansomHub has rapidly emerged as a major cybercrime syndicate in 2024–2025, expanding its arsenal to target Windows, VMware ESXi, Linux, and FreeBSD in global attacks. The group employs advanced evasion [...]
Burp Suite 2025.2 Released with AI Integration
PortSwigger released Burp Suite 2025.2, adding AI integration to the Montoya API for smarter, AI-powered extensions. Bug Fixes and Browser Updates: A bug fix corrects the display of source IP [...]
Chinese APT Group Actively Exploiting New Windows UI 0-Day Vulnerability
ClearSky Cyber Security has identified a UI vulnerability in Microsoft Windows exploited by Mustang Panda, a threat actor linked to Chinese state interests. The flaw manipulates file visibility during RAR [...]
WordPress Plugin Flaw Allowed Hackers to Target 30,000 Websites
A subgroup of Russia’s state-backed hacker group Seashell Blizzard (Sandworm) has ramped up cyberattacks under a campaign called BadPilot. This long-running operation now targets critical infrastructure worldwide, expanding beyond Ukraine [...]