Of all the security flaws discovered in the WordPress ecosystem, cross-site scripting (XSS) vulnerabilities accounted for about 53.3% of the total. As of last year, XSS accounted for 27% of …
Microsoft Unveils Copilot First-ever AI Security Product for General Use
Microsoft has officially launched Copilot for Security, marking the advent of the first generative AI security product designed for widespread application. This innovative tool empowers security and IT teams, enabling …
Phishing-as-a-Service Platform Launched 20,000 Phishing Domains To Attack 100+ Countries
The cybersecurity landscape faces a new threat with the emergence of ‘darcula,’ a Phishing-as-a-Service (PhaaS) platform. This sophisticated service enables cybercriminals to launch phishing campaigns across over 20,000 domains, using …
Octopus Server Flaw Let Attackers Escalate Privilege
Octopus Server, a popular automation tool for deployment, operations runbooks, and development tasks, has identified a critical security flaw. The vulnerability tracked as CVE-2024-2975 could allow attackers to escalate privileges …
xz-utils Backdoor Found in Kali Linux Installations – Check for Malware Infection
A backdoor was recently discovered in the xz-utils package versions 5.6.0 to 5.6.1, shocking the Linux community. This poses a significant threat to the security of Linux distributions, including Kali …
OWASP Data Breach Due to Wiki Web Server Misconfiguration
The Open Web Application Security Project (OWASP) Foundation disclosed a significant data breach. The breach, which was discovered in late February 2024, was caused by a misconfiguration of the foundation’s …
Hackers Exploit Google Ads Tracking Feature To Deliver Malware
Google Ads is a big platform with a wide user base, which makes it attractive to threat actors who want to reach many targets at once. These malicious ads can …
Vultur Android Malware mimic As McAfee Security App To Attacks Users
Vultur, Android banking malware, has been observed incorporating new technical features, which allow the malware operator to remotely communicate with the victim’s mobile device. Additionally, Vultur has begun disguising more …
Gmail Turns 20! Evolves Constantly with Security Rules
As Gmail celebrates its 20th anniversary, it’s an opportune moment to reflect on its journey from a simple email service to a cornerstone of digital communication, emphasizing its evolution, security …
Linux Kernel Flaw Let Attackers Gain Full Root Access: PoC Published
Security researchers have uncovered a critical vulnerability in the Linux kernel’s io_uring subsystem, which could allow attackers to gain full root access to affected systems. The flaw, tracked as CVE-2024-0582, was found …



