Poisoned plugin allowed hackers to post spammy content on up to 200,000 WordPress websites

Poisoned plugin allowed hackers to post spammy content on up to 200,000 WordPress websites

As many as 200,000 websites may have been running a WordPress plugin that allowed third parties to publish any content they wished on victims’ sites via a backdoor. Watch out for supply chain attacks that could impact your website…

Read more in my article on the Tripwire State of Security blog.

Continue reading Poisoned plugin allowed hackers to post spammy content on up to 200,000 WordPress websites→

Smashing Security podcast #042: Equifax, BlueBorne, and the iPhone X

Equifax’s shambolic response to its huge data breach, a scary-sounding Bluetooth exploit, and Apple’s iPhone X comes with Face ID.
All this and more is discussed in the latest edition of the “Smashing Security” podcast by computer security veterans Gra… Continue reading Smashing Security podcast #042: Equifax, BlueBorne, and the iPhone X→

Microsoft strangles critical vulnerabilities, including in-the-wild zero-day flaw. Patch now!

Microsoft has once again released a batch of essential security updates for users of its software. What are you waiting for?
Read more in my article on the Hot for Security blog.
Continue reading Microsoft strangles critical vulnerabilities, including in-the-wild zero-day flaw. Patch now!→

Up to 44 million UK consumers may have had their identity put at risk after Equifax hack

And don’t imagine for a second that because you may have never heard of Equifax, or done no business with them, that you have somehow escaped from being affected by this breach.
Read more in my article on the Hot for Security blog.
Continue reading Up to 44 million UK consumers may have had their identity put at risk after Equifax hack→

Up to 44 million UK consumers may have had their identity put at risk after Equifax hack

And don’t imagine for a second that because you may have never heard of Equifax, or done no business with them, that you have somehow escaped from being affected by this breach.
Read more in my article on the Hot for Security blog.
Continue reading Up to 44 million UK consumers may have had their identity put at risk after Equifax hack→

62 days after discovering data leak, Equifax warns that 143 million US consumers could be at risk

Equifax has announced that it has been hacked, and approximately 143 million US consumers may have had their names, social security numbers, dates of birth, addresses accessed by criminals. In some instances, driver license numbers have also been acc… Continue reading 62 days after discovering data leak, Equifax warns that 143 million US consumers could be at risk→

How hackers could send secret commands to speech recognition systems with ultrasound

Chinese security researchers have discovered a way to send secret, inaudible commands to speech recognition systems such as Siri, Amazon Alexa or Google Home using ultrasound.
Read more in my article on the Tripwire State of Security blog.
Continue reading How hackers could send secret commands to speech recognition systems with ultrasound→