Attackers Exploit WooCommerce Wholesale Lead Capture Flaw to Plant PHP Web Shells

Threat actors are exploiting a critical security flaw in WooCommerce Wholesale Lead Capture, a premium WordPress plugin that has more than 6,000 active installs.

“This vulnerability can be leveraged by unauthenticated attackers to upload arbitrary fil… Continue reading Attackers Exploit WooCommerce Wholesale Lead Capture Flaw to Plant PHP Web Shells→

Posted in Uncategorized

Active Exploitation Attempts Target WSO2 API Manager JWT Bypass With Forged Admin Tokens

A critical security flaw in WSO2 API Manager has come under active exploitation in the wild, according to findings from watchTowr.

The vulnerability, tracked as CVE-2026-5430 (CVSS score: 9.8/10.0), is a case of improper verification of a cryptographi… Continue reading Active Exploitation Attempts Target WSO2 API Manager JWT Bypass With Forged Admin Tokens→

Posted in Uncategorized

KREMLIN Banking Malware Hijacks Chrome and Edge to Steal Credentials and Session Tokens

Cybersecurity researchers have shed light on a previously undocumented Brazilian banking malware operation that delivers a toolkit called KREMLIN.

Elastic Security Labs is tracking the activity under the moniker REF9334. Active since at least May 2025… Continue reading KREMLIN Banking Malware Hijacks Chrome and Edge to Steal Credentials and Session Tokens→

Posted in Uncategorized

Iranian Hackers Use Telegram-Controlled Malware to Spy on Dissidents and Journalists

Cybersecurity agencies in the United States, the United Kingdom, and the Netherlands have detailed a Windows malware that they say Iran’s intelligence service uses to spy on dissidents, journalists, and activists around the world.

The malware is contr… Continue reading Iranian Hackers Use Telegram-Controlled Malware to Spy on Dissidents and Journalists→

Posted in Uncategorized

Attack Chains, Not Just Attack Surfaces: Why Testing Individual Techniques Misses the Point

Introduction

Security teams have gotten pretty good at testing against what can hurt them. Can this EDR agent catch this payload? Will my organization fail the phishing simulation? Does this SIEM rule fire on this particular technique? And, in more ma… Continue reading Attack Chains, Not Just Attack Surfaces: Why Testing Individual Techniques Misses the Point→

Posted in Uncategorized

Mass-Scanning Campaign Exploits Vite Flaw to Extract Cloud Credentials From Exposed Dev Servers

Cybersecurity researchers have disclosed details of a mass-scanning campaign that has targeted Vite deployments siphon sensitive data.

The first is an automated effort aimed at internet-exposed Vite development servers that’s designed to steal cloud c… Continue reading Mass-Scanning Campaign Exploits Vite Flaw to Extract Cloud Credentials From Exposed Dev Servers→

Posted in Uncategorized

LiteSpeed Enterprise Flaw Could Let One Hosting Account Gain Root Access on a Shared Server

A critical vulnerability in LiteSpeed Web Server Enterprise could let a low-privilege website user gain root access on a shared-hosting server, cPanel warned in an advisory published on September 14.

On such servers, many customers’ sites run on … Continue reading LiteSpeed Enterprise Flaw Could Let One Hosting Account Gain Root Access on a Shared Server→

Posted in Uncategorized