CISA: Top Exploited Vulnerabilities 2021

CISA: Top Exploited Vulnerabilities 2021

CISA has published the list of 2021’s top 15 most exploited software vulnerabilities. This joint Cybersecurity Advisory (CSA) was co-authored by cybersecurity agencies of the United States, Australia, Canada, New…
DDoS hits Ukraine Exploiting WordPress Bug

DDoS hits Ukraine Exploiting WordPress Bug

Cybercriminals have injected malicious scripts into compromised WordPress websites that weaponize the browsers of unsuspecting visitors to conduct DDoS attacks on Ukrainian targets. Security researchers identified a compromised WordPress website…
RocketKitten Exploits VMWare RCE

RocketKitten Exploits VMWare RCE

An espionage group from Iran, tracked as Rocket Kitten has begun exploiting a recently patched critical vulnerability in VMware Workspace ONE Access/Identity Manager technology to deliver the Core Impact penetration…
Magento Zero Day patch Bypassed

Magento Zero Day patch Bypassed

Adobe has announced new patches for the Commerce and Magento e-commerce platforms after researchers discovered that a fix for an actively exploited zero-day can be bypassed. Adobe informed Commerce and…
Log4j Update ! Even 2.17 is Exploitable

Log4j Update ! Even 2.17 is Exploitable

Another security vulnerability impacting the Log4j logging library was published as CVE-2021-44832. This new security vulnerability is affecting versions up to 2.17.0, which was previously thought to be fixed. This vulnerability is…