WooCommerce Sites Affected with XSS Bug

WooCommerce Sites Affected with XSS Bug

The plugin named “Variation Swatches for WooCommerce,” installed across 80K WordPress powered retail sites, has a stored cross-site scripting (XSS) security vulnerability that could allow attackers to inject malicious web…
AT&T Under Bot Attack

AT&T Under Bot Attack

Unpatched, old vulnerabilities in networking devices have allowed a noxious malware to infect thousands of AT&T customers in the U.S. The malware basically functions as a backdoor, one that could…
WRITE APT !

WRITE APT !

Researchers have detailed the activity of a threat actor named WIRTE that is targeting government, diplomatic entities, military organizations, law firms, and financial institutions in Middle East. The group is…

Apache SSRF bug Exploited

Threat actors are exploiting a recently addressed server-side request forgery (SSRF) vulnerability, tracked as CVE-2021-40438, in Apache HTTP servers. This flaw can be exploited against httpd web servers that have…
APT37 Unleashes Chinotto Malware

APT37 Unleashes Chinotto Malware

North Korean defectors, journalists, and entities in South Korea are being targeted in on by a nation state sponsored APT tracked as ScarCruft, also known as APT37 aka Reaper Group…
ZeroDay Vulnerability in TP-Link Router

ZeroDay Vulnerability in TP-Link Router

An active a zero day vulnerability in the TP-Link device with model number TL-XVR1800L, which is primarily suited to enterprises. The identified vulnerability enables Remote Code Execution which grants the…