F5 Patches Critical Vulnerabilities

F5 Patches Critical Vulnerabilities

F5 patches nearly 25 vulnerabilities affecting its BIG-IP, BIG-IQ, and NGINX products. Total of 23 security flaws were addressed in the BIG-IP application delivery controller (ADC), including 13 high-severity issues,…
WordPress Ideal Bug found in multiple plugins

WordPress Ideal Bug found in multiple plugins

Researchers have discovered three WordPress plug-ins with the same vulnerability that allows an attacker to update arbitrary site options on a vulnerable site and completely take it over. Exploiting the flaw does…
Cisco Fixes Critical Vulnerability in CCMP

Cisco Fixes Critical Vulnerability in CCMP

Cisco patches for a critical vulnerability in Unified Contact Center Management Portal (Unified CCMP) and Unified Contact Center Domain Manager (Unified CCDM) that could be exploited remotely to elevate privileges…
Purple Fox Spreads via Fake Telegram App

Purple Fox Spreads via Fake Telegram App

Threat actors are using weaponized installers of the Telegram messaging application to deliver the Purple Fox backdoor on Windows systems. Researchers pointed out that this campaign, unlike similar ones leveraging legitimate software…
Vulnerabilities Found in NetGear NightHawk

Vulnerabilities Found in NetGear NightHawk

Researchers have discovered multiple vulnerabilities in the latest firmware version (version 1.0.4.120) of the popular Netgear Nighthawk R6700v3 WiFi router. An attacker can trigger the vulnerabilities to take full control…
Aquatic Panda Exploits With Log4j

Aquatic Panda Exploits With Log4j

Cyberespionage group Aquatic Panda linked with china was spotted exploiting the  Log4Shell vulnerability (CVE 2021-44228) in an attack aimed at a large academic institution. The APT group is using a…