> TODAY'S SUMMARY (17 articles)
Today's cybersecurity landscape highlights several critical threats and trends. A newly disclosed vulnerability in WordPress (CVE-2026-87902) is being exploited by attackers, allowing remote code execution without authentication. Additionally, a concerning statistic reveals that 97% of ransomware victims had multi-factor authentication (MFA) enabled, suggesting the need to identify and address other security gaps. Meanwhile, the emergence of CLOSEDQUORUM malware, which utilizes AI models for decision-making, raises alarms about the sophistication of cyber threats. Europe is witnessing a rise in cybercrime targeting public services and technology providers, emphasizing the need for enhanced security measures. Finally, vulnerabilities in urllib3 and ImageMagick have been reported, indicating ongoing risks in commonly used software.
|
// AI-powered summary generated at 08:01
Report claims 94% of websites experienced an attack over a three-month period
World’s biggest money services firm admits flawed corporate culture
John Oliver may have written off 2016, but we’re darn proud of all that we accomplished and contributed this year. We released a slew of the security tools that help us -and you- work smarter, and promoted a few more that deserved recognition. We helped the New York City InfoSec community build a fo...
The new variant of the HummingBad malware has been found hiding in more than 20 apps on Google Play.
GCHQ director Robert Hannigan has resigned his position, citing personal reasons.
We’re back with our promised second installment discussing control flow integrity. This time, we will talk about Microsoft’s implementation of control flow integrity. As a reminder, control flow integrity, or CFI, is an exploit mitigation technique that prevents bugs from turning into exploits. For...
The number of people defrauded in the UK by online dating scams reached an all-time high in 2016
Insidiously, the location bar looks legit: accounts.google.com
Security giant forced to revoke more certs
Too many businesses still falling for whaling fraud, says lender
76% of organizations have been victims of a phishing attack this year.
UK government desperate to get more youngsters into the industry
Demands for government assurances on safeguards
Anyone with the camera’s IP address can exploit the system.
There were a total of 1,093 incidents in 2016, up from 780 in 2015.
69% of US consumers know that streaming or downloading pirated video content is illegal.
Majority of UK companies want improved collaboration among security vendors
Lender will force staff to use its own platforms
The code is unlike anything ever seen before.
Infamous cybercrime group hides in plain sight