> TODAY'S SUMMARY (17 articles)
Today's cybersecurity landscape highlights several critical threats and trends. A newly disclosed vulnerability in WordPress (CVE-2026-87902) is being exploited by attackers, allowing remote code execution without authentication. Additionally, a concerning statistic reveals that 97% of ransomware victims had multi-factor authentication (MFA) enabled, suggesting the need to identify and address other security gaps. Meanwhile, the emergence of CLOSEDQUORUM malware, which utilizes AI models for decision-making, raises alarms about the sophistication of cyber threats. Europe is witnessing a rise in cybercrime targeting public services and technology providers, emphasizing the need for enhanced security measures. Finally, vulnerabilities in urllib3 and ImageMagick have been reported, indicating ongoing risks in commonly used software.
|
// AI-powered summary generated at 08:01
Pay up and get your files back for half price
Users complain deals site is dragging its heels as incidents mount
I think you’ll agree when I say: there’s no VPN option on the market designed with equal emphasis on security and ease of use. That changes now. Today we’re introducing Algo, a self-hosted personal VPN server designed for ease of deployment and security. Algo automatically deploys an on-demand VPN s...
Hailstorm campaigns are sent out in very high volume over a short time span.
More than 50% of the 48 largest retailers may have failed to meet the PCI DSS requirements.
Respondents cited maintaining security policies and practices, and complexity due to cloud and mobile applications.
Rapid7 will now be able to assign CVE numbers to vulnerabilities found in Rapid7’s and any other vendors’ products.
Veracode study reveals areas for improvement
Warning to firms understaffed this festive season
93% of organizations are using MFA in some capacity.
Funds normally used to buy jet fuel were fraudulently removed via electronic transfer to a Chinese bank.
Reports claim 300,000 customers were affected
Millions are contacted but few are thought to be affected
Romanians captured after eight-year investigation, says Symantec
Credentials to computers at the US Election Assistance Commission sold on Dark Web, while spies say Putin directed election hacks.
Ciaran Martin argues hackers may be inspired by US election debacle
Compliance efforts stalling as final 18 months approaches
ThreatConnect warns of Russian attempts to pass efforts off as lone hacktivism
Tordow can make phone calls, control SMS messages, download and install programs, steal login credentials, encrypt files...
Attackers are increasingly using non-malware attacks in an attempt to remain undetected and persistent in organizations’ networks.