X

Vous n'êtes pas connecté

Rubriques :

Maroc Maroc - ITSECURITYNEWS.INFO - A La Une - 28/Jun 08:09

Hackers Slip Backdoor into WordPress Plugins in Latest Supply-Chain Attack

  Security researchers announced on Monday that there had been a supply chain attack on up to 36,000 WordPress plugins running on a wide range of websites that had been backdoored by unknown hackers. Currently, researchers from security firm Wordfence…

Articles similaires

Sorry! Image not available at this time

Plugins on WordPress.org backdoored in supply chain attack

bleepingcomputer.com - 25/Jun 19:25

A threat actor modified the source code of at least five plugins hosted on WordPress.org to include malicious PHP scripts that create new accounts...

Sorry! Image not available at this time

Developer Accounts Compromised Due to Credential Reuse in WordPress.org Supply Chain Attack

itsecuritynews.info - 26/Jun 22:09

On June 24th, 2024, the Wordfence Threat Intelligence Team became aware of a WordPress plugin, Social Warfare, that was infected with malware through...

Sorry! Image not available at this time

Multiple WordPress Plugins Compromised: Hackers Create Rogue Admin Accounts

itsecuritynews.info - 25/Jun 04:08

Multiple WordPress plugins have been backdoored to inject malicious code that makes it possible to create rogue administrator accounts with the aim of...

Sorry! Image not available at this time

384,000 sites pull code from sketchy code library recently bought by Chinese firm

itsecuritynews.info - 09:02

Over 384,000 websites, including those of major companies and government entities, are still linking to the polyfill[.]io code library that was...

Sorry! Image not available at this time

Cloudflare: We never authorized polyfill.io to use our name

bleepingcomputer.com - 27/Jun 09:18

Cloudflare, a lead provider of content delivery network (CDN) services, cloud security, and DDoS protection has warned that it has not authorized...

Sorry! Image not available at this time

Polyfill.io, BootCDN, Bootcss, Staticfile attack traced to 1 operator

bleepingcomputer.com - 28/Jun 13:00

The recent large scale supply chain attack conducted via multiple CDNs, namely Polyfill.io, BootCDN, Bootcss, and Staticfile that affected up to tens...

Sorry! Image not available at this time

Millions of Apple Applications Were Vulnerable to CocoaPods Supply Chain Attack

itsecuritynews.info - 03/Jul 15:05

The vulnerabilities have since been patched, but had quietly persisted since the CocoaPods migration in 2014. This article has been indexed from...

Sorry! Image not available at this time

Military-themed Email Scam Spreads Malware to Infect Pakistani Users

itsecuritynews.info - 21/Jun 14:08

Cybersecurity researchers have shed light on a new phishing campaign that has been identified as targeting people in Pakistan using a custom backdoor....

Sorry! Image not available at this time

Building Resilience in the Chip Supply Chain

itsecuritynews.info - 02/Jul 12:32

To bolster digital security and resilience across the semiconductor supply chain, a critical first step is that organizations across the supply chain...

Sorry! Image not available at this time

ExCobalt Cybercrime group targets Russian organizations in multiple sectors

securityaffairs.co - 24/Jun 07:36

The cybercrime group ExCobalt targeted Russian organizations in multiple sectors with a previously unknown backdoor known as GoRed. Positive...