Funnel Builder Plugin Exploited To Steal Credit Cards
Critical Funnel Builder plugin flaw actively exploited to inject card-stealing malware into WordPress checkout pages. 400K+ sites at risk. Patch immediately.
Critical Funnel Builder plugin flaw actively exploited to inject card-stealing malware into WordPress checkout pages. 400K+ sites at risk. Patch immediately.
arXiv cracks down hard: Submit AI-generated hallucinations and face a permanent ban. Academic integrity just got its biggest enforcement upgrade yet.
CISA adds Microsoft Exchange Server XSS vulnerability to KEV Catalog amid active exploitation. Federal agencies have a deadline—but all orgs should patch now.
Russian state hackers Turla transformed their Kazuar backdoor into a stealthy P2P botnet for persistent access. FSB-linked group ups their game with modular malware.
Hackers weaponize PyInstaller to smuggle XWorm RAT past Windows defenses. AMSI patching lets them steal data and hijack devices undetected.
Gunra ransomware evolved from Conti roots into a full-scale RaaS operation, hitting dozens of orgs globally in under a year with leak sites and affiliate programs
One million WordPress sites at risk: Avada Builder flaws let hackers steal credentials and database secrets. Patch now or face a data breach nightmare.
SpaceX’s upgraded Starship launches first test flight May 19. New capabilities could reshape space infrastructure—and expand the attack surface cybersecurity pros must defend.
Hackers are weaponizing Microsoft’s OAuth device flow to steal M365 credentials at scale. This little-known attack vector has exploded since late 2024.
Critical CVE-2026-20182 hits Cisco SD-WAN with CVSS 10.0 rating. Unauthenticated attackers can gain full admin access remotely. Active exploitation confirmed.