Aggregator
CVE-2024-43921 | Magic Post Thumbnail Plugin up to 5.2.9 on WordPress cross site scripting
CVE-2024-43947 | Dinesh Karki WP Armour Extended Plugin up to 1.26 on WordPress cross-site request forgery
CVE-2024-3998 | Betheme Theme up to 27.5.6 on WordPress Shortcode cross site scripting
CVE-2024-5061 | Enfold Plugin up to 6.0.3 on WordPress wrapper_class/class cross site scripting
Blind Eagle Targets Colombian Government with Malicious .url Files
Silk Typhoon Hackers Indicted
Lots of interesting details in the story:
The US Department of Justice on Wednesday announced the indictment of 12 Chinese individuals accused of more than a decade of hacker intrusions around the world, including eight staffers for the contractor i-Soon, two officials at China’s Ministry of Public Security who allegedly worked with them, and two other alleged hackers who are said to be part of the Chinese hacker group APT27, or Silk Typhoon, which prosecutors say was involved in the US Treasury breach late last year.
[…]
According to prosecutors, the group as a whole has targeted US state and federal agencies, foreign ministries of countries across Asia, Chinese dissidents, US-based media outlets that have criticized the Chinese government, and most recently the US Treasury, which was breached between September and December of last year. An internal Treasury report ...
The post Silk Typhoon Hackers Indicted appeared first on Security Boulevard.
Fortinet security advisory (AV25-129)
Randall Munroe’s XKCD ‘Tall Structures’
via the comic humor & dry wit of Randall Munroe, creator of XKCD
The post Randall Munroe’s XKCD ‘Tall Structures’ appeared first on Security Boulevard.