TerminalFix Uses Fake Cloudflare CAPTCHAs to Deploy Reverse-Tunnel Backdoor

A highly sophisticated cyber threat has been uncovered, targeting organizations across various industries with a cunning tactic that leverages fake Cloudflare CAPTCHAs to deploy a reverse-tunnel backdoor. Dubbed “TerminalFix,” this malware campaign has left security experts scratching their heads as they struggle to understand the extent of its reach. At its core, TerminalFix exploits vulnerabilities … Read more

YARA-X 1.20.0 Release, (Sun, Aug 30th)

A New Era for Threat Detection: YARA-X and YARA Updates Bring Significant Improvements The latest release of YARA-X, a powerful threat detection tool, has arrived with a slew of improvements and bug fixes. The new version, 1.20.0, brings 14 enhancements to the existing functionality, along with 13 critical bug fixes that address issues affecting users. … Read more

Five Critical WordPress Plugin and Theme Flaws Enable Site Takeover or RCE

A Critical WordPress Vulnerability Affects Thousands of Sites, Leaving Them Open to Takeover or Remote Code Execution In a shocking revelation, it’s been discovered that five critical vulnerabilities in popular WordPress plugins and themes have left thousands of websites vulnerable to takeover or remote code execution. These flaws, which affect some of the most widely … Read more

Brave browser adds email aliases to help users evade tracking

Brave Browser Takes Aim at Email Tracking with New Alias Feature The latest update to the Brave browser has introduced a game-changing feature that could significantly enhance user privacy online. The new “Email Aliases” function allows users to generate disposable email addresses when signing up for services, effectively shielding their real email address from website … Read more

Five Critical WordPress Plugin and Theme Flaws Enable Site Takeover or RCE

Cybersecurity experts have identified five critical flaws in popular WordPress plugins and themes that could potentially lead to site takeover or remote code execution (RCE). The vulnerabilities, which affect a significant number of websites, highlight the importance of regular security updates and plugin management. The affected plugins and themes, used by millions of WordPress users … Read more

ATF confirms cyberattack hit system containing info on its investigation targets

ATF Hit by Cyberattack on Investigation System, But Agency Insists Operations Remain Unaffected The Bureau of Alcohol, Tobacco, Firearms and Explosives (ATF) has confirmed that its systems were breached in a cyberattack, but insists that only one isolated system containing information about targets of ATF investigations was compromised. The attack is attributed to the Qilin … Read more

Brave browser adds email aliases to help users evade tracking

The latest version of the Brave browser introduces a game-changing feature that could significantly boost online privacy. The “Email Aliases” tool allows users to generate disposable email addresses when signing up for new services, shielding their real email address from website servers and potential hackers. This move is a direct response to the limitations of … Read more

ATF confirms cyberattack hit system containing info on its investigation targets

ATF Confirms Cyberattack on Investigation System, But No Widespread Impact The Bureau of Alcohol, Tobacco, Firearms and Explosives (ATF) has acknowledged a cyberattack on one of its computer systems, which contains sensitive information about targets of ongoing investigations. The attack is believed to have been carried out by the financially motivated ransomware group Qilin, although … Read more