A critical WordPress Plugin Arbitrary File Upload Vulnerability has been discovered in the Security & Malware Scan by CleanTalk WordPress plugin, putting over 30,000 websites at risk. In 2024, over 4,400 vulnerabilities were reported in the WordPress ecosystem, with plugins accounting for approximately 97% of these security issues. The “Security & Malware Scan by CleanTalk” […]
The Microsoft device code phishing attack is a sophisticated cyber threat that manipulates the OAuth device authorization flow to bypass multi-factor authentication (MFA) and gain unauthorized access to Microsoft 365 accounts. According to recent cybersecurity reports, over 55% of phishing attacks in 2024 have targeted Microsoft 365 users, emphasizing the growing vulnerability of cloud-based authentication […]
The Cracked and Nulled forums, two of the world’s largest cybercrime platforms, have been dismantled in a sweeping international law enforcement operation. These forums, with millions of users, acted as underground marketplaces for stolen credentials, malware distribution, and hacking tools. The takedown, dubbed Operation Talent, was led by the U.S. Department of Justice (DOJ), the […]