Attackers pummel critical WordPress vuln to create all sorts of mischief
This article covers a range of cybersecurity and technology news, including a vulnerability exploited to create mischief, a Russian phishing campaign mimicking Signal support, and a significant acquisition in the cybersecurity space. It also touches on ongoing efforts to combat ransomware and advancements in display server technology.
This article presents a diverse collection of cybersecurity and technology updates. A critical WordPress vulnerability is being actively exploited by attackers to carry out various malicious activities. Simultaneously, Russian threat actors are impersonating Signal support to conduct phishing attacks, targeting users to steal sensitive information. Furthermore, a major acquisition occurred as cybersecurity firm EQT purchased a majority stake in Swiss cybersecurity company Acronis, representing a valuation of over $3.5 billion. The article also highlights the ongoing battle against ransomware, with Mikko Hyppönen noting that the threat persists after a decade. Finally, a vulnerability in Joomla extensions, specifically iCagenda and Balbooa Forms, is being leveraged to compromise open-source CMS powering a million websites.