
Articles
-
2 days ago |
community.opentextcybersecurity.com | Ionut Arghire
Threat actors are exploiting a critical-severity vulnerability in Motors theme for WordPress to change arbitrary user passwords. June 20, 2025 By Ionut Arghire Mass exploitation of a critical-severity vulnerability in the Motors theme for WordPress started several weeks after public disclosure, WordPress security firm Defiant warns.
-
3 days ago |
securityweek.com | Ionut Arghire
A recent version of the Godfather Android trojan is deploying a sandbox on the infected devices to hijack banking and cryptocurrency applications, mobile security firm Zimperium warns. Active since at least June 2021 and believed to be based on leaked Anubis banking trojan code, Godfather is known for targeting hundreds of banking and cryptocurrency applications worldwide with web overlays.
-
3 days ago |
securityweek.com | Ionut Arghire
Mass exploitation of a critical-severity vulnerability in the Motors theme for WordPress started several weeks after public disclosure, WordPress security firm Defiant warns. The Motors theme is aimed at automotive dealership businesses, including car, motorcycle, boat, and car rental dealers, offering pre-built websites and templates, and support for listing, user and dealer management.
-
3 days ago |
securityweek.com | Ionut Arghire
Securonix has uncovered a malware distribution campaign that abuses Cloudflare Tunnel to host payloads on attacker-controlled subdomains. Dubbed Serpentine#Cloud, the campaign relies on a complex infection chain involving shortcut (LNK) files and obfuscated scripts to deliver a Python-based loader that can execute a Donut-packed PE payload in memory.
-
3 days ago |
securityweek.com | Ionut Arghire
Oxford City Council in the United Kingdom (UK) is notifying current and former employees that their personal information was likely compromised in a recent cyberattack. The incident, the council says, occurred over the weekend of June 7 and 8, when it detected suspicious activity within its network. “Our automated security systems kicked in, removed the presence and minimized the access the attackers had to our systems and databases,” the council said in an incident notice.
Try JournoFinder For Free
Search and contact over 1M+ journalist profiles, browse 100M+ articles, and unlock powerful PR tools.
Start Your 7-Day Free Trial →X (formerly Twitter)
- Followers
- 1K
- Tweets
- 14K
- DMs Open
- No
Extortion group hacks African telecom giant MTN https://t.co/2Tecz4dDwi
SecurityWeek's CISO Forum 2025 Outlook: Session 2 going live at 1PM ET today https://t.co/RfMlqG0Nm6
SecurityWeek's Cyber Insights 2025 series kicks off with Cyber Threat Intelligence https://t.co/WrdMw56eMP