KEEP IN TOUCH
Subscribe to our mailing list to get free tips on Data Protection and Cybersecurity updates weekly!
Drupal Issues Emergency Fix For Critical Bug With Known Exploits Drupal has released emergency security updates to address a critical vulnerability with known exploits that could allow for arbitrary PHP code execution on some CMS versions. “According to the regular security release window schedule, November 25th would not typically be a core security window,” Drupal said.
MasterChef, Big Brother Producer Hit By DoppelPaymer Ransomware French multinational production and distribution firm Banijay Group SAS was hit earlier this month by a DoppelPaymer ransomware attack and had sensitive information stolen by the ransomware operators during the incident. Yesterday, Banijay publicly confirmed a cyber incident that led to employee and commercially sensitive data potentially
Phishing Lures Employees With Fake ‘Back To Work’ Internal Memos Scammers are trying to steal email credentials from employees by impersonating their organization’s human resources (HR) department in phishing emails camouflaged as internal ‘back to work’ company memos. These phishing messages have managed to land in thousands of targeted individuals’ mailboxes after bypassing G Suite email defenses according to
CBS Last.fm Fixes Admin Password Leakage Via Symfony Profiler This week, British music streaming service, Last.fm has fixed a credential leakage issue that revealed admin username and password. The leak had occurred due to a misconfigured PHP Symfony app running in “debug” mode and exposing profiler logs. With these credentials, an attacker could have accessed and modified Last.fm user account details. Last.fm web app