CYBER Threat Intelligence Reports
LATEST CTIs
CVE-2024-10542 & CVE-2024-10781: Anti-Spam by CleanTalk Plugin Vulnerabilities
CVE-2024-10542 & CVE-2024-10781: Critical vulnerabilities in the Anti-Spam by CleanTalk plugin expose over 200,000 WordPress sites to remote code execution and unauthorized access—urgent updates required.
Read more >

Chinese Hackers Actively Exploiting Unpatched Fortinet VPN Vulnerability
Security researchers have identified a Chinese state-sponsored threat group, dubbed "BrazenBamboo," actively exploiting an unpatched zero-day vulnerability in Fortinet's FortiClient Windows VPN client. The vulnerability…
Read more >

Multiple High-Risk Vulnerabilities in Ivanti Endpoint Manager Affecting All Versions Before November 2024 Security Update
Ivanti has disclosed a total of 18 new vulnerabilities in its Endpoint Manager software, which affect all versions of the software prior to the November…
Read more >

Authentication Bypass in Really Simple Security Plugin (CVE-2024-10924)
Critical authentication bypass in Really Simple Security plugin (CVE-2024-10924) allows admin account takeover via REST API; update to version 9.1.2 immediately to prevent exploitation.
Read more >

Sophisticated PHP Reinfector Malware Targets WordPress Sites
Advanced PHP reinfector malware targets WordPress via Houzez theme flaws (CVE-2024-22303, CVE-2024-21743), stealing credentials and embedding persistent backdoors; patch and secure immediately to mitigate threats.
Read more >

Newly Identified Exploited Vulnerabilities in Palo Alto Networks Expedition
Critical vulnerabilities in Palo Alto Networks Expedition (CVE-2024-9463 & CVE-2024-9465) enable command injection and data theft; update to version 1.2.96 immediately to mitigate active exploitation…
Read more >

