Skip to content
iSec News
  • News
  • Cybercrime
  • Risk
  • Policy
  • Privacy
  • Research
  • Cloud
  • Insurance
  • LinkedIn
  • Facebook
  • Malicious WordPress scripts in three popular plugins exposed more than 1.2 million sites

    News, Risk, Vendors, Vulnerabilities
    June 16, 2026

    Malicious JavaScript in WordPress plugins PushEngage, OptinMonster and TrustPulse exposed more than 1.2 million sites to possible takeover when a logged-in administrator loaded the script, according to a Sansec technical analysis.

    Malicious WordPress scripts in three popular plugins exposed more than 1.2 million sites

Latest NEWS

  • Sniper Dz campaign used fake Facebook offers to target MENA users

    June 16, 2026
    Sniper Dz campaign used fake Facebook offers to target MENA users

  • Palo Alto says PAN-OS flaw is under active exploitation

    June 15, 2026
    Palo Alto says PAN-OS flaw is under active exploitation

  • FBI, Google disrupt large AI-powered phishing service tied to millions of scam URLs

    June 15, 2026
    FBI, Google disrupt large AI-powered phishing service tied to millions of scam URLs

  • U.S. orders Anthropic to suspend foreign access to Fable 5 and Mythos 5 models

    June 15, 2026
    U.S. orders Anthropic to suspend foreign access to Fable 5 and Mythos 5 models

  • Kyushu Electric says missing drive exposed data of 10.9 million customers

    June 12, 2026
    Kyushu Electric says missing drive exposed data of 10.9 million customers

  • North Korea-linked campaign spreads across five open-source ecosystems

    Cybercrime, News, Research

    ·

    April 8, 2026
    North Korea-linked campaign spreads across five open-source ecosystems
  • US agencies warn of Iranian-linked attacks on internet-facing PLCs

    Cybercrime, News, Research, Risk

    ·

    April 8, 2026
    US agencies warn of Iranian-linked attacks on internet-facing PLCs
  • Hackers exploit critical Ninja Forms WordPress flaw, Wordfence says

    News, Risk, Vendors, Vulnerabilities

    ·

    April 8, 2026
    Hackers exploit critical Ninja Forms WordPress flaw, Wordfence says
  • Docker flaw lets attackers bypass authorization plugins in some setups

    Cloud, News, Research, Vulnerabilities

    ·

    April 8, 2026
    Docker flaw lets attackers bypass authorization plugins in some setups
  • APT28 linked to router hijacking campaign that affected 200 organizations

    News, Research, Risk, Vulnerabilities

    ·

    April 8, 2026
    APT28 linked to router hijacking campaign that affected 200 organizations
Loading…Load More
iSec News
  • LinkedIn
  • Facebook
  • About
  • Editorial Policy
  • Privacy
  • Contact