Skip to content
iSec News
  • News
  • Cybercrime
  • Risk
  • Policy
  • Privacy
  • Research
  • Cloud
  • Insurance
  • LinkedIn
  • Facebook
  • Malicious WordPress scripts in three popular plugins exposed more than 1.2 million sites

    News, Risk, Vendors, Vulnerabilities
    June 16, 2026

    Malicious JavaScript in WordPress plugins PushEngage, OptinMonster and TrustPulse exposed more than 1.2 million sites to possible takeover when a logged-in administrator loaded the script, according to a Sansec technical analysis.

    Malicious WordPress scripts in three popular plugins exposed more than 1.2 million sites

Latest NEWS

  • Sniper Dz campaign used fake Facebook offers to target MENA users

    June 16, 2026
    Sniper Dz campaign used fake Facebook offers to target MENA users

  • Palo Alto says PAN-OS flaw is under active exploitation

    June 15, 2026
    Palo Alto says PAN-OS flaw is under active exploitation

  • FBI, Google disrupt large AI-powered phishing service tied to millions of scam URLs

    June 15, 2026
    FBI, Google disrupt large AI-powered phishing service tied to millions of scam URLs

  • U.S. orders Anthropic to suspend foreign access to Fable 5 and Mythos 5 models

    June 15, 2026
    U.S. orders Anthropic to suspend foreign access to Fable 5 and Mythos 5 models

  • Kyushu Electric says missing drive exposed data of 10.9 million customers

    June 12, 2026
    Kyushu Electric says missing drive exposed data of 10.9 million customers

  • Over 1,000 exposed ComfyUI instances targeted in crypto mining botnet campaign

    Cloud, Cybercrime, News, Research, Risk

    ·

    April 8, 2026
    Over 1,000 exposed ComfyUI instances targeted in crypto mining botnet campaign
  • Grafana AI flaw could expose enterprise data in zero-click attack

    News, Research, Risk, Vulnerabilities

    ·

    April 7, 2026
    Grafana AI flaw could expose enterprise data in zero-click attack
  • GPUBreach attack can turn GPU Rowhammer bit flips into system takeover

    Research, Risk, Vendors, Vulnerabilities

    ·

    April 7, 2026
    GPUBreach attack can turn GPU Rowhammer bit flips into system takeover
  • Flowise flaw under active exploitation after critical code injection report

    News, Research, Risk, Vulnerabilities

    ·

    April 7, 2026
    Flowise flaw under active exploitation after critical code injection report
  • Iran-Linked Password-Spraying Campaign Hits Microsoft 365 Accounts in Middle East

    Cloud, Cybercrime, News, Research, Risk

    ·

    April 7, 2026
    Iran-Linked Password-Spraying Campaign Hits Microsoft 365 Accounts in Middle East
Loading…Load More
iSec News
  • LinkedIn
  • Facebook
  • About
  • Editorial Policy
  • Privacy
  • Contact