Sat.Dec 12, 2020

article thumbnail

'MountLocker' Ransomware Adds to Affiliate Extortion Racket

Data Breach Today

Researchers: Latest Ransomware-As-A-Service Scheme First Appeared In July BlackBerry researchers are tracking a relatively new ransomware variant called "MountLocker. The operators behind it are using affiliate cybercriminal gangs to spread the malware, exfiltrate data and extort victims, sometimes for millions of dollars, according to a report.

article thumbnail

WordPress Easy WP SMTP zero-day potentially exposes hundreds of thousands of sites to hack

Security Affairs

Threat actors are actively exploiting a zero-day vulnerability in the popular Easy WP SMTP WordPress plugin installed on more than 500,000 sites. Hackers are actively exploiting a zero-day vulnerability in the popular Easy WP SMTP WordPress plugin to reset passwords for admin accounts. The SMTP WordPress plugin is installed on more than 500,000 sites, but despite the security patch has been released earlier this week many sites are yet to be patched.

Passwords 145
article thumbnail

NI CompactRIO controller flaw could allow disrupting production

Security Affairs

A serious flaw in National Instruments CompactRIO controllers could allow remote attackers to disrupt production processes in an organization. A high-severity vulnerability affecting CompactRIO controllers manufactured by the vendor National Instruments (NI) could allow remote attackers to disrupt production processes in an organization. The National Instruments CompactRIO product , a rugged, real-time controller that provides high-performance processing capabilities, sensor-specific conditioned