Blog Archive

Older posts, still searchable. ← Back to recent posts

Filtering by tag: #web-security Showing 30 posts
Cybersecurity

700+ Websites Hijacked Through Ghost CMS Flaw — What Site Owners Need to Know Right Now

Attackers are exploiting a patched Ghost CMS SQL injection flaw to silently inject malicious JavaScript into hundreds of websites — including university sites — and use them to launch ClickFix malware attacks on unsuspecting visitors. Here's what Ghost CMS is, how to check if your site runs it, and exactly what to do.

Cybersecurity

Critical Ghost CMS Vulnerability Is Being Actively Exploited on 700+ Websites — What Site Owners and Visitors Need to Know

A patched Ghost CMS flaw (CVE-2026-26980) is being actively exploited to hijack hundreds of websites — including those linked to Harvard and Oxford — and turn them into malware delivery traps. Here's what site owners must do, and what everyday visitors should watch for.

Page 1 of 3 Next →