Archive

Blog Archive

Older posts, still searchable. ← Back to recent posts

Filtering by tag: #web-security Showing 37 posts
Cybersecurity

700+ Websites Hijacked Through Ghost CMS Flaw — What Site Owners Need to Know Right Now

Attackers are exploiting a patched Ghost CMS SQL injection flaw to silently inject malicious JavaScript into hundreds of websites — including university sites — and use them to launch ClickFix malware attacks on unsuspecting visitors. Here's what Ghost CMS is, how to check if your site runs it, and exactly what to do.

Cybersecurity

Critical Ghost CMS Vulnerability Is Being Actively Exploited on 700+ Websites — What Site Owners and Visitors Need to Know

A patched Ghost CMS flaw (CVE-2026-26980) is being actively exploited to hijack hundreds of websites — including those linked to Harvard and Oxford — and turn them into malware delivery traps. Here's what site owners must do, and what everyday visitors should watch for.

Cybersecurity

Drupal CVE-2026-9082 Is Now on CISA's Watch List — 15,000 Attacks Already Detected and the Window to Patch Is Closing

A critical SQL injection flaw in Drupal Core is under active attack just 48 hours after patching. CISA added it to its Known Exploited Vulnerabilities catalog, and over 15,000 attacks have already been observed. If your website runs Drupal on PostgreSQL, here's what you need to know right now.

← Previous Page 2 of 4 Next →
Call Now