WordPress Core wp2shell RCE flaws get public exploits, patch now

WordPress Core “wp2shell” RCE flaws get public exploits, patch now

Public exploits have been released for the critical “wp2shell” remote code execution vulnerabilities affecting WordPress Core, making it imperative that administrators patch their sites immediately. The wp2shell attack consists of two flaws, tracked as CVE-2026-63030 and CVE-2026-60137, that can be chained together to achieve pre-authentication remote code execution against WordPress

Read More »

Telefónica Deutschland and Crout launch Resilient Connectivity Solution 

When monitoring cold chains, securing cash transports, transmitting vital data, or activating backup systems, the connection must never be interrupted. Telecommunications provider Telefónica Deutschland has gained a new partner for the Internet of Things in the German company Crout. Together, the companies are now launching the “2CoreSIM” on the market: an

Read More »
Microsoft warns of surge in ACR Stealer attacks on customers

Microsoft warns of surge in ACR Stealer attacks on customers

Microsoft has observed a surge in attacks using the ACR Stealer malware to steal browser-stored passwords, authentication tokens, and sensitive documents from its enterprise customers. Between late April and mid-June, the threat actor used the ClickFix social-engineering method, WebDAV servers, and the MSHTA (Microsoft HTML Application Host) utility to deliver

Read More »
The Future of Age Verification Your Face Never Leaves Your Device

The Future of Age Verification: Your Face Never Leaves Your Device

More than 30 age assurance laws are now in force worldwide. The UK is enforcing the Online Safety Act’s “highly effective” age check requirement, with restrictions on under-16 access to social media planned for spring 2027. Australia’s under-16 rules took effect in December, and the government has signaled its intent

Read More »
Zoom Patches Critical Windows Flaw That Could Enable Account Takeover

Zoom Patches Critical Windows Flaw That Could Enable Account Takeover

Zoom has released security updates for a critical security flaw impacting Zoom Workplace for Windows that could facilitate account takeover. The vulnerability, tracked as CVE-2026-53412 (CVSS score: 9.8), affects Zoom Desktop Client for Windows, Zoom VDI Client for Windows, and Zoom Meeting SDK for Windows. “Improper Input Validation in Zoom

Read More »