Hackers are leveraging a critical authentication bypass vulnerability in the WordPress plugin Burst Statistics to obtain admin-level access to websites. Burst Statistics is a privacy-focused […]
Google on Monday disclosed that it identified an unknown threat actor using a zero-day exploit that it said was likely developed with an artificial intelligence […]
Progress Software has released updates to address two security flaws in MOVEit Automation, including a critical bug that could result in an authentication bypass. MOVEit […]
Progress Software warned customers to patch a critical authentication bypass vulnerability in its MOVEit Automation enterprise-grade managed file transfer (MFT) application. MOVEit Automation automates complex […]
A critical vulnerability affecting all but the latest versions of cPanel and the WebHost Manager (WHM) dashboard could be exploited to obtain access to the […]
The Payouts King ransomware is using the QEMU emulator as a reverse SSH backdoor to run hidden virtual machines on compromised systems and bypass endpoint […]
A critical vulnerability in Nginx UI with Model Context Protocol (MCP) support is now being exploited in the wild for full server takeover without authentication. […]
The data leak at Figure compromised 967,200 email accounts without relying on any software flaws. Understanding the implications of this, and why typical MFA solutions […]
A critical flaw has been found in Docker Engine, potentially enabling attackers to bypass security authorization plugins (AuthZ) in certain situations. Identified as CVE-2026-34040 (CVSS […]
TP-Link has issued fixes for several security weaknesses in its Archer NX router products, including a critical one that could allow unauthorized individuals to bypass […]
© Bulletproof Servers. All rights reserved.