Remove 2023 Remove Backups Remove Penetration Testing
article thumbnail

Backup Migration Plugin Breach: Hackers Target WordPress Sites (Public PoC)

Penetration Testing

Hackers are attempting to exploit a recently patched critical vulnerability (CVE-2023-6553) in the WordPress Backup Migration plugin that leads to remote code execution, in attacks that rely on publicly available proof-of-concept (PoC) exploit code....

Backups 92
article thumbnail

Acronis Backup Plugins Hit by CVE-2024-8767: CVSS 9.9 Severity Alert

Penetration Testing

In a recent advisory published on September 16th, data protection powerhouse Acronis disclosed a critical security vulnerability in its popular backup plugins for server management platforms like cPanel, Plesk, and... The post Acronis Backup Plugins Hit by CVE-2024-8767: CVSS 9.9

Backups 100
Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

Cloud Atlas seen using a new tool in its attacks

SecureList

The keb.ps1 script belongs to the popular PowerSploit framework for penetration testing and kicks off a Kerberoasting attack. In a new campaign that began in August 2023, the attackers made changes to their familiar toolkit. Isolated attacks were recorded in Belarus, Canada, Moldova, Israel, Kyrgyzstan, Vietnam and Turkey.

article thumbnail

CVE-2023-6750: Critical WordPress Plugin Vulnerability Puts 90,000 Sites at Risk

Penetration Testing

Fortunately, plugins like WP Clone offer a valuable line of defense, streamlining backups and migrations. But what if the tool... The post CVE-2023-6750: Critical WordPress Plugin Vulnerability Puts 90,000 Sites at Risk appeared first on Penetration Testing.

article thumbnail

CVE-2023-6553 – Critical WordPress Plugin Flaw: 90,000 Websites at Risk of Takeover

Penetration Testing

This vulnerability, known as CVE-2023-6553, impacts the Backup Migration plugin used by over 90,000 websites.... ... The post CVE-2023-6553 – Critical WordPress Plugin Flaw: 90,000 Websites at Risk of Takeover appeared first on Penetration Testing.

article thumbnail

EstateRansomware Exploits Veeam Vulnerability (CVE-2023-27532) in Sophisticated Attack

Penetration Testing

A recently disclosed vulnerability in Veeam Backup & Replication software has culminated in a significant ransomware incident.

Backups 54
article thumbnail

State of ransomware in 2024

SecureList

Ransomware landscape: rise in targeted groups and attacks Kaspersky collected data on targeted ransomware groups and their attacks from multiple relevant public sources, for the years 2022 and 2023, filtered and validated it. In the graph below, you can see the ransomware families that were most active in 2023.