BackBox.org offers a range of Penetration Testing services to simulate an attack on your network or application. If you are interested in our services, please contact us and we will provide you with further information as well as an initial consultation.
Hackers Deploy Stealth Backdoor in WordPress Mu-Plugins to Maintain Admin Access
/in General NewsCybersecurity researchers have uncovered a new stealthy backdoor concealed within the “mu-plugins” directory in WordPress sites to grant threat actors persistent access and allow them to perform arbitrary actions.
Must-use plugins (aka mu-plugins) are special plugins that are automatically activated on all WordPress sites in the installation. They are located in the “wp-content/mu-plugins”
The Hacker News – Read More
Will AI think like humans? We’re not even close – and we’re asking the wrong question
/in General NewsThe holy grail of AI has long been to think and reason as humanly as possible. Large reasoning models, while not perfect, offer a tentative step in that direction.
Latest news – Read More
Fixed Ivanti Bugs Still Haunt Japan Orgs 6 Months Later
/in General NewsChinese threat actors have been feeding off the same Ivanti RCE vulnerabilities we’ve known about since last year, partly thanks to complications in patching.
darkreading – Read More
SecurityPal combines AI and experts in Nepal to speed enterprise security questionnaires by 87X or more
/in General NewsThe Kathmandu center of excellence gives SecurityPal a cost base low enough to keep humans in the loop while staying price-competitive.Read More
Security News | VentureBeat – Read More
Banking Trojan Coyote Abuses Windows UI Automation
/in General NewsIt’s the first known instance of malware that abuses the UIA framework and has enabled dozens of attacks against banks and crypto exchanges in Brazil.
darkreading – Read More
Microsoft Put Older Versions of SharePoint on Life Support. Hackers Are Taking Advantage
/in General NewsMultiple hacking groups—including state actors from China—have targeted a vulnerability in older, on-premises versions of the file-sharing tool after a flawed attempt to patch it.
Security Latest – Read More
Buy a MacBook or iPad for school, get a free pair of AirPods – here’s how
/in General NewsGet a free pair of AirPods or an eligible accessory when you buy an iPad, MacBook, or iMac from Apple — a perfect pair for your next school semester.
Latest news – Read More
AI’s not the only hot tech trend – check out the year’s other 11, according to McKinsey
/in General NewsAI, especially agents, are at the top of the list (unsurprisingly).
Latest news – Read More
Department of Education Site Mimicked in Phishing Scheme
/in General NewsAn ongoing phishing campaign is using fake versions of the department’s G5 grant portal, taking advantage of political turmoil associated with the DoE’s 1,400 layoffs.
darkreading – Read More
Uber finally launches feature to prioritize women’s safety
/in General NewsThanks to a new feature coming first to these three US cities, women riders can choose to be matched with women drivers – and vice versa.
Latest news – Read More