SECURITY

https://cdn.mos.cms.futurecdn.net/PxxKy74xA4GapoubYuoRtK-2560-80.jpg

TECH NEWS

Over 1 million WordPress sites at risk after popular plugin hacked — OptinMonster among those hit in CDN…

* Vulnerability in UpdraftPlus plugin on Awesome Motive’s marketing server enabled CDN compromise and malicious JavaScript injection * Malware targeted logged‑in WordPress admins, harvesting tokens and creating rogue accounts for full takeover * Site owners urged to check for fake admin accounts (‘developer_api1’, ‘dev_xxxxxx’), hidden backdoor plugins, and rotate

https://media.thenextweb.com/2026/06/cycognito-ai-pentesting-enterprise-attack-surfaces.avif

TECH NEWS

CyCognito pushes AI pentesting beyond vulnerability scans as enterprise attack surfaces evolve

The cybersecurity industry is confronting a new reality: traditional vulnerability management is no longer enough. As enterprises rapidly deploy AI-powered applications, autonomous agents, and large language model (LLM) infrastructure, security teams are discovering that many of the most dangerous exposures cannot be identified through conventional CVE-based scanning alone. Instead, organizations

https://cdn.mos.cms.futurecdn.net/EEXAxCUDKAq3frELz3rVYY-1920-80.jpg

TECH NEWS

Google says Chinese hackers cracked Workspace security to hit 'a diverse set of national, state, and private medical entities' including research and defense organizations

* Google GTIG exposes UNC6508, a PRC‑linked group exploiting REDCap servers with custom INFINITERED malware * Attackers stole credentials, exfiltrated sensitive data via manipulated compliance rules, and hid for over a year * Gmail accounts tied to campaign disabled; admins urged to enforce phishing‑resistant MFA, device‑bound sessions, and advanced protections