On July 26, 2026, Malaysia’s national cybersecurity agency (MyCERT) issued an advisory warning of a recent rise in ransomware attacks targeting websites and online services.
Ransomware is a type of harmful software that locks access to your website, its stored files, or connected data, with attackers demanding payment to restore access. A ...
Continue reading
A security vulnerability, tracked as CVE-2026-16142, has been found in the TrueBooker plugin for WordPress, affecting all versions of the plugin up to and including 1.2.6. This flaw allows anyone to access your site, even without being logged in or having authorized access, to change the email address linked to any user account on your WordPress ...
Continue reading
A security flaw has been found in the User Profile Builder plugin for WordPress, impacting all versions up to and including 3.16.4. The issue is triggered when someone submits a user registration with a username between 61 and 70 characters long, due to a coding error in how the plugin processes these requests.This error allows unauthenticated ...
Continue reading
A security vulnerability has been identified in the User Session Synchronizer plugin for WordPress, affecting all versions of the plugin up to and including 1.4.0. The flawed code runs automatically on every page load of sites using the plugin, and fails to properly verify that incoming requests to the plugin's sync feature are legitimate.This gap ...
Continue reading