Announcements

MA-1479.072026: MyCERT Advisory - Recent Ransomware Activities Observed: Best Practices for Prevention and Mitigation

  • 13th August 2026
A cybersecurity advisory published on 26 July 2026 notes that recent ransomware activity has been observed targeting websites and online hosting services. Ransomware is a type of malicious software that can lock access to your website files, hosting account, or stored data, with attackers demanding payment to restore access. A successful attack ...
Continue reading

CVE-2026-49261 (matched: mariadb)

  • 13th August 2026
A security flaw has been identified in MariaDB, a popular open-source database that many websites use to store content, user information, and other site data. If you are running one of the affected MariaDB versions (10.6.1 through 10.6.26, 10.11.1 through 10.11.17, 11.4.1 through 11.4.11, 11.8.1 through 11.8.7, or 12.3.1) and have the ...
Continue reading

CVE-2026-34184 (matched: php)

  • 13th August 2026
A security vulnerability has been identified in AlanWeb SCADA software. The flaw stems from the software not properly enforcing access authorization for certain system directories, leaving those folders unprotected.This gap allows unauthorized attackers to view every file stored in these unsecured directories, and even run some of the files ...
Continue reading

Metabase Metabase: Metabase SQL Injection Vulnerability

  • 13th August 2026
A security vulnerability has been identified in Metabase, a popular tool used to view and analyze data from connected databases. This flaw is a SQL injection issue, which means an attacker with no existing account or access to your Metabase instance can exploit it to gain full administrator control of your setup.If an attacker gains this admin ...
Continue reading