Announcements

MA-1479.072026: MyCERT Advisory - Recent Ransomware Activities Observed: Best Practices for Prevention and Mitigation

  • 9th August 2026
A cybersecurity advisory was released on 26 July 2026 by Malaysia’s national cybersecurity agency (MyCERT), confirming that recent ransomware attack activity has been observed targeting systems, including web hosting environments and the websites hosted on them.Ransomware is a type of malicious software that can lock or encrypt access to your ...
Continue reading

CVE-2021-40438 (matched: apache http server)

  • 8th August 2026

A crafted request uri-path can cause mod_proxy to forward the request to an origin server choosen by the remote user. This issue affects Apache HTTP Server 2.4.48 and earlier.

Source: NVD (National Vulnerability Database) — https://nvd.nist.gov/vuln/detail/CVE-2021-40438

Continue reading

CVE-2026-14526 (matched: wordpress)

  • 8th August 2026
A security vulnerability has been identified in the AI Copilot – Content Generator plugin for WordPress, impacting all versions up to and including 1.5.6. The plugin does not properly confirm that a user is authorized to carry out sensitive actions on your website.If your site displays the plugin's [aiwu-form] shortcode or public chatbot on any ...
Continue reading

JetBrains TeamCity: JetBrains TeamCity Deserialization of Untrusted Data Vulnerability

  • 8th August 2026
A security flaw has been found in JetBrains TeamCity, a tool many development teams use to manage website and software build, test, and deployment workflows. The issue stems from the way the tool processes untrusted data as part of its regular check-in process with connected worker systems, known as the agent polling protocol.This vulnerability ...
Continue reading