Announcements

MA-1479.072026: MyCERT Advisory - Recent Ransomware Activities Observed: Best Practices for Prevention and Mitigation

  • 7th August 2026
On 26 July 2026, Malaysia’s national cybersecurity agency (MyCERT) released an advisory warning of increased recent ransomware activity observed targeting systems, including those used to run websites. Ransomware is a type of harmful software that locks or encrypts access to files and systems, demanding payment to restore access. If your website ...
Continue reading

CVE-2021-40438 (matched: apache http server)

  • 7th August 2026

A crafted request uri-path can cause mod_proxy to forward the request to an origin server choosen by the remote user. This issue affects Apache HTTP Server 2.4.48 and earlier.

Source: NVD (National Vulnerability Database) — https://nvd.nist.gov/vuln/detail/CVE-2021-40438

Continue reading

CVE-2026-17544 (matched: php)

  • 7th August 2026

Attacker-provided inputs to bccomp() could lead to an out-of-bounds write with stack and heap corruption in PHP versions from 8.4.* before 8.4.24 and from 8.5.* before 8.5.9.

Source: NVD (National Vulnerability Database) — https://nvd.nist.gov/vuln/detail/CVE-2026-17544

Continue reading

CVE-2026-17543 (matched: php)

  • 7th August 2026
A security flaw has been identified in specific versions of PHP, the software that powers most dynamic websites including content management systems, online stores, and custom web applications. The issue is caused by incorrect handling of backslash characters in data submitted by visitors to your site. This flaw makes a common type of cyberattack ...
Continue reading