Announcements

MA-1479.072026: MyCERT Advisory - Recent Ransomware Activities Observed: Best Practices for Prevention and Mitigation

  • 7th August 2026
On July 26, 2026, Malaysia’s national cybersecurity agency MyCERT released an advisory noting a recent rise in observed ransomware attacks targeting online systems, including websites. Ransomware is a type of harmful software that can lock up your website files, databases, or connected systems, with attackers demanding payment to restore access. ...
Continue reading

CVE-2021-40438 (matched: apache http server)

  • 7th August 2026
A security flaw has been identified in Apache HTTP Server, the popular open-source web server software used to run many websites. The flaw impacts the server's proxy routing feature, which is designed to send incoming visitor requests to the correct backend server that hosts your site's content.An attacker can send a specially crafted web request ...
Continue reading

IBM Langflow: IBM Langflow Code Injection Vulnerability

  • 7th August 2026
A security vulnerability has been found in IBM Langflow, a service some of our hosting clients may run on their accounts. This is a code injection flaw, a type of security weakness that lets unauthorized people run their own custom code on an affected system.This specific issue lets unauthenticated attackers—people who don’t even need a valid ...
Continue reading

Apache Tomcat: Apache Tomcat Missing Encryption of Sensitive Data Vulnerability

  • 7th August 2026
A security flaw has been found in Apache Tomcat, a common tool used to run many websites and web apps. The issue means sensitive data handled by the software is not encrypted as it should be, which lets attackers get around a built-in security feature called EncryptInterceptor that is designed to keep that data safe.This flaw can be combined with ...
Continue reading