Announcements

MA-1479.072026: MyCERT Advisory - Recent Ransomware Activities Observed: Best Practices for Prevention and Mitigation

  • 4th August 2026
On 26 July 2026, Malaysia’s national cybersecurity agency MyCERT released an advisory noting that recent increased ransomware activity has been observed.Ransomware is a type of malicious software that can lock up your website files, access to your hosting account, or stored business and customer data, and typically demands payment to restore ...
Continue reading

CVE-2021-40438 (matched: apache http server)

  • 3rd August 2026
A security flaw has been identified in the Apache HTTP Server software used by many web hosting platforms. The issue affects the server's built-in tool for forwarding web requests to backend servers: a specially crafted web request can trick this tool into sending traffic to a server selected by the person sending the request, rather than the ...
Continue reading

CVE-2026-44170 (matched: mariadb)

  • 3rd August 2026
A security vulnerability, tracked as CVE-2026-44170, has been found in MariaDB, a common open-source database tool many websites use to store content, user accounts, and other site information. This issue only affects MariaDB running on Windows servers that have the CONNECT engine installed and have REST support turned on. If your MariaDB setup ...
Continue reading

CVE-2026-49261 (matched: mariadb)

  • 3rd August 2026
MariaDB server is a community developed fork of MySQL server. Versions 10.6.1 through 10.6.26, 10.11.1 through 10.11.17, 11.4.1 through 11.4.11, 11.8.1 through 11.8.7, and 12.3.1 with `wsrep_notify_cmd` enabled would execute shell commands embedded in the name of the joiner node. This is fixed in 10.6.27, 10.11.18, 11.4.12, 11.8.8, and 12.3.2. As ...
Continue reading