WEEKLY CYBERSECURITY NEWSLETTER NO: 261
#Weekly Cybersecurity Tip: Make sure users are trained to recognize phishing attacks!
Apr 03, 2023 12:00 pm
1- Synopsys discover new vulnerability in Pluck Content Management System
Software security company Synopsys have discovered a new remote code execution vulnerability (RCE) in the Pluck CMS system. Pluck is a content management system (CMS) implemented in PHP designed for setting up and managing your own website. Devised with ease of use and simplicity in mind, Pluck is b...
Read More2- GUEST ESSAY: Scammers leverage social media, clever con games to carry out digital exploitation
One common misconception is that scammers usually possess a strong command of computer science and IT knowledge. Related: How Google, Facebook enable snooping In fact, a majority of scams occur through social engineering. The rise of social media has added to the many user-friendly digital tools sca...
Read More3- Windows 11 also vulnerable to “aCropalypse” image data leakage
Just yesterday, we wrote about a bug in Google Pixel phones, apparently now patched, with potentially dangerous consequences. The bug finders, understandably excited (and concerned) by what they’d found, decided to follow the BWAIN principle for maximum, turning it into a Bug With An Impressive Name...
Read More4- The Security Vulnerabilities of Message Interoperability
Jenny Blessing and Ross Anderson have evaluated the security of systems designed to allow the various Internet messaging platforms to interoperate with each other: The Digital Markets Act ruled that users on different platforms should be able to exchange messages with each other. This opens up a rea...
Read More