Website profile

Esecurity Planet

eSecurity Planet provides the latest cybersecurity news, trends, and software reviews for IT leaders. Browse our buyer's guides and analysis now.

  • 263articles · 365d
  • 3+ day agolatest article
  • Jan 7, 2026earliest in window
  • 89%with images
  • 367avg words
articles per day
Categories
  • Science & Technology 206
  • News 160
  • Software 151
  • Science & Nature 46
  • Crime & Law 45
  • Computers & Electronics 44
  • Conflict, War & Peace 43
  • Internet & Telecom 28

Please confirm you are human

This browser or connection looks automated. Press and continuously hold the control for 3 seconds to enable Google-hosted web results and, when separately allowed, AI-assisted answers.

A successful check enables 100 search requests. Interactive access does not authorize scraping, systematic collection, or reuse of search output.

Hold with a pointer, or hold Space or Enter.

News

eSecurity Planet
esecurityplanet.com > threats > news-google-phishing-credential-theft-screenconnect

Hackers Abuse Google Links to Hide Credential Theft

3+ day, 23+ hour ago   (532+ words) KnowBe4 found hackers abusing trusted Google services to hide phishing pages that steal Microsoft credentials and enable persistent ScreenConnect remote access. A familiar Google address in a suspicious email may be exactly what attackers want you to trust. KnowBe4 Threat Lab uncovered…...

eSecurity Planet
esecurityplanet.com > threats > news-adobe-commerce-cve-2026-75650-stylesmuggler

CVE-2026-75650 Adobe Commerce Zero-Day: Patch Isn't Enough

4+ day, 6+ hour ago   (897+ words) Adobe patched the actively exploited CVE-2026-75650 Magento zero-day, but compromised stores still need malware hunting and broad credential rotation. Adobe has patched CVE-2026-75650, a critical Adobe Commerce and Magento Open Source vulnerability that attackers were exploiting before a fix was…...

eSecurity Planet
esecurityplanet.com > artificial-intelligence > news-ai-wechat-worm-billion-accounts-apac-china

AI-Assisted WeChat Worm Risks 1 Billion Accounts

4+ day, 11+ hour ago   (610+ words) Researchers used AI to build WeWorm, a zero-click WeChat exploit that could hijack accounts through unanswered calls before Tencent mitigated the flaw. Security company Calif said it created a proof-of-concept worm that could hijack WeChat accounts on iPhones and Android…...

eSecurity Planet
esecurityplanet.com > news > news-weedhack-fake-minecraft-malware

WeedHack Malware Persists as Fake Minecraft Sites Survive C2 Disruption

5+ day, 12+ hour ago   (404+ words) Fake Minecraft sites continue distributing WeedHack malware through SEO poisoning and trusted hosting platforms despite disruption of its original C2 infrastructure. Disrupting WeedHack’s command-and-control infrastructure did not stop its distribution. Fake Minecraft client sites and trusted hosting services continued serving the…...

eSecurity Planet
esecurityplanet.com > threats > news-dropbox-lenovo-id-flaw-5000-accounts

Dropbox Lenovo ID Flaw Compromised 5,000 Accounts

1+ week, 2+ day ago   (416+ words) A Lenovo ID verification flaw let attackers compromise 5,000 Dropbox accounts without passwords. Learn what happened and how users can stay protected. Dropbox confirmed this week that attackers compromised roughly 5,000 user accounts during a 17-day intrusion between Aug. 4 and Aug. 21, 2026, with…...

eSecurity Planet
esecurityplanet.com > cybersecurity > news-coder-registry-malicious-terraform-modules

Coder Registry Compromise: Malicious Terraform Modules Explained

1+ week, 2+ day ago   (623+ words) Coder’s compromised module registry served malicious Terraform modules that stole cloud, CI/CD, AI, and SSH credentials during a 14-hour attack window. Coder confirmed that an unidentified attacker compromised infrastructure supporting its module registry and served modified Terraform modules designed…...

eSecurity Planet
esecurityplanet.com > news > news-cisa-exploited-ai-flaws

CISA Adds 7 Exploited Flaws as Attackers Target AI Infrastructure

1+ week, 2+ day ago   (382+ words) CISA added seven exploited flaws to its KEV catalog, including LiteLLM, Kestra, Starlette, and SonicWall vulnerabilities under active attack. AI gateways are becoming high-value attack surfaces. CISA added seven actively exploited vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog on…...

eSecurity Planet
esecurityplanet.com > weekly-roundup > ai-attack-surfaces-and-supply-chain-threats-define-the-week

AI Attack Surfaces and Supply Chain Threats Define the Week

1+ week, 2+ day ago   (587+ words) PaperCut pre-authentication RCE: A PaperCut remote code execution flaw is being exploited in the wild, with Huntress observing attacks against two customers. PaperCut considers all NG and MF versions potentially affected. Organizations should update PaperCut immediately, remove public access, preserve…...

eSecurity Planet
esecurityplanet.com > threats > news-all-in-one-wp-migration-cve-2026-19949

CVE-2026-19949 Leaves Millions of WordPress Sites Running Vulnerable Plugin Versions

1+ week, 2+ day ago   (748+ words) A high-severity flaw in All-in-One WP Migration leaves 3.25 million WordPress sites exposed, with vulnerable versions potentially leading to site compromise. A WordPress backup tool designed to help sites recover from trouble can instead become the trigger for an attack. Researchers…...

eSecurity Planet
esecurityplanet.com > threats > crowdstrike-disrupts-sality-botnet-after-more-than-20-years

CrowdStrike Disrupts Sality Botnet After More Than 20 Years

1+ week, 4+ day ago   (729+ words) After more than two decades online, one of the internet’s longest-running botnets has finally lost control of its infected machines. CrowdStrike said its Counter Adversary Operations team disrupted the Sality peer-to-peer (P2P) botnet on Aug. 31 in coordination with U.S. and international…...