Suspected Chinese hackers implicated in Barracuda ESG zero-day attack incidents

A hacker group known as UNC4841, believed to have affiliations with China, has been identified as the culprit behind a series of data theft attacks on Barracuda ESG (Email Security Gateway) appliances. The attacks exploited a zero-day vulnerability, CVE-2023-2868, in Barracuda’s email attachment scanning module, which has since been patched. The exploitation of the zero-day […]

Malwarebytes Users Encounter Google Chrome Compatibility Issues Due to Windows 11 KB5027231 Update

Malwarebytes has confirmed that the recent Windows 11 22H2 KB5027231 cumulative update, released during Patch Tuesday, is causing compatibility problems for Google Chrome on its customers’ systems. Users and Windows administrators have reported that their devices are experiencing issues after installing the Windows 11 updates from the previous day. While uninstalling the KB5027231 update resolves […]

Bug in WordPress Stripe payment plugin exposes customer order information

Unauthenticated users can access customer order details due to a bug in the WordPress Stripe payment plugin A vulnerability has been discovered in the WooCommerce Stripe Gateway plugin for WordPress, which enables unauthenticated users to view order details from the plugin. This popular payment gateway, with 900,000 active installations, allows WordPress e-commerce websites to accept […]