Month: January 2025
-
Malicious PyPi package steals Discord auth tokens from devs
![Malicious PyPi package steals Discord auth tokens from devs](https://www.bleepstatic.com/content/hl-images/2023/11/03/Discord.jpg)A malicious package named ‘pycord-self’ on the Python package index (PyPI) targets…
-
IRS chief to step down upon Trump’s inauguration, well before his term expires
IRS chief to step down upon Trump’s inauguration, well before his term expires==============================================================================![IRS Commissioner Danny Werfel testifies before the House…
-
Trump’s DHS pick says CISA is ‘far off-mission’ and should be smaller
Trump’s DHS pick says CISA is ‘far off-mission’ and should be smaller=====================================================================![South Dakota Gov. Kristi Noem, President-elect Donald Trump’s nominee…
-
Has the TikTok Ban Already Backfired on US Cybersecurity?
* [Threat Intelligence](/threat-intelligence)* [Application Security](/application-security)* [Data Privacy](/cyber-risk/data-privacy)Has the TikTok Ban Already Backfired on US Cybersecurity? Has the TikTok Ban Already…
-
Employees Enter Sensitive Data Into GenAI Prompts Far Too Often
* [Threat Intelligence](/threat-intelligence)* [Data Privacy](/cyber-risk/data-privacy)* [Cybersecurity Operations](/cybersecurity-operations)* [Insider Threats](/vulnerabilities-threats/insider-threats)Employees Enter Sensitive Data Into GenAI Prompts Far Too Often Employees Enter…
-
15K Fortinet Device Configs Leaked to the Dark Web
* [Endpoint Security](/endpoint-security)* [Cyberattacks -& Data Breaches](/cyberattacks-data-breaches)* [Vulnerabilities -& Threats](/vulnerabilities-threats)* [Threat Intelligence](/threat-intelligence)15K Fortinet Device Configs Leaked to the Dark Web…
-
US Sanctions Chinese Hacker & Firm for Treasury, Critical Infrastructure Breaches
* [Threat Intelligence](/threat-intelligence)* [Cyberattacks -& Data Breaches](/cyberattacks-data-breaches)* [Cybersecurity Operations](/cybersecurity-operations)US Sanctions Chinese Hacker -& Firm for Treasury, Critical Infrastructure Breaches US…
-
Backdoors: The Hidden Threat Lurking in Your Website
* [Security Education](https://blog.sucuri.net/category/security-education)* [Website Security](https://blog.sucuri.net/category/website-security)Backdoors: The Hidden Threat Lurking in Your Website====================================================![](https://secure.gravatar.com/avatar/8fc0dcc56a9746db1eeed488e3cae1c1?s=60&d=mm&r=g) [Kyle Knight](https://blog.sucuri.net/author/klknight)* January 17, 2025 Website backdoors are…
-
Japanese Spam on a Cleaned WordPress Site: The Hidden Sitemap Problem
* [Security Advisory](https://blog.sucuri.net/category/security-advisory)* [Security Education](https://blog.sucuri.net/category/security-education)* [WordPress Security](https://blog.sucuri.net/category/wordpress-security)Japanese Spam on a Cleaned WordPress Site: The Hidden Sitemap Problem=====================================================================![](https://secure.gravatar.com/avatar/846b8deebaa5f89a647dfbee5ef32a5e?s=60&d=mm&r=g) [Puja Srivastava](https://blog.sucuri.net/author/puja-srivastava)* January…
-
PoC Exploit Released for Palo Alto Expedition Tool OS Command Injection Vulnerability
A recently disclosed vulnerability in Palo Alto Networks’ Expedition tool has raised significant security concerns, as a proof-of-concept (PoC) exploit…