Blog


  • Malicious PyPi package steals Discord auth tokens from devs

    ![Malicious PyPi package steals Discord auth tokens from devs](https://www.bleepstatic.com/content/hl-images/2023/11/03/Discord.jpg)A malicious package named ‘pycord-self’ on the Python package index (PyPI) targets…


  • IRS chief to step down upon Trump’s inauguration, well before his term expires

    IRS chief to step down upon Trump’s inauguration, well before his term expires==============================================================================![IRS Commissioner Danny Werfel testifies before the House…


  • Trump’s DHS pick says CISA is ‘far off-mission’ and should be smaller

    Trump’s DHS pick says CISA is ‘far off-mission’ and should be smaller=====================================================================![South Dakota Gov. Kristi Noem, President-elect Donald Trump’s nominee…


  • Has the TikTok Ban Already Backfired on US Cybersecurity?

    * [Threat Intelligence](/threat-intelligence)* [Application Security](/application-security)* [Data Privacy](/cyber-risk/data-privacy)Has the TikTok Ban Already Backfired on US Cybersecurity? Has the TikTok Ban Already…


  • Employees Enter Sensitive Data Into GenAI Prompts Far Too Often

    * [Threat Intelligence](/threat-intelligence)* [Data Privacy](/cyber-risk/data-privacy)* [Cybersecurity Operations](/cybersecurity-operations)* [Insider Threats](/vulnerabilities-threats/insider-threats)Employees Enter Sensitive Data Into GenAI Prompts Far Too Often Employees Enter…


  • 15K Fortinet Device Configs Leaked to the Dark Web

    * [Endpoint Security](/endpoint-security)* [Cyberattacks -& Data Breaches](/cyberattacks-data-breaches)* [Vulnerabilities -& Threats](/vulnerabilities-threats)* [Threat Intelligence](/threat-intelligence)15K Fortinet Device Configs Leaked to the Dark Web…


  • US Sanctions Chinese Hacker & Firm for Treasury, Critical Infrastructure Breaches

    * [Threat Intelligence](/threat-intelligence)* [Cyberattacks -& Data Breaches](/cyberattacks-data-breaches)* [Cybersecurity Operations](/cybersecurity-operations)US Sanctions Chinese Hacker -& Firm for Treasury, Critical Infrastructure Breaches US…


  • Backdoors: The Hidden Threat Lurking in Your Website

    * [Security Education](https://blog.sucuri.net/category/security-education)* [Website Security](https://blog.sucuri.net/category/website-security)Backdoors: The Hidden Threat Lurking in Your Website====================================================![](https://secure.gravatar.com/avatar/8fc0dcc56a9746db1eeed488e3cae1c1?s=60&d=mm&r=g) [Kyle Knight](https://blog.sucuri.net/author/klknight)* January 17, 2025 Website backdoors are…


  • Japanese Spam on a Cleaned WordPress Site: The Hidden Sitemap Problem

    * [Security Advisory](https://blog.sucuri.net/category/security-advisory)* [Security Education](https://blog.sucuri.net/category/security-education)* [WordPress Security](https://blog.sucuri.net/category/wordpress-security)Japanese Spam on a Cleaned WordPress Site: The Hidden Sitemap Problem=====================================================================![](https://secure.gravatar.com/avatar/846b8deebaa5f89a647dfbee5ef32a5e?s=60&d=mm&r=g) [Puja Srivastava](https://blog.sucuri.net/author/puja-srivastava)* January…


  • PoC Exploit Released for Palo Alto Expedition Tool OS Command Injection Vulnerability

    A recently disclosed vulnerability in Palo Alto Networks’ Expedition tool has raised significant security concerns, as a proof-of-concept (PoC) exploit…