Below I’ve curated cyber security news from the world-wide-web – the lefthand column is from “The Hacker News” website and on the right is news from “Security Week”. Both are top cyber security news sites. In the very least this shows that threats are daily and they are very real.
Hacker News
- Fortinet Warns of New FortiWeb CVE-2025-58034...by info@thehackernews.com (The Hacker News) on November 19, 2025 at 4:20 am
Fortinet has warned of a new security flaw in FortiWeb that it said has been exploited in the wild. The medium-severity vulnerability, tracked as CVE-2025-58034, carries a CVSS score of 6.7 out of a maximum of 10.0. "An Improper Neutralization of Special Elements used in an OS Command ('OS Command […]
- Sneaky 2FA Phishing Kit Adds BitB Pop-ups...by info@thehackernews.com (The Hacker News) on November 18, 2025 at 6:31 pm
The malware authors associated with a Phishing-as-a-Service (PhaaS) kit known as Sneaky 2FA have incorporated Browser-in-the-Browser (BitB) functionality into their arsenal, underscoring the continued evolution of such offerings and further making it easier for less-skilled threat actors to mount […]
- Meta Expands WhatsApp Security Research with New...by info@thehackernews.com (The Hacker News) on November 18, 2025 at 3:56 pm
Meta on Tuesday said it has made available a tool called WhatsApp Research Proxy to some of its long-time bug bounty researchers to help improve the program and more effectively research the messaging platform's network protocol. The idea is to make it easier to delve into WhatsApp-specific […]
- Learn How Leading Companies Secure Cloud...by info@thehackernews.com (The Hacker News) on November 18, 2025 at 3:25 pm
You’ve probably already moved some of your business to the cloud—or you’re planning to. That’s a smart move. It helps you work faster, serve your customers better, and stay ahead. But as your cloud setup grows, it gets harder to control who can access what. Even one small mistake—like the […]
- Researchers Detail Tuoni C2's Role in an...by info@thehackernews.com (The Hacker News) on November 18, 2025 at 2:00 pm
Cybersecurity researchers have disclosed details of a cyber attack targeting a major U.S.-based real-estate company that involved the use of a nascent command-and-control (C2) and red teaming framework known as Tuoni. "The campaign leveraged the emerging Tuoni C2 framework, a relatively new, […]
- Iranian Hackers Use DEEPROOT and TWOSTROKE...by info@thehackernews.com (The Hacker News) on November 18, 2025 at 12:54 pm
Suspected espionage-driven threat actors from Iran have been observed deploying backdoors like TWOSTROKE and DEEPROOT as part of continued attacks aimed at aerospace, aviation, and defense industries in the Middle East. The activity has been attributed by Google-owned Mandiant to a threat cluster […]
- Beyond IAM Silos: Why the Identity Security...by info@thehackernews.com (The Hacker News) on November 18, 2025 at 11:00 am
Identity security fabric (ISF) is a unified architectural framework that brings together disparate identity capabilities. Through ISF, identity governance and administration (IGA), access management (AM), privileged access management (PAM), and identity threat detection and response (ITDR) are all […]
- Seven npm Packages Use Adspect Cloaking to Trick...by info@thehackernews.com (The Hacker News) on November 18, 2025 at 10:37 am
Cybersecurity researchers have discovered a set of seven npm packages published by a single threat actor that leverages a cloaking service called Adspect to differentiate between real victims and security researchers to ultimately redirect them to sketchy crypto-themed sites. The malicious npm […]
- Microsoft Mitigates Record 15.72 Tbps DDoS Attack...by info@thehackernews.com (The Hacker News) on November 18, 2025 at 8:17 am
Microsoft on Monday disclosed that it automatically detected and neutralized a distributed denial-of-service (DDoS) attack targeting a single endpoint in Australia that measured 15.72 terabits per second (Tbps) and nearly 3.64 billion packets per second (pps). The tech giant said it was the largest […]
- Google Issues Security Fix for Actively Exploited...by info@thehackernews.com (The Hacker News) on November 18, 2025 at 4:44 am
Google on Monday released security updates for its Chrome browser to address two security flaws, including one that has come under active exploitation in the wild. The vulnerability in question is CVE-2025-13223 (CVSS score: 8.8), a type confusion vulnerability in the V8 JavaScript and WebAssembly […]
WordPress News
- WordPress 6.9 Release Candidate 2by Akshaya Rane on November 18, 2025 at 3:26 pm
The second Release Candidate (“RC2”) for WordPress 6.9 is ready for download and testing! This version of the WordPress software is under development. Please do not install, run, or test this version of WordPress on production or mission-critical websites. Instead, it’s recommended that you […]
- WordPress 6.9 Release Candidate 1by Amy Kamala on November 11, 2025 at 3:34 pm
The first Release Candidate (“RC1”) for WordPress 6.9 is ready for download and testing! This version of the WordPress software is still under development. Please do not install, run, or test this version of WordPress on production or mission-critical websites. Instead, it’s recommended to […]
- WordPress 6.9 Beta 3by Amy Kamala on November 4, 2025 at 3:34 pm
WordPress 6.9 Beta 3 is available for download and testing! This beta version of the WordPress software is still under development. Please don’t install, run, or test this version of WordPress on production or mission-critical websites. Instead, you can evaluate Beta 3 on a test server and site. […]
- WordPress 6.9 Beta 2by Akshaya Rane on October 28, 2025 at 3:23 pm
WordPress 6.9 Beta 2 is now ready for testing! This beta version of the WordPress software is under development. Please do not install, run, or test this version of WordPress on production or mission-critical websites. Instead, you should evaluate Beta 2 on a test server and site. You can test […]
- WordPress 6.8.3 Releaseby John Blackbourn on September 30, 2025 at 7:31 pm
WordPress 6.8.3 is now available! This is a security release that features two fixes. Because this is a security release, it is recommended that you update your sites immediately. You can download WordPress 6.8.3 from WordPress.org, or visit your WordPress Dashboard, click “Updates”, and then […]
- Portland Welcomes WordCamp US 2025: A Community...by Brett McSherry on August 30, 2025 at 3:03 am
A full house of attendees gathered in Portland, Oregon, for WordCamp US 2025, with thousands more tuning in online. Over four days, the flagship WordPress event brought together contributors, innovators, and community members for collaboration, inspiration, and discovery. WordPress is so unique […]
- Portland, Are You Ready? The WCUS 2025 Schedule...by Brett McSherry on August 6, 2025 at 8:03 pm
We’re excited to announce that the full schedule for WordCamp US 2025 has been published! From August 26–29 in Portland, Oregon, join web creators, innovators, and community leaders for four days of learning, collaboration, and inspiration. This year’s lineup brings together sessions on […]
- Maintenance Releases for WordPress branches 4.7...by John Blackbourn on August 5, 2025 at 7:11 pm
Following on from the WordPress 6.8.2 maintenance release last month, the included update to the root security certificate bundle has been backported to all branches back to 4.7. This ensures that when your site performs server-side HTTP requests, the most up-to-date information about trusted […]
- WordPress 6.8.2 Maintenance Releaseby Jb Audras on July 15, 2025 at 3:41 pm
WordPress 6.8.2 is now available! This minor release includes fixes for 20 Core tickets and 15 Block Editor issues. For a full list of bug fixes, please refer to the release candidate announcement. WordPress 6.8.2 is a short-cycle maintenance release. More maintenance releases may be made available […]
- Celebrating Kim Parsell: 2025 WordCamp US...by Brett McSherry on July 14, 2025 at 6:57 pm
The WordPress Foundation is pleased to announce the return of the Kim Parsell Memorial Scholarship for WordCamp US 2025. Applications are being accepted until July 25, 2025. Remembering Kim Parsell Kim Parsell was a dedicated contributor and a beloved member of the WordPress community. Her passion […]













