Get a Pentest and security assessment of your IT network.

News

LA Times said to be compromised, shell access offered up for sale

The LA Times has confirmed the hacking, and says the issue has been resolved. The Los Angeles Times uses WordPress to manage its events.latimes.com subdomestic.com subdomain. A vulnerability in WordPress security was brought to our attention earlier today. We have completed a security review and addressed the issue, and taken additional measures to ensure the security of our sites are secure. In 2013, video surfaced of an XML eXternal Entity (XXE) processing vulnerability in the plugin, but it isn’t clear if that vulnerability was ever patched.”]

Source: https://www.csoonline.com/article/3051598/la-times-said-to-be-compromised-shell-access-offered-up-for-sale.html

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

Botnet authors use Evernote account as C&C Server

News

Canadian agency breached as hackers exploit CVE-2017-5638 flaw in Apache Struts 2