Attackers are actively exploiting WordPress CVE-2026-87902, a critical vulnerability that could enable remote code execution. Administrators are advised to update affected versions.
Security researchers have found the third-party.com placeholder domain serving ClickFix malware lures, affecting users through fake verification pages and malicious commands.
Pakistan's National Computer Emergency Team (NCERT) issued a critical alert today, warning government organizations of a targeted cybercrime campaign linked to the Sidewinder APT...