php
PAN-PAN-PAN-OS: Palo Alto Firewalls Under Attack (Again)
Richi Jennings | | attack chain, Attack Chains, authentication bypass, Authentication bypass flaw, CVE-2024-9474, CVE-2025-0108, CVE-2025-0111, firewall, Firewall Exploit, firewall security, Palo Alto Networks, Palo Alto Networks PAN-OS, PAN-OS, PAN-OS Vulnerability, php, SB Blogwatch
Time to Declare an Emergency? Scrotes chain three flaws to take full control—seems pretty easy ...
Security Boulevard
Ransomware Group Jumps on PHP Vulnerability
A long-running ransomware campaign that has been targeting Windows and Linux systems since 2019 is the latest example of how closely threat groups track public disclosures of vulnerabilities and proofs-of-concept (PoCs) and ...
Security Boulevard
Understanding the RCE Vulnerabilities in WordPress Plugins
Rohan Timalsina | | Critical RCE Vulnerabilities, Extended Lifecycle Support, php, RCE Vulnerabilities in WordPress, WordPress Plugins
 Imagine handing over the controls of your website to someone you don’t trust – that’s the risk of RCE vulnerabilities in WordPress. Attackers can modify website content, inject spammy content, and ...
Extending Support for PHP End-of-Life Versions: A Safety Net for Legacy Applications
Joao Correia | | Extended Lifecycle Support, Extending Support for PHP End-of-Life, php, PHP end of life, PHP EOL
Handling end of life (EOL) for operating systems is a relatively common, if cumbersome, task that IT teams have to grapple with as part of their activity. Yet, operating systems aren’t the ...
Netmask Flaw Leaves Millions Vulnerable While a PHP Git Server is Hacked in Software Supply Chain Attack
We’ve seeing so many software supply chain attacks in recent weeks that it’s hard for us to talk about all of them. But, in the last 24 hours, we’ve seen two major ...
We Speak Your Language – New Ecosystems Available in Nexus Lifecycle
There are more than 700+ programming languages to choose from and different languages gain popularity and momentum at any time. In fact, since 2012 there has been a new “favorite” programming language ...
Changes to Emotet in September 2019
Alex Holland | | {AA5B6A80-B834-11D0-932F00A0C90DCAA9}, 99999934tfserdgfwGetProcAddress, Emotet, packer, php, Threat Research, Threat Research NEWS, threats
Thank you to Ratnesh Pandey who also contributed to this research. On 16 September 2019, Bromium Labs observed the resumption of Emotet malicous spam (malspam) campaign activity following a hiatus since the ...
PHP PEAR Site Hacked; Tainted Package Available for Months
The official PHP Extension and Application Repository (PEAR) website has been shut down after an apparent hack caused the original PHP PEAR package manager to be replaced by attackers with a tainted ...
Sven Morgenroth Talks About PHP Object Injection Vulnerabilities on Paul’s Security Weekly Podcast
Sven Morgenroth, a security researcher at Netsparker, was interviewed by Paul Asadoorian and Larry Pesce for Paul's Security Weekly #584. Sven talked about PHP Object injection vulnerabilities and explained the dangers of ...
End of Support for PHP 5 and PHP 7.0
At the end of 2018, PHP will stop releasing security updates and supporting PHP 5.6 as well as PHP 7.0. Considering there are millions of websites who are still running these old ...

