Exploited now
8 this week
Data breaches
CyrusOne
Is it safe?
check a site
Browser updates
Chrome 155.0.8059.40
Scam emails
examples
12,194
guides
5,441
members
Removal guides
Pop-ups & adware
Browser hijackers
Ransomware
Trojans & backdoors
Spyware & keyloggers
Rogue anti-spyware
Malware
Unwanted programs
Scams
Scam alerts
Fake alerts
News
Malware news
Data breaches
Exploited flaws
Browser security
Security
Browsers & vulnerabilities
General
Software
Files
System files
Spyware-related files
Log in
Exploited now
8 this week
Data breaches
CyrusOne
Is it safe?
check a site
Browser updates
Chrome 155.0.8059.40
Scam emails
examples
Now
8 Oct
porterneuman.mx: PowerShell and JavaScript files tied to the AveMaria remote access trojan, and what to do
8 Oct
donutclientsmods.xyz: fake DonutSMP Minecraft mods tagged SilentNet, and what to do if you ran one
8 Oct
sqpengg.com: a server handing out crypted PowerShell scripts, and what to do if one ran on your PC
8 Oct
donutsmpcheats.org: fake Minecraft cheat mods with the SilentNet stealer, and what to do if you installed one
8 Oct
maciejbi.hosting24.pl: a hosting subdomain that served Remcos scripts and a stego picture, and what to do if your PC fetched them
8 Oct
87130921-60-20220830152356.webstarterz.com: an open folder serving Formbook and XWorm PowerShell scripts, and what to do if one ran
8 Oct
ficus.in: picture files hiding the Remcos remote access trojan, and what to do if a script fetched them
8 Oct
OpenDrive virus: why web.opendrive.com shows up in malware alerts, and what to do if a file from it installed Remcos
5,441 members
· read and write here
All members
Rubric
Exploited flaws
Page
@exploited-flaws
· 5 followers
Security flaws attackers already use, and the updates that fix them.
News
Viruses and parasites
Data breaches
Exploited flaws
Browser security
Security
Web browsers and vulnerabilities
General
Anti-spyware software
Spam and phishing
Spyware related issues
Tutorials
Vulnerabilities
Web browsers
What's new
Everything
Posts 5
Exploited flaws
19 h ago
SecurityWeek reports that TP-Link has disclosed five vulnerabilities in its Aginet line of ISP-managed mesh systems, routers and modems. The bugs can let an attacker on the same network take over an affected device, create a super-administrator account, enable SSH access, or recover passwords and Wi-Fi credentials from configuration files. TP-Link says firmware updates are distributed by ISPs, so users should check the device management interface or app for updates and contact their ISP if none are available.
Exploited flaws
2 d ago
Help Net Security reports that attackers have already started trying to exploit a critical arbitrary file access flaw in Atlassian’s self-managed Data Center products, including Bitbucket, Confluence, Jira Service Management, Jira Software, Bamboo, Crowd, Crucible and Fisheye. Atlassian urged customers to upgrade to a fixed version as soon as possible. Those who cannot update quickly should remove vulnerable instances from the internet or block external access, and check access logs for signs of compromise.
Exploited flaws
3 d ago
The Register reports that Microsoft is adding .msix and .msixbundle to Outlook’s block list. New Outlook for Windows and Outlook on the Web in Exchange Online will stop users from downloading or opening those attachments by default, because a malicious package could compromise a device. Administrators who need them can allow the file types before the rollout in early to mid-November 2026.
Exploited flaws
4 d ago
The Hacker News reports that attackers are trying to exploit a now-patched critical flaw in the Realtek Jungle SDK to deploy the Cling botnet. The malware targets routers and DVRs from multiple vendors, so home users and small offices should make sure their router or device firmware is fully updated and check vendor security advisories for fixes.
Loading…
No more articles
Could not load, try again
Try again
5,441 members already here
Reading, writing, commenting and voting. 0 verified · 166 joined this year
All members
Join
News
Members
Publish
Me
Exploited flaws — 2-Spyware