Výsledky hledání

výrobce: WordPress× sektor: veřejná správa× v celém archivu zrušit filtry

2 karet z 2 položek CZ · EN/orig

Hvězdička u CVE znamená, že jsem to číslo vytáhl z širšího textu článku. Neukazuju u něj proto KEV, EPSS ani CVSS, a to preventivně, protože článek se na něj mohl jen odkazovat, třeba jako na starší kauzu.

1

Chinese hackers exploit WordPress, Zyxel flaws to steal govt data

A Chinese-speaking threat actor has been exploiting vulnerabilities in ZyXEL GS1900 Smart Managed Switches and WordPress to steal sensitive data from 996 devices and more than 18,500 records stored in backend databases. [...]

CVE-2022-0847 * CVE-2023-54391 * CVE-2026-34908 * CVE-2026-34909 * CVE-2026-34910 * CVE-2026-54569 * CVE-2026-56271 * CVE-2026-60004 * CVE-2026-60137 * CVE-2026-63030 * CVE-2026-7273 * CVE-2026-79756 * WordPress Zyxel veřejná správa US

tg: incident tg: zneužíváno tp: únik dat tp: špionáž

· BleepingComputer · Chinese hackers exploit WordPress, Zyxel flaws to steal govt data

1

Open Season on Kapibala: Attacker Steals Over 18,000 Government Records Through WordPress Exploitation

GreyNoise has been tracking malicious use of an IP address since early June 2026 due to its frequent use in scans and attacks against a variety of technologies. We detail a few of the more notable intrusions we observed including the theft of more than 18,000 sensitive records from a western government.

WordPress veřejná správa US

tg: incident tg: zneužíváno tg: rozbor tp: únik dat

· GreyNoise Labs · Open Season on Kapibala: Attacker Steals Over 18,000 Government Records Through WordPress Exploitation