Two Critical Vulnerabilities Patched in Joomla 3.6.4. Update it asap!Security Affairs·Oct 26, 06:15 UTC · Oct 26, 2016VulnerabilityCVE-2016-8870CVE-2016-886960
Joomla 3.8.4 release addresses three XSS and SQL Injection vulnerabilitiesSecurity Affairs·Feb 8, 11:33 UTC · Feb 8, 2018VulnerabilityCVE-2018-637635
New Hacker Group 'GambleForce' Tageting APAC Firms Using SQL Injection AttacksThe Hacker News·Dec 15, 00:00 UTC · Dec 15, 2023VulnerabilityCVE-2023-2375247
Friday Squid Blogging: Underwater Sculptures Use Squid Ink for ColoringSchneier on Security·Dec 15, 00:00 UTC · Dec 15, 2023Vulnerability130
China-Nexus TAG-112 Compromises Tibetan Websites to Distribute Cobalt StrikeRecorded Future·Aug 21, 00:00 UTC · Aug 21, 2025Vulnerability42
Multiple XSS flaws in Joomla can lead to remote code executionSecurity Affairs·Feb 22, 15:14 UTC · Feb 22, 2024VulnerabilityCVE-2024-21722CVE-2024-21723CVE-2024-21724+3 CVEs47
Surging CMS attacks keep SQL injections on the radar during the next normalHelp Net Security·Nov 14, 09:12 UTC · Nov 14, 2023Vulnerability42
Shell No! Adversary Web Shell Trends and Mitigations (Part 1)Recorded Future·Jun 27, 00:00 UTC · Jun 27, 2025Vulnerability42
GambleForce Group Targets Websites With SQL InjectionInfosecurity Magazine·Dec 14, 10:00 UTC · Dec 14, 2023Vulnerability30
CMS-based sites under attack: The latest threats and trendsHelp Net Security·May 3, 00:00 UTC · May 3, 2022Vulnerability42
China-linked group hacked Tibetan media and university sites to distribute Cobalt Strike payloadThe Record·Nov 13, 03:38 UTC · Nov 13, 2024Vulnerability30
Argus: Open-source information gathering toolkitHelp Net Security·Oct 23, 00:00 UTC · Oct 23, 2024Vulnerability30
Joomla Joomla! Two Critical Flaws Discovered — Update to Protect Your SiteThe Hacker News·Oct 25, 14:50 UTC · Oct 25, 2016VulnerabilityCVE-2016-8870CVE-2016-886960
Drupal-based sites open to attack via double extension files (CVE-2020-13671)Help Net Security·Nov 25, 07:22 UTC · Nov 25, 2020Vulnerability in the wildCVE-2020-1367160
CVE-2016-10033 PHPMailer flaw leaves millions of websites vulnerableSecurity Affairs·Dec 27, 07:38 UTC · Dec 27, 2016VulnerabilityCVE-2016-1003360
Most unpatched Joomla sites compromised in latest wave of attacksHelp Net Security·Oct 31, 00:00 UTC · Oct 31, 2016Vulnerability in the wildCVE-2016-8870CVE-2016-886960
Donald Trump appoints a CyberSecurity Advisor Whose Own Site is Damn VulnerableThe Hacker News·Jan 15, 00:00 UTC · Jan 15, 2017Vulnerability30
Joomla vulnerability can be exploited to hijack sites, so patch now!Help Net Security·Dec 15, 00:00 UTC · Dec 15, 2016VulnerabilityCVE-2016-983860
“This site may harm your computer”. How to recognize and defeat website infectionsKaspersky Securelist·Sep 18, 12:42 UTC · Sep 18, 2012Vulnerability30
Massive hacking campaign on Joomla sites via recently patched flawsSecurity Affairs·Oct 31, 08:37 UTC · Oct 31, 2016Vulnerability in the wildCVE-2016-8870CVE-2016-886960
Strapi releases update addressing two bugs that lead to data exposureThe Record·Jan 13, 00:00 UTC · Jan 13, 2023VulnerabilityCVE-2022-30617CVE-2022-3061835
The cybercrime ecosystem: attacking blogsKaspersky Securelist·Nov 21, 10:00 UTC · Nov 21, 2019Vulnerability42