Pluck CMS Upload Bug Allows PHP Execution via .htaccess
Vulnerability exists in Pluck CMS's facility for uploading files to execute PHP on its server. The primary source of the vulnerability results from the pro...
Found 356 relevant articles matching your search. Browse our cybersecurity insights and expert analysis below.
Vulnerability exists in Pluck CMS's facility for uploading files to execute PHP on its server. The primary source of the vulnerability results from the pro...
Cisco has confirmed active exploitation of a maximum severity zero day vulnerability affecting Cisco AsyncOS, the operating system behind Cisco Secure Emai...
Cross-Site Request Forgery (CSRF) attacks are one of the most underrated web attacks, and this is even more common in legacy applications, particularly in...
MobileDetect is a popular PHP library used to detect mobile devices and tailor content accordingly. Because it’s often embedded into demos, dashboard...
The SQL injection attack is not usually as dramatic as other cyber-attacks. In fact, it is generally present in everyday applications that had little or no...
phpIPAM is often perceived as a hidden benefit for companies and their employees as many administrators see it as a resource they use throughout their day-...
Version 6.7.2 RosarioSIS contains a cross-site scripting (XSS) security flaw found in the scheduling module. This vulnerability allows an attacker to injec...
Security teams are now seeing real-world exploitation of the React2Shell vulnerability to deliver advanced Linux malware, including KSwapDoor and ZnDoor, a...
Our blog insights are backed by hands-on service delivery. Whether you need a penetration test, vulnerability assessment, emergency website recovery, or secure web development — our UK cybersecurity specialists are ready to help.
Emergency malware removal, backdoor elimination, blacklist delisting, and full post-incident hardening for compromised websites.
Authorised simulated attacks exposing real vulnerabilities in your web applications, networks, and infrastructure before attackers do.
Systematic identification and prioritisation of security weaknesses across your digital estate — with actionable remediation guidance.
OWASP-aligned web application development with security engineered in from architecture through to penetration-tested deployment.
Simulated, targeted adversarial attacks that test your people, processes, and technology under real-world conditions.
© 2016 – 2026 Red Secure Tech Ltd. Registered in England and Wales — Company No: 15581067