CISA Adds 2 Exploited Roundcube Flaws to KEV Catalog
CISA has updated its Known Exploited Vulnerabilities (KEV) catalogue, which now contains two vulnerabilities in Section Four of the Roundcube webmail softw...
Found 23 relevant articles matching your search. Browse our cybersecurity insights and expert analysis below.
CISA has updated its Known Exploited Vulnerabilities (KEV) catalogue, which now contains two vulnerabilities in Section Four of the Roundcube webmail softw...
According to a joint report by the Google Mandiant and Google Threat Intelligence Group, a suspected China-related threat cluster identified as "UNC6201" h...
File upload vulnerabilities (CWE-434) let attackers drop webshells, small scripts that provide remote command execution, file management, and persistence o...
phpMyAdmin is convenient.That convenience is exactly why it ends up exposed to the internet.In many real incidents, phpMyAdmin was never meant to be public...
The Cybersecurity Agency of Singapore (CSA) has issued a high-priority alert concerning a serious cybersecurity flaw in the SmarterTools SmarterMail Email...
File upload features look harmless. Let users attach a document, upload an image, move on. In practice, these features are one of the most abused parts of...
Attackers don’t waste time on fancy zero days unless they really need to. Most of the active exploitation you see today comes from old, unpatched, ea...
A high-severity security vulnerability (CVE-2024-11680, CVSS score: 9.8) affecting the open-source file-sharing application ProjectSend has come under acti...
Our blog insights are backed by hands-on service delivery. Whether you need a penetration test, vulnerability assessment, emergency website recovery, or secure web development — our UK cybersecurity specialists are ready to help.
Emergency malware removal, backdoor elimination, blacklist delisting, and full post-incident hardening for compromised websites.
Authorised simulated attacks exposing real vulnerabilities in your web applications, networks, and infrastructure before attackers do.
Systematic identification and prioritisation of security weaknesses across your digital estate — with actionable remediation guidance.
OWASP-aligned web application development with security engineered in from architecture through to penetration-tested deployment.
Simulated, targeted adversarial attacks that test your people, processes, and technology under real-world conditions.
© 2016 – 2026 Red Secure Tech Ltd. Registered in England and Wales — Company No: 15581067