Security News

Symfony Flaw Leaves Drupal Sites Vulnerable to Hackers—Patch Now
2018-08-03 11:18

It's time to update your Drupal websites. Drupal, the popular open-source content management system, has released a new version of its software to patch a security bypass vulnerability that could...

Hackers Exploit Drupal Flaw for Monero Mining
2018-06-22 12:21

Network attacks exploiting a recently patched Drupal vulnerability are attempting to drop Monero mining malware onto vulnerable systems, Trend Micro reports. read more

Drupal Refutes Reports of 115,000 Sites Still Affected by Drupalgeddon2
2018-06-08 05:23

The Drupal Security Team has refuted reports that at least 115,000 websites are still vulnerable to Drupalgeddon2 attacks, arguing that the methodology used by the researcher who announced that...

Drupal drisputes dreport of widespread wide-open websites
2018-06-07 22:23

Dev says talk of open flaws is FAKE NEWS Drupal is denying reports that more than 100,000 sites are still vulnerable to months-old critical security flaws in its content management system.…

Many Drupal Sites Still Vulnerable to Drupalgeddon2 Attacks
2018-06-05 12:08

At least 115,000 websites powered by version 7 of the Drupal content management system are still vulnerable to Drupalgeddon2 attacks, despite patches being available since late March. read more

Over 115,000 Drupal Sites Still Vulnerable to Drupalgeddon2 Exploit
2018-06-05 08:18

Hundreds of thousands of websites running on the Drupal CMS—including those of major educational institutions and government organizations around the world—have been found vulnerable to a highly...

Hacked Drupal Sites Deliver Miners, RATs, Scams
2018-05-21 05:55

The Drupal websites hacked by cybercriminals using the vulnerabilities known as Drupalgeddon2 and Drupalgeddon3 deliver cryptocurrency miners, remote administration tools (RATs) and tech support...

Cryptocurrency Miners Exploit Widespread Drupal Flaw
2018-05-08 10:33

400 Sites or More Fall Victim to Massive, Forced Monero Mining OperationA remote code execution vulnerability revealed in late March in the Drupal content management system is now being used on a...

That Drupal bug you were told to patch weeks ago? Cryptominers hope you haven't bothered
2018-05-07 19:20

Cryptocoin malware outfit takes aim at 'Drupalgeddon' bug A set of high-severity vulnerabilities in Drupal that were disclosed last month are now the target of widespread attacks by a malware campaign.…

Cryptojacking Campaign Exploits Drupal Bug, Over 400 Websites Attacked
2018-05-07 16:16

Hundreds of sites vulnerable to 'Drupalgeddon 2.0' have been impacted by a massive cryptomining campaign.