Security News

PHP RCE flaw actively exploited to pop NGINX servers
2019-10-28 12:24

A recently patched vulnerability (CVE-2019-11043) in PHP is being actively exploited by attackers to compromise NGINX web servers, threat intelligence firm Bad Packets has confirmed. For a...

New PHP Flaw Could Let Attackers Hack Sites Running On Nginx Servers
2019-10-26 19:04

If you're running any PHP based website on NGINX server and have PHP-FPM feature enabled for better performance, then beware of a newly disclosed vulnerability that could allow unauthorized...

Multiple Code Execution Flaws Found In PHP Programming Language
2019-09-06 11:19

Maintainers of the PHP programming language recently released the latest versions of PHP to patch multiple high-severity vulnerabilities in its core and bundled libraries, the most severe of which...

Trakt app users' personal data exposed: We were hit by a 'PHP exploit'... back in 2014
2019-02-07 10:46

No payment info, but users' names, locations, email addies etc all 'lost' Trakt, the makers of an app that monitors users' TV programme and movie viewing habits, has 'fessed up to falling victim...

PHP PEAR supply chain attack: Backdoor added to installer
2019-01-24 12:57

Some additional details have emerged about the recent security breach involving the PHP PEAR (PHP Extension and Application Repository) webserver, but much is still unknown. What happened? The...

Someone Hacked PHP PEAR Site and Replaced the Official Package Manager
2019-01-23 09:48

Beware! If you have downloaded PHP PEAR package manager from its official website in past 6 months, we are sorry to say that your server might have been compromised. Last week, the maintainers at...

WordPress to Warn on Outdated PHP Versions
2019-01-16 15:41

In an effort to improve the security of websites, WordPress will display a warning starting in April 2019 when encountering outdated PHP versions. In December last year, the free and open-source...

As End of Life Nears, More Than Half of Websites Still Use PHP V5
2018-10-16 21:29

Support for PHP 5.6 drops on December 31 - but a recent report found that almost 62 percent of websites are still using version 5.

Around 62 percent of all Internet sites will run an unsupported PHP version in 10 weeks
2018-10-15 17:41

The highly popular PHP 5.x branch will stop receiving security updates at the end of the year.

Critical Vulnerability Patched in PHP Package Repository
2018-08-31 14:29

A critical remote code execution vulnerability was recently addressed in packagist.org read more