Popular WordPress plugin installs Backdoor

A widely used plugin called Captcha, originally developed by “a well-established plugin developer named BestWebSoft, a company behind many other popular WordPress plugins” has been found to contain malicious code that triggers a backdoor. The plugin accounts to over 300,000 installations on wordpress sites across the world. A new version (4.4.5) is now available which can clean the affected sites. For more visit https://www.bleepingcomputer.com/news/security/backdoor-found-in-wordpress-plugin-with-more-than-300-000-installations/  ...

Protection from Phishing

How to Protect from Phishing   Phishing is a technique deployed to solicit information from users through various means. The most popular are emails that uncanningly looks legitimate to unsuspecting users. Usually, the emails allure the users to click on a link that redirects to fraudulent websites that appears legitimate. Once the users are on the redirected website, they are asked to provide credentials such as usernames and passwords, that can potentially pose the users to risk for future compromises. Moreover, these fraudulent websites may contain malicious codes that can steal informations related to users from their browser’s cookies....

CMS Security

Today virtually all websites are powered by CMSes, of which WordPress, Joomla and Drupal have racked up over 70% of the market share between them as per statistics from Web Technology Surveys. A CMS enables anybody to build a web application with minimum technical knowledge. This widespread popularity due to ease of developing has therefore lead many such sites to be targeted. The WPScan Vulnerability Database shows almost 6,000 known vulnerabilities with WordPress, related to the core code or the publicly available plugins. A study of 500 cybersecurity service providing companies carried out by CMS Wire, revealed that “298...

Email Safety and Recovery

Here are some best practices to safeguard your email accounts and recover them when needed. Login to your account: if password has not been changed, it’s easy. If you cannot login, try “Forgot Password” and or any other  recovery options If all of them have been changed, contact the mail provider and report compromise or there is nothing much you can do. Since you cannot proceed further. All you can do is to inform via other means to all your contacts(as many as you know) that your email has been hacked and not to respond to any emails from...

Common Malwares in Bhutan

More than 1,400 different malware families were identified globally by Check Point during a survey carried out in  February 2016 and  39 per cent of malware attacks globally was found to be  caused by the Conficker, Sality, and Dorkbot. The Bhutan Computer Incidence Response Team(BtCIRT) also found out that Conficker and Dorkbot are the most common Malwares affecting Systems in Bhutan. Conficker Conficker is a computer worm that can infect your computer and spreads to other computers across a network , through file sharing or removable drives. This infection allows an attacker to access users’ personal information such as...