
A critical vulnerability in a WordPress plugin under active attack, risking over 17,000 websites
India Today
A zero-day vulnerability allows attackers to upload malicious files on e-commerce websites, eventually taking over their databases for customer information.
A new vulnerability has been found in a WordPress plugin that affects over 17,000 websites. The vulnerability is actively being exploited to collect customer information from these e-commerce sites. The security lapse was discovered by the Wordfence Threat Intelligence team on May 31. As per a report by the cybersecurity firm, a critical file upload vulnerability was found by security analyst Charles Sweethill in a WordPress plugin named Fancy Product Designer. The plugin is used by ecommerce website owners to upload images and PDF files for products on their online store. The report mentions that the vulnerability has been exploited actively since January 30, 2021. However, the attacks have been limited and from specific IP addresses.
Students who appeared for the Bihar School Examination Board Class 12 exams can now access their results through multiple platforms, including the India Today Board Results page for smoother and quicker access. With heavy traffic expected on official websites, this alternative option ensures students can check their scores without delays or technical glitches.

After fight with US Military, Anthropic starts searching for policy expert on weapons and explosives
Anthropic, the AI startup that found itself at odds with the Pentagon over unrestricted AI use, is now looking for an expert in chemical weapons and explosives. However, the company is not planning to build such weapons, but instead wants to formulate its policy in regard to weapons.

Reddit is exploring biometric verification methods such as Face ID and Touch ID to ensure users are real humans, not bots, while pledging to maintain the platform's tradition of anonymity. CEO Steve Huffman said the company is planning to address the rising influence of AI-generated content and protect authentic user engagement.










