Joomla is a technology platform tracked across 6 threat clusters and 12 intelligence report mentions on ThreatCluster. First observed February 16, 2026; most recent activity July 18, 2026.
A critical vulnerability in the Joomla Content Editor (JCE), tracked as CVE-2026-48907, allows unauthenticated attackers to execute remote code on affected Joomla sites. This flaw affects JCE versions below 2.9.99.6 and…
Several Malaysian government agency websites, including the Ministry of Health, were attacked by hackers identified as 'Mushr00w'. The attacks exploited a vulnerability in the Joomla content management system, allowing…
The Australian Cyber Security Centre (ACSC) has issued a second alert in two months regarding a large-scale hacking campaign exploiting unpatched vulnerabilities in content management systems (CMS). The campaign targets…
On July 18, 2026, hackers breached the official website of Kenyan President William Ruto, demanding a ransom of 5 Bitcoins (approximately $320,000) to restore access. The attackers defaced the homepage with insulting…
ESET researchers have identified a sophisticated family of Linux malware named Linux/Mumblehard, which has been active for over five years. This malware primarily targets Linux and BSD web servers, utilizing a backdoor…
A source code review of the Novarain/Tassos framework has revealed three critical vulnerabilities: unauthenticated file read, unauthenticated file deletion, and SQL injection. These vulnerabilities affect five widely…