Roundcube Webmail XSS Vulnerability Exposes Sensitive Data

by Esmeralda McKenzie
Roundcube Webmail XSS Vulnerability Exposes Sensitive Data

Roundcube Webmail XSS Vulnerability Exposes Sensitive Data

Roundcube Webmail XSS Vulnerability Exposes Aloof Files

RoundCube Webmail is a browser-essentially based, multilingual IMAP client. Its intensive feature direct comprises MIME enhance, take care of books, folder manipulation, message shopping, spell checking, and extra.

A daunting-living scripting (XSS) vulnerability tracked as CVE-2023-43770 in Roundcube has been discovered, which would possibly per chance consequence in info leakage thru malicious hyperlink references in undeniable/textual exclaim communications.

EHA

Roundcube Webmail 1.6.3 is now available. It affords a patch for a not too long ago discovered XSS vulnerability reported by Niraj Shivtarkar.

“We accurate revealed a security update to model 1.6 of Roundcube Webmail. Per the unlock notes, it presents a fix to a not too long ago reported XSS vulnerability”.

Among various aspects, Roundcube Webmail helps internationalized domains, shared folders and namespaces, and SMTP transport living notifications. Additionally, the IMAP folders’ person interface has been changed to allow extra condo for extensions and plug-ins.

Doc

FREE Demo

Deploy Evolved AI-Powered Electronic mail Safety Solution

Imposing AI-Powered Electronic mail security ideas “Trustifi” can stable your on-line industrial from in the present day’s most deadly email threats, such as Electronic mail Tracking, Blockading, Editing, Phishing, Epic Grab Over, Commercial Electronic mail Compromise, Malware & Ransomware

Changelog For Model 1.6.3

  • Fix malicious program the attach installto.sh/update.sh scripts were striking off some main ideas from the config file (#9051)
  • Replace jQuery-UI to model 1.13.2 (#9041)
  • Fix regression that broke use_secure_urls feature (#9052)
  • Fix attainable PHP fatal error when opening a message with message/rfc822 segment (#8953)
  • Fix malicious program the attach a duplicate designate in HTML email would possibly per chance reason some parts to be slash again off (#9029)</li> <li>Fix malicious program the attach an inventory of folders would possibly per chance have been sorted incorrectly (#9057)</li> <li>Fix regression the attach LDAP addressbook ‘filter’ probability changed into unnoticed (#9061)</li> <li>Fix frightening portray of a multi-folder search consequence when sorting by measurement (#9065)</li> <li>Fix so set up/update scripts construct not require PEAR (#9037)</li> <li>Fix regression the attach some mail parts would possibly per chance have been decoded incorrectly, or below no circumstances (#9096)</li> <li>Fix facing of an error case in Cyrus IMAP BINARY FETCH, fallback to non-binary FETCH (#9097)</li> <li>Fix PHP8 deprecation warning in the reconnect plugin (#9083)</li> <li>Fix “Display supply” on cell with x_frame_options = declare (#9084)</li> <li>Fix loads of PHP warnings (#9098)</li> <li>Fix deprecated exhaust of ldap_connect() in password’s ldap_simple driver (#9060)</li> <li>Fix frightening-living scripting (XSS) vulnerability in facing of linkrefs in undeniable textual exclaim messages</li> </ul> <p>The distant Debian 10 host has capabilities installed which would be tormented by this vulnerability. </p> <h2 class="wp-block-heading" id="h-fix-available"><strong>Fix On hand</strong></h2> <p>Roundcube Webmail 1.6.3 is regarded as stable and it’s endorsed to update all productive installations of Roundcube 1.6.x with it.</p> <p>For Debian 10 buster, this wretchedness has been mounted in model 1.3.17+dfsg.1-1~deb10u3.</p> <p>Hence, it’s endorsed that you enhance your roundcube capabilities.</p> </p></div> <footer> <span class="td-page-meta" itemprop="author" itemscope itemtype="https://schema.org/Person"><meta itemprop="name" content="Guru Baran"></span><meta itemprop="datePublished" content="2023-09-25T14:32:57+00:00"><meta itemprop="dateModified" content="2023-09-25T14:32:58+00:00"><meta itemscope itemprop="mainEntityOfPage" itemtype="https://schema.org/WebPage" itemid="https://cybersecuritynews.com/roundcube-webmail-xss-vulnerability/"/><span class="td-page-meta" itemprop="publisher" itemscope itemtype="https://schema.org/Organization"><span class="td-page-meta" itemprop="logo" itemscope itemtype="https://schema.org/ImageObject"><meta itemprop="url" content="https://1.bp.blogspot.com/-vp43nx-312U/YHSCwgCvPeI/AAAAAAAAMec/Pw0rVItjYWUao52NVnvZ-4FvuUIFaycwACLcBGAsYHQ/s16000/Cyber-Security-News-2.png"></span><meta itemprop="name" content="Cyber Security News"></span><meta itemprop="headline " content="Roundcube Webmail XSS Vulnerability Exposes Sensitive Data"><span class="td-page-meta" itemprop="image" itemscope itemtype="https://schema.org/ImageObject"><meta itemprop="url" content="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEhWzWYjQ_ArA8dhC3ij9yjs6FFCs_godLd1gvBT-hQq7GZjsRJIP4MHk1HAZYbK--jn1iB4h2thhEh25qNrI5kXDoSaTeu-w7soZem58QjiuQn7SmMUTkQY4go5obSf-K3r2YWMQZWBuMBjzsLDbBMIoAkeGhKvEWDCpb6l7GYukd9l7Hw_QQAKsfq99fes/s1600/Roundcube%20XSS%20flaw-1.webp"><meta itemprop="width" content="1600"><meta itemprop="height" content="900"></span> </footer> </p></div> <p>Source credit : cybersecuritynews.com</p> <!-- RatingBintangAjaib --> <div class="penci-single-link-pages"> </div> <div class="post-tags"> <a href="https://ynewsdaily.com/tag/cyber-security/" rel="tag">cyber security</a><a href="https://ynewsdaily.com/tag/cyber-security-news/" rel="tag">cyber security news</a><a href="https://ynewsdaily.com/tag/roundcube-webmail/" rel="tag">Roundcube Webmail</a><a href="https://ynewsdaily.com/tag/vulnerabilities/" rel="tag">Vulnerabilities</a> </div> </div> </div> <div class="penci-google-adsense-2"> <div id="HBai_9_Leaderboard_1" align="center"></div> </div> <div class="tags-share-box single-post-share tags-share-box-s1 center-box social-align-default disable-btnplus post-share"> <span class="single-comment-o"><i class="penci-faicon fa fa-comment-o" ></i>0 comment</span> <span class="post-share-item post-share-plike"> <span class="count-number-like">0</span><a href="#" aria-label="Like this post" class="penci-post-like single-like-button" data-post_id="4605" title="Like" data-like="Like" data-unlike="Unlike"><i class="penci-faicon fa fa-heart-o" ></i></a> </span> <a class="new-ver-share post-share-item post-share-facebook" aria-label="Share on Facebook" target="_blank" rel="noreferrer" href="https://www.facebook.com/sharer/sharer.php?u=https://ynewsdaily.com/roundcube-webmail-xss-vulnerability-exposes/"><i class="penci-faicon fa fa-facebook" ></i><span class="dt-share">Facebook</span></a><a class="new-ver-share post-share-item post-share-twitter" aria-label="Share on Twitter" target="_blank" rel="noreferrer" href="https://twitter.com/intent/tweet?text=Check%20out%20this%20article:%20Roundcube%20Webmail%20XSS%20Vulnerability%20Exposes%20Sensitive%20Data%20-%20https://ynewsdaily.com/roundcube-webmail-xss-vulnerability-exposes/"><i class="penci-faicon penciicon-x-twitter" ></i><span class="dt-share">Twitter</span></a><a class="new-ver-share post-share-item post-share-pinterest" aria-label="Pin to Pinterest" data-pin-do="none" rel="noreferrer" target="_blank" href="https://www.pinterest.com/pin/create/button/?url=https%3A%2F%2Fynewsdaily.com%2Froundcube-webmail-xss-vulnerability-exposes%2F&media=https%3A%2F%2Fynewsdaily.com%2Fwp-content%2Fuploads%2F2024%2F07%2F4605-Roundcube-2520XSS-2520flaw-1.webp&description=Roundcube+Webmail+XSS+Vulnerability+Exposes+Sensitive+Data"><i class="penci-faicon fa fa-pinterest" ></i><span class="dt-share">Pinterest</span></a><a class="new-ver-share post-share-item post-share-email" target="_blank" aria-label="Share via Email" rel="noreferrer" href="mailto:?subject=Roundcube%20Webmail%20XSS%20Vulnerability%20Exposes%20Sensitive%20Data&BODY=https://ynewsdaily.com/roundcube-webmail-xss-vulnerability-exposes/"><i class="penci-faicon fa fa-envelope" ></i><span class="dt-share">Email</span></a><a class="post-share-item post-share-expand" href="#" aria-label="Share Expand"><i class="penci-faicon penciicon-add" ></i></a> </div> <div class="post-author abio-style-1 bioimg-round"> <div class="author-img"> <img alt='' src='https://secure.gravatar.com/avatar/85d8cb7e7c1017dc93807da5368bf130?s=100&d=mm&r=g' srcset="https://secure.gravatar.com/avatar/85d8cb7e7c1017dc93807da5368bf130?s=200&d=mm&r=g 2x" class='avatar avatar-100 photo' height='100' width='100' loading='lazy' decoding='async'/> </div> <div class="author-content"> <h5><a href="https://ynewsdaily.com/author/admin/" title="Author Esmeralda McKenzie" rel="author">Esmeralda McKenzie</a></h5> <p></p> <div class="bio-social"> <a rel="noreferrer" target="_blank" class="author-social" href="https://ynewsdaily.com"><i class="penci-faicon fa fa-globe" ></i></a> </div> </div> </div> <div class="post-pagination"> <div class="prev-post"> <div class="prev-post-inner"> <div class="prev-post-title"> <span>previous post</span> </div> <a href="https://ynewsdaily.com/sandman-apt-attacks-telcos-organizations/"> <div class="pagi-text"> <h5 class="prev-title">Sandman APT Attacks Telcos Organizations to Steal System Information</h5> </div> </a> </div> </div> <div class="next-post"> <div class="next-post-inner"> <div class="prev-post-title next-post-title"> <span>next post</span> </div> <a href="https://ynewsdaily.com/ransomware-group-claims-have-hacked/"> <div class="pagi-text"> <h5 class="next-title">Ransomware Group Claims to Have Hacked 'All Of Sony Systems'</h5> </div> </a> </div> </div> </div> <div class="pcrlt-style-1 post-related"> <div class="post-title-box"><h4 class="post-box-title">Related Posts</h4></div> <div class="swiper penci-owl-carousel penci-owl-carousel-slider penci-related-carousel" data-lazy="true" data-item="3" data-desktop="3" data-tablet="2" data-tabsmall="2" data-auto="false" data-speed="300" data-dots="true"> <div class="swiper-wrapper"> <div class="item-related swiper-slide"> <div class="item-related-inner"> <a class="related-thumb penci-image-holder penci-lazy" data-bgset="https://ynewsdaily.com/wp-content/uploads/2024/12/6190-24-2520security-2520Vulnerabilities-2520Patched-585x390.webp" href="https://ynewsdaily.com/google-chrome-127-released-with/" title="Google Chrome 127 Released With Fix for Vulnerabilities that Lead to Browser Crash"> </a> <div class="related-content"> <h3> <a href="https://ynewsdaily.com/google-chrome-127-released-with/">Google Chrome 127 Released With Fix for Vulnerabilities...</a> </h3> <span class="date"><time class="entry-date published" datetime="2024-07-24T10:09:38+00:00">July 24, 2024</time></span> </div> </div> </div> <div class="item-related swiper-slide"> <div class="item-related-inner"> <a class="related-thumb penci-image-holder penci-lazy" data-bgset="https://ynewsdaily.com/wp-content/uploads/2024/12/6194-Crowdstrike-2520Details-2520Friday-2520incident-585x390.webp" href="https://ynewsdaily.com/crowdstrike-details-incident-affected-millions/" title="CrowdStrike Details Incident Affected Millions of Windows Systems Worldwide"> </a> <div class="related-content"> <h3> <a href="https://ynewsdaily.com/crowdstrike-details-incident-affected-millions/">CrowdStrike Details Incident Affected Millions of Windows Systems...</a> </h3> <span class="date"><time class="entry-date published" datetime="2024-07-24T09:29:25+00:00">July 24, 2024</time></span> </div> </div> </div> <div class="item-related swiper-slide"> <div class="item-related-inner"> <a class="related-thumb penci-image-holder penci-lazy" data-bgset="https://ynewsdaily.com/wp-content/uploads/2024/10/6006-Block-2520SYN-2520Flood-2520Attacks-21-585x390.png" href="https://ynewsdaily.com/ipfire-unveils-new-feature-protect/" title="IPFire Unveils New Feature to Protect Systems from SYN Flood Attacks"> </a> <div class="related-content"> <h3> <a href="https://ynewsdaily.com/ipfire-unveils-new-feature-protect/">IPFire Unveils New Feature to Protect Systems from...</a> </h3> <span class="date"><time class="entry-date published" datetime="2024-07-23T12:39:21+00:00">July 23, 2024</time></span> </div> </div> </div> <div class="item-related swiper-slide"> <div class="item-related-inner"> <a class="related-thumb penci-image-holder penci-lazy" data-bgset="https://ynewsdaily.com/wp-content/uploads/2024/10/5933-Play-2520Ransomwares-2520Linux-2520Variant-2520Attacking-2520ESXi-2520Servers-585x390.webp" href="https://ynewsdaily.com/play-ransomware-variant-attacking-linux/" title="Play Ransomware Variant Attacking Linux ESXi Servers"> </a> <div class="related-content"> <h3> <a href="https://ynewsdaily.com/play-ransomware-variant-attacking-linux/">Play Ransomware Variant Attacking Linux ESXi Servers</a> </h3> <span class="date"><time class="entry-date published" datetime="2024-07-23T06:48:04+00:00">July 23, 2024</time></span> </div> </div> </div> <div class="item-related swiper-slide"> <div class="item-related-inner"> <a class="related-thumb penci-image-holder penci-lazy" data-bgset="https://ynewsdaily.com/wp-content/uploads/2024/10/5921-Tools-2520Used-2520by-2520APT41-2520Hackers-585x390.webp" href="https://ynewsdaily.com/google-researchers-detailed-tools-used/" title="Google Researchers Detailed Tools Used by APT41 Hacker Group"> </a> <div class="related-content"> <h3> <a href="https://ynewsdaily.com/google-researchers-detailed-tools-used/">Google Researchers Detailed Tools Used by APT41 Hacker...</a> </h3> <span class="date"><time class="entry-date published" datetime="2024-07-22T09:43:41+00:00">July 22, 2024</time></span> </div> </div> </div> <div class="item-related swiper-slide"> <div class="item-related-inner"> <a class="related-thumb penci-image-holder penci-lazy" data-bgset="https://ynewsdaily.com/wp-content/uploads/2024/10/5923-Facebook-2520Password-2520Stealing-2520Malware-585x390.webp" href="https://ynewsdaily.com/threat-actors-hijacking-facebook-accounts/" title="Threat Actors Hijacking Facebook Accounts With Password Stealing Malware"> </a> <div class="related-content"> <h3> <a href="https://ynewsdaily.com/threat-actors-hijacking-facebook-accounts/">Threat Actors Hijacking Facebook Accounts With Password Stealing...</a> </h3> <span class="date"><time class="entry-date published" datetime="2024-07-22T09:28:25+00:00">July 22, 2024</time></span> </div> </div> </div> <div class="item-related swiper-slide"> <div class="item-related-inner"> <a class="related-thumb penci-image-holder penci-lazy" data-bgset="https://ynewsdaily.com/wp-content/uploads/2024/10/5879-Weekly-2520Cyber-2520Security-2520News-2520Roundup-2520news-2520May-2520last-2520-288-29-585x390.webp" href="https://ynewsdaily.com/weekly-cyber-security-news-letter-2/" title="Weekly Cyber Security News Letter – Data Breaches, Vulnerability, Cyber Attack & More"> </a> <div class="related-content"> <h3> <a href="https://ynewsdaily.com/weekly-cyber-security-news-letter-2/">Weekly Cyber Security News Letter – Data Breaches,...</a> </h3> <span class="date"><time class="entry-date published" datetime="2024-07-21T15:15:08+00:00">July 21, 2024</time></span> </div> </div> </div> <div class="item-related swiper-slide"> <div class="item-related-inner"> <a class="related-thumb penci-image-holder penci-lazy" data-bgset="https://ynewsdaily.com/wp-content/uploads/2024/10/5889-CrowdStrike-2520Issued-2520Fix-2520For-2520Error-2520Causing-2520update-585x390.webp" href="https://ynewsdaily.com/crowdstrike-releases-fix-for-updates/" title="CrowdStrike Releases Fix for Updates Causing Windows to Enter BSOD Loop"> </a> <div class="related-content"> <h3> <a href="https://ynewsdaily.com/crowdstrike-releases-fix-for-updates/">CrowdStrike Releases Fix for Updates Causing Windows to...</a> </h3> <span class="date"><time class="entry-date published" datetime="2024-07-19T16:10:54+00:00">July 19, 2024</time></span> </div> </div> </div> <div class="item-related swiper-slide"> <div class="item-related-inner"> <a class="related-thumb penci-image-holder penci-lazy" data-bgset="https://ynewsdaily.com/wp-content/uploads/2024/09/5708-Cisco-2520SSM-2520Password-2520Change-2520Vulnerability-585x390.webp" href="https://ynewsdaily.com/cisco-smart-software-manager-flaw/" title="Cisco Smart Software Manager Flaw Let Attackers Change Any User Passwords"> </a> <div class="related-content"> <h3> <a href="https://ynewsdaily.com/cisco-smart-software-manager-flaw/">Cisco Smart Software Manager Flaw Let Attackers Change...</a> </h3> <span class="date"><time class="entry-date published" datetime="2024-07-18T03:45:38+00:00">July 18, 2024</time></span> </div> </div> </div> <div class="item-related swiper-slide"> <div class="item-related-inner"> <a class="related-thumb penci-image-holder penci-lazy" data-bgset="https://ynewsdaily.com/wp-content/uploads/2024/09/5696-Killer-2520Ultra-2520Malware-2520Attacking-2520Popular-2520EDR-2520tools-585x390.webp" href="https://ynewsdaily.com/killer-ultra-malware-attacking-edr/" title="Killer Ultra Malware Attacking EDR Tools From Symantec, Microsoft, & SentinelOne"> </a> <div class="related-content"> <h3> <a href="https://ynewsdaily.com/killer-ultra-malware-attacking-edr/">Killer Ultra Malware Attacking EDR Tools From Symantec,...</a> </h3> <span class="date"><time class="entry-date published" datetime="2024-07-17T08:44:48+00:00">July 17, 2024</time></span> </div> </div> </div> </div><div class="penci-owl-dots"></div></div></div> <div class="post-comments no-comment-yet penci-comments-hide-0" id="comments"> </div> <!-- end comments div --> </article> </div> </div> <div id="sidebar" class="penci-sidebar-right penci-sidebar-content style-5 pcalign-left pciconp-right pcicon-right penci-sticky-sidebar"> <div class="theiaStickySidebar"> <aside id="penci_search_box_widget-2" class="widget penci_search_box_widget"><h3 class="widget-title penci-border-arrow"><span class="inner-arrow">Search</span></h3> <div class="pcwg-widget pc-widget-searchform penci-builder-element pc-search-form search-style-default"> <form role="search" method="get" class="pc-searchform" action="https://ynewsdaily.com/"> <div class="pc-searchform-inner"> <input type="text" class="search-input" placeholder="Type and hit enter..." name="s"/> <i class="penciicon-magnifiying-glass"></i> <button type="submit" class="searchsubmit">Search</button> </div> </form> </div> </aside><aside id="penci_latest_news_widget-2" class="widget penci_latest_news_widget"><h3 class="widget-title penci-border-arrow"><span class="inner-arrow">Recent Visitor Visit</span></h3> <ul id="penci-latestwg-5845" class="side-newsfeed"> <li class="penci-feed"> <div class="side-item"> <div class="side-image"> <a class="penci-image-holder penci-lazy small-fix-size" rel="bookmark" data-bgset="https://ynewsdaily.com/wp-content/uploads/2024/02/301-cybesot-263x175.png" href="https://ynewsdaily.com/cyber-security-software-engineering-which/" title="Cyber-security Vs. Software Engineering: Which Career Path Is Better for You?    "></a> </div> <div class="side-item-text"> <h4 class="side-title-post"> <a href="https://ynewsdaily.com/cyber-security-software-engineering-which/" rel="bookmark" title="Cyber-security Vs. Software Engineering: Which Career Path Is Better for You?    "> Cyber-security Vs. Software Engineering: Which Career Path Is Better for You?     </a> </h4> </div> </div> </li> <li class="penci-feed"> <div class="side-item"> <div class="side-image"> <a class="penci-image-holder penci-lazy small-fix-size" rel="bookmark" data-bgset="https://ynewsdaily.com/wp-content/uploads/2024/02/133-Play-2520Ransomware-2520Attacking-2520Private-2520and-2520Public-2520Organizations-2520Acr65db99305818f-263x175." href="https://ynewsdaily.com/play-ransomware-attacking-private-and/" title="Play Ransomware Attacking Private and Public Organizations Across Industries"></a> </div> <div class="side-item-text"> <h4 class="side-title-post"> <a href="https://ynewsdaily.com/play-ransomware-attacking-private-and/" rel="bookmark" title="Play Ransomware Attacking Private and Public Organizations Across Industries"> Play Ransomware Attacking Private and Public Organizations Across Industries </a> </h4> </div> </div> </li> <li class="penci-feed"> <div class="side-item"> <div class="side-image"> <a class="penci-image-holder penci-lazy small-fix-size" rel="bookmark" data-bgset="https://ynewsdaily.com/wp-content/uploads/2024/07/5217-Best-2520NaaS-2520for-2520MSSP-2520Providers-2520-263x175.webp" href="https://ynewsdaily.com/best-secure-network-service-naas/" title="10 Best Secure Network as a Service (NaaS) for MSSP Providers – 2024"></a> </div> <div class="side-item-text"> <h4 class="side-title-post"> <a href="https://ynewsdaily.com/best-secure-network-service-naas/" rel="bookmark" title="10 Best Secure Network as a Service (NaaS) for MSSP Providers – 2024"> 10 Best Secure Network as a Service (NaaS) for MSSP Providers – 2024 </a> </h4> </div> </div> </li> <li class="penci-feed"> <div class="side-item"> <div class="side-image"> <a class="penci-image-holder penci-lazy small-fix-size" rel="bookmark" data-bgset="https://ynewsdaily.com/wp-content/uploads/2024/02/1263-Doctor-2520is-2520the-2520Mastermind-2520of-2520Ransomware-2520Design-2520-281-29-263x175.png" href="https://ynewsdaily.com/doj-doctor-the-mastermind-thanos/" title="DOJ: Doctor is the Mastermind of Thanos Ransomware Design & Other Malicious Tools"></a> </div> <div class="side-item-text"> <h4 class="side-title-post"> <a href="https://ynewsdaily.com/doj-doctor-the-mastermind-thanos/" rel="bookmark" title="DOJ: Doctor is the Mastermind of Thanos Ransomware Design & Other Malicious Tools"> DOJ: Doctor is the Mastermind of Thanos Ransomware Design & Other Malicious Tools </a> </h4> </div> </div> </li> <li class="penci-feed"> <div class="side-item"> <div class="side-image"> <a class="penci-image-holder penci-lazy small-fix-size" rel="bookmark" data-bgset="https://ynewsdaily.com/wp-content/uploads/2024/07/2733-Best-2520-281-29-263x175.webp" href="https://ynewsdaily.com/best-intrusion-detection-prevention-systems/" title="25 Best Intrusion Detection & Prevention Systems (IDS &IPS) In 2024"></a> </div> <div class="side-item-text"> <h4 class="side-title-post"> <a href="https://ynewsdaily.com/best-intrusion-detection-prevention-systems/" rel="bookmark" title="25 Best Intrusion Detection & Prevention Systems (IDS &IPS) In 2024"> 25 Best Intrusion Detection & Prevention Systems (IDS &IPS) In 2024 </a> </h4> </div> </div> </li> <li class="penci-feed"> <div class="side-item"> <div class="side-image"> <a class="penci-image-holder penci-lazy small-fix-size" rel="bookmark" data-bgset="https://ynewsdaily.com/wp-content/uploads/2024/02/457-Hackers-2520Exploit-2520Windows-2520Search-2520Feature-2520to-2520Execute-2520Malware-252065dce92ca7055-263x175." href="https://ynewsdaily.com/hackers-exploit-windows-search-feature/" title="Hackers Exploit Windows Search Feature to Execute Malware on Infected Systems"></a> </div> <div class="side-item-text"> <h4 class="side-title-post"> <a href="https://ynewsdaily.com/hackers-exploit-windows-search-feature/" rel="bookmark" title="Hackers Exploit Windows Search Feature to Execute Malware on Infected Systems"> Hackers Exploit Windows Search Feature to Execute Malware on Infected Systems </a> </h4> </div> </div> </li> </ul> </aside> </div> </div> </div> </div> </div> <div class="clear-footer"></div> <footer id="footer-section" class="penci-footer-social-media penci-lazy footer-social-remove-circle " itemscope itemtype="https://schema.org/WPFooter"> <div class="container"> <div class="footer-logo-copyright footer-not-logo footer-not-gotop"> <div class="footer-menu-wrap" role="navigation" itemscope itemtype="https://schema.org/SiteNavigationElement"> <div class="footer-menu"><ul> <li class="page_item page-item-26"><a href="https://ynewsdaily.com/about-us/">About Us</a></li> <li class="page_item page-item-27"><a href="https://ynewsdaily.com/contact-us/">Contact Us</a></li> <li class="page_item page-item-29"><a href="https://ynewsdaily.com/cookies-policy/">Cookies Policy</a></li> <li class="page_item page-item-30"><a href="https://ynewsdaily.com/disclaimer/">Disclaimer</a></li> <li class="page_item page-item-28"><a href="https://ynewsdaily.com/dmca/">DMCA</a></li> <li class="page_item page-item-31"><a href="https://ynewsdaily.com/privacy-policy/">Privacy Policy</a></li> <li class="page_item page-item-32"><a href="https://ynewsdaily.com/terms-and-conditions/">Terms and Conditions</a></li> </ul></div> </div> <div id="footer-copyright"> <p>@2024 - ynewsdaily.com</p> </div> </div> </div> </footer> </div><!-- End .wrapper-boxed --> <div class="penci-go-to-top-floating"><i class="penciicon-up-chevron"></i></div> <a href="#" id="close-sidebar-nav" class="header-2"><i class="penci-faicon fa fa-close" ></i></a> <nav id="sidebar-nav" class="header-2" role="navigation" itemscope itemtype="https://schema.org/SiteNavigationElement"> <div id="sidebar-nav-logo"> <a href="https://ynewsdaily.com/"><img class="penci-lazy sidebar-nav-logo penci-limg" data-darklogo="https://ynewsdaily.com/wp-content/uploads/2024/03/ynewsdaily.png" src="data:image/svg+xml,%3Csvg%20xmlns='http://www.w3.org/2000/svg'%20viewBox='0%200%20250%2079'%3E%3C/svg%3E" width="250" height="79" data-src="https://ynewsdaily.com/wp-content/uploads/2024/03/ynewsdaily.png" data-lightlogo="https://ynewsdaily.com/wp-content/uploads/2024/03/ynewsdaily.png" alt="ynewsdaily"/></a> </div> <div class="header-social sidebar-nav-social"> <div class="inner-header-social"> <a href="https://www.facebook.com/PenciDesign" aria-label="Facebook" rel="noreferrer" target="_blank"><i class="penci-faicon fa fa-facebook" ></i></a> <a href="https://twitter.com/PenciDesign" aria-label="Twitter" rel="noreferrer" target="_blank"><i class="penci-faicon penciicon-x-twitter" ></i></a> <a href="#" aria-label="Instagram" rel="noreferrer" target="_blank"><i class="penci-faicon fa fa-instagram" ></i></a> <a href="#" aria-label="Youtube" rel="noreferrer" target="_blank"><i class="penci-faicon fa fa-youtube-play" ></i></a> <a href="#" aria-label="Snapchat" rel="noreferrer" target="_blank"><i class="penci-faicon fa fa-snapchat" ></i></a> <a href="#" aria-label="Reddit" rel="noreferrer" target="_blank"><i class="penci-faicon fa fa-reddit-alien" ></i></a> <a href="#" aria-label="Rss" rel="noreferrer" target="_blank"><i class="penci-faicon fa fa-rss" ></i></a> </div> </div> <ul id="menu-menu-atas-1" class="menu"><li class="menu-item menu-item-type-taxonomy menu-item-object-category current-post-ancestor current-menu-parent current-post-parent ajax-mega-menu menu-item-1730"><a href="https://ynewsdaily.com/category/cyber-security-news/">Cyber Security News</a></li> <li class="menu-item menu-item-type-taxonomy menu-item-object-category ajax-mega-menu menu-item-1731"><a href="https://ynewsdaily.com/category/cyber-attack/">Cyber Attack</a></li> <li class="menu-item menu-item-type-taxonomy menu-item-object-category ajax-mega-menu menu-item-1732"><a href="https://ynewsdaily.com/category/cyber-security/">Cyber Security</a></li> <li class="menu-item menu-item-type-taxonomy menu-item-object-category ajax-mega-menu menu-item-1733"><a href="https://ynewsdaily.com/category/android/">Android</a></li> <li class="menu-item menu-item-type-taxonomy menu-item-object-category ajax-mega-menu menu-item-1734"><a href="https://ynewsdaily.com/category/malware/">Malware</a></li> <li class="menu-item menu-item-type-taxonomy menu-item-object-category ajax-mega-menu menu-item-1735"><a href="https://ynewsdaily.com/category/technology/">Technology</a></li> </ul> </nav> <!-- Histats.com START (aync)--> <script type="text/javascript">var _Hasync= _Hasync|| []; _Hasync.push(['Histats.start', '1,3932030,4,0,0,0,00010000']); _Hasync.push(['Histats.fasi', '1']); _Hasync.push(['Histats.track_hits', '']); (function() { var hs = document.createElement('script'); hs.type = 'text/javascript'; hs.async = true; hs.src = ('//s10.histats.com/js15_as.js'); (document.getElementsByTagName('head')[0] || document.getElementsByTagName('body')[0]).appendChild(hs); })();</script> <noscript><a href="/" target="_blank"><img src="//sstatic1.histats.com/0.gif?3932030&101" alt="web site counter" border="0"></a></noscript> <!-- Histats.com END --> <!--copyscapeskip--> <aside id="moove_gdpr_cookie_info_bar" class="moove-gdpr-info-bar-hidden moove-gdpr-align-center moove-gdpr-dark-scheme gdpr_infobar_postion_bottom" aria-label="GDPR Cookie Banner" style="display: none;"> <div class="moove-gdpr-info-bar-container"> <div class="moove-gdpr-info-bar-content"> <div class="moove-gdpr-cookie-notice"> <p>We are using cookies to give you the best experience on our website.</p><p>You can find out more about which cookies we are using or switch them off in <button data-href="#moove_gdpr_cookie_modal" class="change-settings-button">settings</button>.</p></div> <!-- .moove-gdpr-cookie-notice --> <div class="moove-gdpr-button-holder"> <button class="mgbutton moove-gdpr-infobar-allow-all gdpr-fbo-0" aria-label="Accept" >Accept</button> </div> <!-- .button-container --> </div> <!-- moove-gdpr-info-bar-content --> </div> <!-- moove-gdpr-info-bar-container --> </aside> <!-- #moove_gdpr_cookie_info_bar --> <!--/copyscapeskip--> <script id="penci-dm-checking" type="text/javascript">function penci_dmgetcookie(cname) { let name = cname + "="; let decodedCookie = decodeURIComponent(document.cookie); let ca = decodedCookie.split(';'); for (let i = 0; i < ca.length; i++) { let c = ca[i]; while (c.charAt(0) == ' ') { c = c.substring(1); } if (c.indexOf(name) == 0) { return c.substring(name.length, c.length); } } return ""; } if ( penci_dark.darkmode ) { document.cookie = "penci_mode=dark; path=/"; } let alllogos = document.querySelectorAll('.penci-limg'), body = document.querySelector('body'), autoby = penci_dark.auto_by, darktheme = penci_dark.darktheme, hr = (new Date()).getHours(), cv = penci_dmgetcookie('penci_mode'), cc, lc = 'pclight-mode', dc = 'pcdark-mode'; if (darktheme !== '') { cc = 'pcdm-enable'; } if (autoby === 'os' && !darktheme && window.matchMedia && window.matchMedia('(prefers-color-scheme: dark)').matches) { body.classList.remove('pcdm-enable', 'pclight-mode') body.classList.add(dc, 'pcdm-enable'); document.cookie = "penci_mode=dark; path=/"; alllogos.forEach((alllogo) => { var lgimg = alllogo.getAttribute('data-darklogo'); if (lgimg !== null) { alllogo.src = lgimg; alllogo.setAttribute('data-src', lgimg); } }); } else if (autoby === 'os' && window.matchMedia && window.matchMedia('(prefers-color-scheme: light)').matches) { body.classList.remove('pcdm-enable', 'pcdark-mode') body.classList.add(lc, cc); document.cookie = "penci_mode=light; path=/"; alllogos.forEach((alllogo) => { var lgimg = alllogo.getAttribute('data-lightlogo'); if (lgimg !== null) { alllogo.src = lgimg; alllogo.setAttribute('data-src', lgimg); } }); } if ((autoby === 'time' && hr > 18) || cv === 'dark') { body.classList.remove('pcdm-enable', 'pclight-mode') body.classList.add(dc, 'pcdm-enable'); document.cookie = "penci_mode=dark; path=/"; alllogos.forEach((alllogo) => { var lgimg = alllogo.getAttribute('data-darklogo'); if (lgimg !== null) { alllogo.src = lgimg; alllogo.setAttribute('data-src', lgimg); } }); } else if (autoby === 'time' || cv === 'light') { body.classList.remove('pcdm-enable', 'pcdark-mode') body.classList.add(lc, cc); document.cookie = "penci_mode=light; path=/"; alllogos.forEach((alllogo) => { var lgimg = alllogo.getAttribute('data-lightlogo'); if (lgimg !== null) { alllogo.src = lgimg; alllogo.setAttribute('data-src', lgimg); } }); } </script><script type="text/javascript" id="image-sizes-js-extra"> /* <![CDATA[ */ var IMAGE_SIZES = {"version":"3.4.5.5","disables":["thumbnail","medium","medium_large","large","1536x1536","2048x2048","penci-single-full","penci-slider-full-thumb","penci-full-thumb","penci-slider-thumb","penci-magazine-slider","penci-thumb","penci-masonry-thumb","penci-thumb-square","penci-thumb-vertical","penci-thumb-small","crawlomatic_preview_image","arpw-thumbnail"]}; /* ]]> */ </script> <script src="https://ynewsdaily.com/wp-content/cache/minify/c7551.js"></script> <script type="text/javascript" id="main-scripts-js-extra"> /* <![CDATA[ */ var ajax_var_more = {"url":"https:\/\/ynewsdaily.com\/wp-admin\/admin-ajax.php","nonce":"fcf63bf954","errorPass":"<p class=\"message message-error\">Password does not match the confirm password<\/p>","login":"Email Address","password":"Password","headerstyle":"default","reading_bar_pos":"footer","reading_bar_h":"5","carousel_e":"swing","slider_e":"creative","fcarousel_e":"swing","fslider_e":"creative","vfloat":"","vfloatp":"bottom-right"}; /* ]]> */ </script> <script src="https://ynewsdaily.com/wp-content/cache/minify/7e152.js"></script> <script type="text/javascript" id="penci_ajax_like_post-js-extra"> /* <![CDATA[ */ var ajax_var = {"url":"https:\/\/ynewsdaily.com\/wp-admin\/admin-ajax.php","nonce":"fcf63bf954","errorPass":"<p class=\"message message-error\">Password does not match the confirm password<\/p>","login":"Email Address","password":"Password","headerstyle":"default","reading_bar_pos":"footer","reading_bar_h":"5","carousel_e":"swing","slider_e":"creative","fcarousel_e":"swing","fslider_e":"creative","vfloat":"","vfloatp":"bottom-right"}; /* ]]> */ </script> <script src="https://ynewsdaily.com/wp-content/cache/minify/c3f91.js"></script> <script type="text/javascript" id="moove_gdpr_frontend-js-extra"> /* <![CDATA[ */ var moove_frontend_gdpr_scripts = {"ajaxurl":"https:\/\/ynewsdaily.com\/wp-admin\/admin-ajax.php","post_id":"4605","plugin_dir":"https:\/\/ynewsdaily.com\/wp-content\/plugins\/gdpr-cookie-compliance","show_icons":"all","is_page":"","ajax_cookie_removal":"false","strict_init":"1","enabled_default":{"third_party":0,"advanced":0},"geo_location":"false","force_reload":"false","is_single":"1","hide_save_btn":"false","current_user":"0","cookie_expiration":"365","script_delay":"2000","close_btn_action":"1","close_btn_rdr":"","scripts_defined":"{\"cache\":true,\"header\":\"\",\"body\":\"\",\"footer\":\"\",\"thirdparty\":{\"header\":\"\",\"body\":\"\",\"footer\":\"\"},\"advanced\":{\"header\":\"\",\"body\":\"\",\"footer\":\"\"}}","gdpr_scor":"true","wp_lang":""}; /* ]]> */ </script> <script src="https://ynewsdaily.com/wp-content/cache/minify/19aa0.js"></script> <script type="text/javascript" id="moove_gdpr_frontend-js-after"> /* <![CDATA[ */ var gdpr_consent__strict = "false" var gdpr_consent__thirdparty = "false" var gdpr_consent__advanced = "false" var gdpr_consent__cookies = "" /* ]]> */ </script> <script type="text/javascript" id="penci_widgets_ajax-js-extra"> /* <![CDATA[ */ var penci_widgets_ajax = {"url":"https:\/\/ynewsdaily.com\/wp-admin\/admin-ajax.php","nonce":"6ed67fb59e"}; /* ]]> */ </script> <script src="https://ynewsdaily.com/wp-content/cache/minify/c6d92.js"></script> <!--copyscapeskip--> <!-- V1 --> <div id="moove_gdpr_cookie_modal" class="gdpr_lightbox-hide" role="complementary" aria-label="GDPR Settings Screen"> <div class="moove-gdpr-modal-content moove-clearfix logo-position-left moove_gdpr_modal_theme_v1"> <button class="moove-gdpr-modal-close" aria-label="Close GDPR Cookie Settings"> <span class="gdpr-sr-only">Close GDPR Cookie Settings</span> <span class="gdpr-icon moovegdpr-arrow-close"></span> </button> <div class="moove-gdpr-modal-left-content"> <div class="moove-gdpr-company-logo-holder"> <img src="https://ynewsdaily.com/wp-content/plugins/gdpr-cookie-compliance/dist/images/gdpr-logo.png" alt="ynewsdaily" width="350" height="233" class="img-responsive" /> </div> <!-- .moove-gdpr-company-logo-holder --> <ul id="moove-gdpr-menu"> <li class="menu-item-on menu-item-privacy_overview menu-item-selected"> <button data-href="#privacy_overview" class="moove-gdpr-tab-nav" aria-label="Privacy Overview"> <span class="gdpr-nav-tab-title">Privacy Overview</span> </button> </li> <li class="menu-item-strict-necessary-cookies menu-item-off"> <button data-href="#strict-necessary-cookies" class="moove-gdpr-tab-nav" aria-label="Strictly Necessary Cookies"> <span class="gdpr-nav-tab-title">Strictly Necessary Cookies</span> </button> </li> </ul> <div class="moove-gdpr-branding-cnt"> <a href="https://wordpress.org/plugins/gdpr-cookie-compliance/" rel="noopener noreferrer" target="_blank" class='moove-gdpr-branding'>Powered by  <span>GDPR Cookie Compliance</span></a> </div> <!-- .moove-gdpr-branding --> </div> <!-- .moove-gdpr-modal-left-content --> <div class="moove-gdpr-modal-right-content"> <div class="moove-gdpr-modal-title"> </div> <!-- .moove-gdpr-modal-ritle --> <div class="main-modal-content"> <div class="moove-gdpr-tab-content"> <div id="privacy_overview" class="moove-gdpr-tab-main"> <span class="tab-title">Privacy Overview</span> <div class="moove-gdpr-tab-main-content"> <p>This website uses cookies so that we can provide you with the best user experience possible. Cookie information is stored in your browser and performs functions such as recognising you when you return to our website and helping our team to understand which sections of the website you find most interesting and useful.</p> </div> <!-- .moove-gdpr-tab-main-content --> </div> <!-- #privacy_overview --> <div id="strict-necessary-cookies" class="moove-gdpr-tab-main" style="display:none"> <span class="tab-title">Strictly Necessary Cookies</span> <div class="moove-gdpr-tab-main-content"> <p>Strictly Necessary Cookie should be enabled at all times so that we can save your preferences for cookie settings.</p> <div class="moove-gdpr-status-bar "> <div class="gdpr-cc-form-wrap"> <div class="gdpr-cc-form-fieldset"> <label class="cookie-switch" for="moove_gdpr_strict_cookies"> <span class="gdpr-sr-only">Enable or Disable Cookies</span> <input type="checkbox" aria-label="Strictly Necessary Cookies" value="check" name="moove_gdpr_strict_cookies" id="moove_gdpr_strict_cookies"> <span class="cookie-slider cookie-round" data-text-enable="Enabled" data-text-disabled="Disabled"></span> </label> </div> <!-- .gdpr-cc-form-fieldset --> </div> <!-- .gdpr-cc-form-wrap --> </div> <!-- .moove-gdpr-status-bar --> <div class="moove-gdpr-strict-warning-message" style="margin-top: 10px;"> <p>If you disable this cookie, we will not be able to save your preferences. This means that every time you visit this website you will need to enable or disable cookies again.</p> </div> <!-- .moove-gdpr-tab-main-content --> </div> <!-- .moove-gdpr-tab-main-content --> </div> <!-- #strict-necesarry-cookies --> </div> <!-- .moove-gdpr-tab-content --> </div> <!-- .main-modal-content --> <div class="moove-gdpr-modal-footer-content"> <div class="moove-gdpr-button-holder"> <button class="mgbutton moove-gdpr-modal-allow-all button-visible" aria-label="Enable All">Enable All</button> <button class="mgbutton moove-gdpr-modal-save-settings button-visible" aria-label="Save Settings">Save Settings</button> </div> <!-- .moove-gdpr-button-holder --> </div> <!-- .moove-gdpr-modal-footer-content --> </div> <!-- .moove-gdpr-modal-right-content --> <div class="moove-clearfix"></div> </div> <!-- .moove-gdpr-modal-content --> </div> <!-- #moove_gdpr_cookie_modal --> <!--/copyscapeskip--> <script async src="https://t.seedtag.com/t/2354-1658-01.js"></script> </body> </html> <!-- Performance optimized by W3 Total Cache. Learn more: https://www.boldgrid.com/w3-total-cache/ Object Caching 189/436 objects using Disk Page Caching using Disk: Enhanced Content Delivery Network via N/A Minified using Disk Database Caching using Disk Served from: ynewsdaily.com @ 2024-12-23 18:21:15 by W3 Total Cache -->