Blog

wp2shell : RCE pré-authentifiée dans le cœur de WordPress

Le 17 juillet 2026, WordPress a corrigé en urgence deux vulnérabilités permettant à un attaquant non […]

Du one-liner au toolkit complet : comment un attaquant maintient son accès sur WordPress

Contexte de la découverte Au cours d’une intervention de réponse a incident sur un site […]

Seckhmet – Rapport Hebdomadaire des Vulnérabilités WordPress (06/07/2026 au 13/07/2026)

La semaine du 06/07/2026 au 13/07/2026, 177 vulnérabilités WordPress ont été publiées dans la base […]

Critical vulnerability in the WordPress Sneeit framework: unauthenticated code execution (CVE-2025-6389) actively exploited

A critical Remote Code Execution (RCE) vulnerability affecting the Sneeit framework — a core plugin […]

The illusion of “all-in-one” ASM tools: why specialization makes the difference

A tempting… but misleading promise In recent years, Attack Surface Management (ASM) has become a […]

WordPressImageOptimizer: An Image Compression Plugin… and a Malicious Redirection Tool

A new malicious plugin disguised as an image optimization tool is currently targeting WordPress sites. […]

Un besoin ? Un projet ? Une démo ? Contactez-nous