Attackers are actively exploiting a vulnerability in the Gravity SMTP WordPress plugin that exposes API keys, OAuth tokens, and detailed system configuration data to anyone who sends a single unauthenticated HTTP request. Wordfence, the WordPress security firm owned by Defiant, says it has blocked m
โก
Key Insights
10 editorial insights.
AiFeed24 Teamยทโฑ 1 min readยทNews
Deep Analysis
Multi-Source Intelligence
Found this useful? Share it!
Related Stories

Microsoft finds USB worm that steals cryptocurrency through clipboard hijacking and Tor
๐ฐ
Weekly Cloud Security Update: Key Highlights from June 19, 2026
๐ฐ
The Gentlemen RaaS Uses GentleKiller EDR Framework Targeting 400 Security Processes
๐ฐ
