VulnerabilitiesHIGH

Internet Compromised: Experts Unveil Massive Website Vulnerabilities

Featured image for Internet Compromised: Experts Unveil Massive Website Vulnerabilities
PSPortSwigger Blog
John HammondJames Kettlewebsite vulnerabilitiesethical hackingAppSec
🎯

Basically, two security experts found that many websites are at risk of being hacked.

Quick Summary

Security experts John Hammond and James Kettle reveal a shocking truth: millions of websites are vulnerable to attacks. This puts your personal data at risk every time you go online. They're urging website owners to step up security measures to protect users. Don't let your data be an easy target!

What Happened

Imagine waking up to find that your favorite websites are suddenly vulnerable to hackers. This is the reality that ethical hacking? expert John Hammond and renowned security researcher James Kettle are tackling in their latest collaboration. They have uncovered a shocking revelation: tens of millions of websites are compromised due to overlooked security flaws.

During their discussions, Hammond and Kettle highlighted the alarming extent of these vulnerabilities?. They revealed that many websites are built on outdated software or lack essential security measures. This oversight leaves them open to attacks that could expose sensitive user data and disrupt services. The implications of this discovery are enormous, affecting everything from e-commerce to personal blogs.

Why Should You Care

You might think, "This doesn’t affect me," but it does. Every time you visit a website, you trust it with your personal information. If these sites are vulnerable, your passwords, credit card details, and even your identity could be at risk. It’s like leaving your front door unlocked in a neighborhood known for burglaries — you wouldn’t do that, right?

The key takeaway is that cybersecurity is not just a concern for tech companies; it impacts everyone who uses the internet. As more people rely on online services for shopping, banking, and socializing, the stakes have never been higher. Protecting your data starts with understanding the risks that come with the websites you visit.

What's Being Done

In response to these alarming findings, both Hammond and Kettle are advocating for immediate action. They are calling on website owners to prioritize security by updating their software and implementing robust security measures. Here are some steps you can take if you manage a website:

  • Update all software regularly to patch known vulnerabilities?.
  • Implement HTTPS to secure data in transit.
  • Conduct regular security audits to identify and fix weaknesses. Experts are closely monitoring how website owners respond to these findings and whether they will take the necessary steps to protect their users. The hope is that this collaboration will inspire a broader movement towards better security practices across the web.

💡 Tap dotted terms for explanations

🔒 Pro insight: This collaboration underscores the urgent need for widespread adoption of secure coding practices to mitigate vulnerabilities in web applications.

Original article from

PortSwigger Blog

Read Full Article

Related Pings

CRITICALVulnerabilities

Critical RRAS RCE Vulnerabilities Patched in Windows 11

Microsoft released a hotpatch for critical RRAS vulnerabilities in Windows 11. These flaws could allow hackers to execute code remotely. Users should ensure their systems are updated to protect against potential attacks.

Cyber Security News·
HIGHVulnerabilities

FortiGate Firewalls Targeted in High-Severity Exploit Wave

FortiGate firewalls are under attack as hackers exploit critical vulnerabilities. Organizations using these firewalls are at risk of credential theft and network breaches. Immediate patching and credential rotation are essential to mitigate these threats.

Cyber Security News·
HIGHVulnerabilities

March Patch Tuesday Fixes 84 Vulnerabilities Across 15 Products

Microsoft's March Patch Tuesday addressed 84 vulnerabilities across various products. Eight are critical, but none affect Windows directly. Stay updated to protect your systems from potential exploits.

Sophos News·
HIGHVulnerabilities

Microsoft Issues Urgent Hotpatch for Windows 11 RCE Vulnerability

Microsoft has released a critical hotpatch for Windows 11 to fix serious vulnerabilities. Affected devices include Windows 11 Enterprise systems. This update is crucial to prevent remote code execution that could compromise sensitive data.

BleepingComputer·
CRITICALVulnerabilities

Critical Vulnerability in HPE AOS-CX Allows Password Resets

The Flaw Hewlett Packard Enterprise (HPE) has reported a critical-severity vulnerability in its Aruba Networking AOS-CX switches, tracked as CVE-2026-23813. This vulnerability has a CVSS score of 9.8, indicating its severity. It allows attackers to reset administrator passwords remotely and without any authentication, effectively bypassing existing security measures. This flaw affects various models, including the CX 4100i, CX 6000,

SecurityWeek·
HIGHVulnerabilities

Critical LangSmith Vulnerability Exposes Users to Account Takeover

A critical vulnerability in LangSmith could allow hackers to take over user accounts. This flaw affects users who rely on LangSmith for AI data monitoring. Immediate action is required to ensure security and protect sensitive information.

Cyber Security News·