Critical vulnerabilities in TheGem WordPress theme, affecting over 82,000 installations, could lead to remote code execution. Two connected flaws allow authenticated users to upload malicious files and modify settings. Users are urged to update to version 5.10.3.1, implement web application firewalls, and monitor site activity to mitigate risks. This highlights the importance of regular software updates and robust security measures.

Protecting Against Info-Stealers – A Practical Resource
Infostealer malware attacks, designed to extract sensitive information from systems, accounted for nearly a quarter of all cyber incidents in 2024. Cybersecurity reports show a