{"type":"rich","version":"1.0","provider_name":"Transistor","provider_url":"https://transistor.fm","author_name":"Wordfence Security News","title":"OMGF Pro Exploited, Oracle Payments Attack & AI Repo Backdoor | Wordfence Security News #14","html":"<iframe width=\"100%\" height=\"180\" frameborder=\"no\" scrolling=\"no\" seamless src=\"https://share.transistor.fm/e/3bea3b6c\"></iframe>","width":"100%","height":180,"duration":638,"description":"OMGF Pro Exploited, Oracle Payments Attack & AI Repo Backdoor | Wordfence Security News #14\nThis week in Wordfence Security News:OMGF Pro unauthenticated file upload exploited during disclosure: 60,000+ blocked attempts across nearly 8,000 sites, fixed in 5.2.7Oracle E-Business Suite Payments auth bypass exploited in the wild despite a May patch; Shadowserver tracked around 950 exposed EBS instancesPTC Windchill and FlexPLM unauthenticated RCE added to CISA KEV on June 25 after attackers deployed JSP web shellsBlueHammer, the deliberately leaked Microsoft Defender flaw, now flagged by CISA as used in ransomware attacksSimpleHelp OIDC signature flaw grants fake technician accounts, dropping the Taskweaver loader and Djinn info stealerMozilla 0DIN demo shows a clean GitHub repo tricking Claude Code into fetching a DNS TXT payload and opening a shellTimestamps:\n0:00 Introduction0:48 Active Exploitation of OMGF Pro Unauthenticated Arbitrary File Upload3:42 Oracle E-Business Suite Payments Exploited in the Wild5:21 PTC Windchill / FlexPLM RCE Added to CISA KEV6:21 BlueHammer Microsoft Defender Flaw Used in Ransomware Attacks6:57 SimpleHelp Auth Bypass Exploited to Deploy Djinn Stealer8:46 Clean GitHub Repo Tricks AI Coding Agents Into Running Malware\nStory Links:Active Exploitation of OMGF Pro Unauthenticated Arbitrary File Upload During Responsible Disclosure Window.Oracle E-Business Suite Payments Exploited in the WildPTC Windchill / FlexPLM RCE Added to CISA KEVBlueHammer Microsoft Defender Vulnerability Exploited in Ransomware AttacksSimpleHelp Auth Bypass Exploited to Deploy Djinn StealerClean GitHub Repo Tricks AI Coding Agents Into Running Malware / Mozilla 0DIN Claude Code Demo\nStay informed and secure: get the latest Wordfence Security News on the Wordfence blog or subscribe to the WordPress Security Newsletter.","thumbnail_url":"https://img.transistorcdn.com/tNZ1BCLBa7hdisGHRggcQKe1fS0BRjNwLU5euMPMXfE/rs:fill:0:0:1/w:400/h:400/q:60/mb:500000/aHR0cHM6Ly9pbWct/dXBsb2FkLXByb2R1/Y3Rpb24udHJhbnNp/c3Rvci5mbS8yNjZm/M2NiNzczNWQ4MDdh/OTYyMTg5MDQ5ODk3/ODI5ZC5wbmc.webp","thumbnail_width":300,"thumbnail_height":300}