{"id":3048,"date":"2018-06-13T20:55:29","date_gmt":"2018-06-13T20:55:29","guid":{"rendered":"https:\/\/kasperskycontenthub.com\/threatpost\/?p=132804"},"modified":"2018-06-13T20:55:29","modified_gmt":"2018-06-13T20:55:29","slug":"two-bugs-in-wordpress-tooltipy-plugin-patched","status":"publish","type":"post","link":"https:\/\/www.threatshub.org\/blog\/two-bugs-in-wordpress-tooltipy-plugin-patched\/","title":{"rendered":"Two Bugs in WordPress Tooltipy Plugin Patched"},"content":{"rendered":"<div class=\"media_block\"><\/div>\n<div><img decoding=\"async\" src=\"https:\/\/media.kasperskycontenthub.com\/wp-content\/uploads\/sites\/31\/2014\/02\/07023454\/wordpress_vuln.jpg\" class=\"ff-og-image-inserted\"\/><\/div>\n<p>WordPress has issued fixes for two bugs rated \u201cmedium\u201d in its tooltips plugin, including one that can allow bad actors to do anything an administrative user would be able to do on a WordPress site.<\/p>\n<p>The <a href=\"https:\/\/wordpress.org\/plugins\/bluet-keywords-tooltip-generator\/\" target=\"_blank\" rel=\"noopener\">Tooltipy plugin<\/a> allows users to automatically create responsive \u201ctooltip\u201d boxes for technical keywords on webpages \u2013 allowing users to easily understand difficult terms while web surfing.<\/p>\n<p>Both vulnerabilities \u2014 a\u00a0reflected cross-site scripting glitch and a\u00a0cross-site request forgery issue \u2014 have been addressed, according to an <a href=\"https:\/\/advisories.dxw.com\/advisories\/xss-in-tooltipy\/\" target=\"_blank\" rel=\"noopener\">alert<\/a>\u00a0that dxw Advisories posted Tuesday.<\/p>\n<p>The XSS glitch, rated 5.8 on the CVSS rating system, exists in the plugin\u2019s glossary shortcode (also known as [kttg_glossary]).\u00a0To leverage the vulns, a bad actor can create a page containing the shortcode; then add a specially crafted script to the end of the page\u2019s URL.\u00a0If an administrator is sent a link to the page and clicks on it, his or her browser could be hijacked by the person who sent them the link.<\/p>\n<p>From there, the hijacked browser could then be made to do almost anything an admin user can normally do.<\/p>\n<p>The second flaw, a CSRF vulnerability, has a CVSS summary score of 4.3, and exists in Tooltipy\u2019s \u201cKTTG Converter\u201d feature, which\u00a0allows users to import keywords from third-party plugins and add them to their Tooltipy glossary.<\/p>\n<p>CSRF is an attack that tricks a web browser into executing an unwanted action in an application to which a user is logged in.\u00a0This particular bug requires an attacker to convince an admin to follow a link, after which the bad actor can create duplicate posts, according to a second dxw\u00a0<a href=\"https:\/\/advisories.dxw.com\/advisories\/csrf-in-tooltipy\/\" target=\"_blank\" rel=\"noopener\">advisory<\/a>.<\/p>\n<p>In a proof of concept, researchers found that an attacker could trick an administrator by sending them a link to a duplicated site.<\/p>\n<p>More specifically, the bad actors could send a link with a specially crafted HTML code that lists specific pages from the website, which looks like this:<\/p>\n<blockquote>\n<p>&lt;form method=\u201dPOST\u201d action=\u201dhttp:\/\/localhost\/wp-admin\/tools.php?page=my_keywords_settings_importer\u201d&gt; &lt;input type=\u201dtext\u201d name=\u201dgo\u201d value=\u201dtrue\u201d&gt; &lt;input type=\u201dtext\u201d name=\u201dbluet_posttypes_list\u201d value=\u201dpost\u201d&gt; &lt;input type=\u201dsubmit\u201d&gt; &lt;\/form&gt;<\/p>\n<\/blockquote>\n<p>Once the victim user or administrator clicks on the link, each post listed in the crafted code will show as a duplicate of the entire site.<\/p>\n<p>\u201cThe most obvious malicious use of this vulnerability would be to fill up a disk or database quota, which might lead to denial of service or other issues,\u201d the advisory said.<\/p>\n<p>Both bugs were first discovered March 29, with a fix issued on May 21. Users need to upgrade to version 5.1 or later to stay safe, and, according to the advisory, users will \u201csee an alert in browsers without XSS prevention such as Firefox.\u201d Both were discovered by Tom Adams.<\/p>\n<p>Weston Henry, lead security analyst at SiteLock, told Threatpost that social-engineering tactics may be used to take advantage of both bugs.\u00a0\u201cThese vulnerabilities would need some type of social engineering \u2013 it\u2019s a good vector for spear-phishing attacks targeting admins,\u201d he said. \u201cFor bigger sites, it may have more implications, but right now it looks like this vulnerability is not really widespread and could be used for targeted attacks.\u201d<\/p>\n<p>Henry added that uploaders and XSS vulns are common in plugins \u2013 particularly WordPress plugins.\u00a0In fact, he noted that in the fourth quarter of 2017, sites running WordPress with any number of plugins were twice as likely to be infected with malware.<\/p>\n<p>\u201cIt\u2019s hard to generalize, but we\u2019ve seen a lot of arbitrary file uploads and uploaders, and XSS is also very common, which are dangerous because people don\u2019t realize how dangerous they can be,\u201d he said.<\/p>\n<p> READ MORE <a href=\"https:\/\/threatpost.com\/two-bugs-in-wordpress-tooltipy-plugin-patched\/132804\/\">HERE<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>The bugs include a reflected cross-site scripting glitch and a cross-site request forgery vulnerability. READ MORE HERE&#8230;<\/p>\n","protected":false},"author":2,"featured_media":3049,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"colormag_page_layout":"default_layout","footnotes":""},"categories":[3],"tags":[1292,1293,1294,211,18,1295,1296,19,1297,1298],"class_list":["post-3048","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-threatpost","tag-bug","tag-cross-site-scripting","tag-cross-site-request-forgery","tag-featured","tag-hacks","tag-plugin","tag-tooltipy","tag-vulnerabilities","tag-wordpress","tag-xss"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.6 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Two Bugs in WordPress Tooltipy Plugin Patched 2026 | ThreatsHub Cybersecurity News<\/title>\n<meta name=\"description\" content=\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security &amp; Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.threatshub.org\/blog\/two-bugs-in-wordpress-tooltipy-plugin-patched\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Two Bugs in WordPress Tooltipy Plugin Patched 2026 | ThreatsHub Cybersecurity News\" \/>\n<meta property=\"og:description\" content=\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security &amp; Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.threatshub.org\/blog\/two-bugs-in-wordpress-tooltipy-plugin-patched\/\" \/>\n<meta property=\"og:site_name\" content=\"ThreatsHub Cybersecurity News\" \/>\n<meta property=\"article:published_time\" content=\"2018-06-13T20:55:29+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2018\/06\/two-bugs-in-wordpress-tooltipy-plugin-patched.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"680\" \/>\n\t<meta property=\"og:image:height\" content=\"400\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"TH Author\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@threatshub\" \/>\n<meta name=\"twitter:site\" content=\"@threatshub\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"TH Author\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"3 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/two-bugs-in-wordpress-tooltipy-plugin-patched\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/two-bugs-in-wordpress-tooltipy-plugin-patched\\\/\"},\"author\":{\"name\":\"TH Author\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/person\\\/12e0a8671ff89a863584f193e7062476\"},\"headline\":\"Two Bugs in WordPress Tooltipy Plugin Patched\",\"datePublished\":\"2018-06-13T20:55:29+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/two-bugs-in-wordpress-tooltipy-plugin-patched\\\/\"},\"wordCount\":627,\"publisher\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/two-bugs-in-wordpress-tooltipy-plugin-patched\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2018\\\/06\\\/two-bugs-in-wordpress-tooltipy-plugin-patched.jpg\",\"keywords\":[\"Bug\",\"Cross Site Scripting\",\"Cross-site request forgery\",\"Featured\",\"Hacks\",\"plugin\",\"tooltipy\",\"Vulnerabilities\",\"wordpress\",\"XSS\"],\"articleSection\":[\"Threatpost\"],\"inLanguage\":\"en-US\"},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/two-bugs-in-wordpress-tooltipy-plugin-patched\\\/\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/two-bugs-in-wordpress-tooltipy-plugin-patched\\\/\",\"name\":\"Two Bugs in WordPress Tooltipy Plugin Patched 2026 | ThreatsHub Cybersecurity News\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/two-bugs-in-wordpress-tooltipy-plugin-patched\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/two-bugs-in-wordpress-tooltipy-plugin-patched\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2018\\\/06\\\/two-bugs-in-wordpress-tooltipy-plugin-patched.jpg\",\"datePublished\":\"2018-06-13T20:55:29+00:00\",\"description\":\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/two-bugs-in-wordpress-tooltipy-plugin-patched\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/two-bugs-in-wordpress-tooltipy-plugin-patched\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/two-bugs-in-wordpress-tooltipy-plugin-patched\\\/#primaryimage\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2018\\\/06\\\/two-bugs-in-wordpress-tooltipy-plugin-patched.jpg\",\"contentUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2018\\\/06\\\/two-bugs-in-wordpress-tooltipy-plugin-patched.jpg\",\"width\":680,\"height\":400},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/two-bugs-in-wordpress-tooltipy-plugin-patched\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Bug\",\"item\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/tag\\\/bug\\\/\"},{\"@type\":\"ListItem\",\"position\":3,\"name\":\"Two Bugs in WordPress Tooltipy Plugin Patched\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#website\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\",\"name\":\"ThreatsHub Cybersecurity News\",\"description\":\"%%focuskw%% Threat Intel \u2013 Threat Intel Services \u2013 CyberIntelligence \u2013 Cyber Threat Intelligence - Threat Intelligence Feeds - Threat Intelligence Reports - CyberSecurity Report \u2013 Cyber Security PDF \u2013 Cybersecurity Trends - Cloud Sandbox \u2013- Threat IntelligencePortal \u2013 Incident Response \u2013 Threat Hunting \u2013 IOC - Yara - Security Operations Center \u2013 SecurityOperation Center \u2013 Security SOC \u2013 SOC Services - Advanced Threat - Threat Detection - TargetedAttack \u2013 APT \u2013 Anti-APT \u2013 Advanced Protection \u2013 Cyber Security Services \u2013 Cybersecurity Services -Threat Intelligence Platform\",\"publisher\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\"},\"alternateName\":\"Threatshub.org\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\",\"name\":\"ThreatsHub.org\",\"alternateName\":\"Threatshub.org\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/05\\\/Threatshub_Favicon1.jpg\",\"contentUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/05\\\/Threatshub_Favicon1.jpg\",\"width\":432,\"height\":435,\"caption\":\"ThreatsHub.org\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/x.com\\\/threatshub\"]},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/person\\\/12e0a8671ff89a863584f193e7062476\",\"name\":\"TH Author\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"caption\":\"TH Author\"}}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Two Bugs in WordPress Tooltipy Plugin Patched 2026 | ThreatsHub Cybersecurity News","description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.threatshub.org\/blog\/two-bugs-in-wordpress-tooltipy-plugin-patched\/","og_locale":"en_US","og_type":"article","og_title":"Two Bugs in WordPress Tooltipy Plugin Patched 2026 | ThreatsHub Cybersecurity News","og_description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","og_url":"https:\/\/www.threatshub.org\/blog\/two-bugs-in-wordpress-tooltipy-plugin-patched\/","og_site_name":"ThreatsHub Cybersecurity News","article_published_time":"2018-06-13T20:55:29+00:00","og_image":[{"width":680,"height":400,"url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2018\/06\/two-bugs-in-wordpress-tooltipy-plugin-patched.jpg","type":"image\/jpeg"}],"author":"TH Author","twitter_card":"summary_large_image","twitter_creator":"@threatshub","twitter_site":"@threatshub","twitter_misc":{"Written by":"TH Author","Est. reading time":"3 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.threatshub.org\/blog\/two-bugs-in-wordpress-tooltipy-plugin-patched\/#article","isPartOf":{"@id":"https:\/\/www.threatshub.org\/blog\/two-bugs-in-wordpress-tooltipy-plugin-patched\/"},"author":{"name":"TH Author","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/person\/12e0a8671ff89a863584f193e7062476"},"headline":"Two Bugs in WordPress Tooltipy Plugin Patched","datePublished":"2018-06-13T20:55:29+00:00","mainEntityOfPage":{"@id":"https:\/\/www.threatshub.org\/blog\/two-bugs-in-wordpress-tooltipy-plugin-patched\/"},"wordCount":627,"publisher":{"@id":"https:\/\/www.threatshub.org\/blog\/#organization"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/two-bugs-in-wordpress-tooltipy-plugin-patched\/#primaryimage"},"thumbnailUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2018\/06\/two-bugs-in-wordpress-tooltipy-plugin-patched.jpg","keywords":["Bug","Cross Site Scripting","Cross-site request forgery","Featured","Hacks","plugin","tooltipy","Vulnerabilities","wordpress","XSS"],"articleSection":["Threatpost"],"inLanguage":"en-US"},{"@type":"WebPage","@id":"https:\/\/www.threatshub.org\/blog\/two-bugs-in-wordpress-tooltipy-plugin-patched\/","url":"https:\/\/www.threatshub.org\/blog\/two-bugs-in-wordpress-tooltipy-plugin-patched\/","name":"Two Bugs in WordPress Tooltipy Plugin Patched 2026 | ThreatsHub Cybersecurity News","isPartOf":{"@id":"https:\/\/www.threatshub.org\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.threatshub.org\/blog\/two-bugs-in-wordpress-tooltipy-plugin-patched\/#primaryimage"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/two-bugs-in-wordpress-tooltipy-plugin-patched\/#primaryimage"},"thumbnailUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2018\/06\/two-bugs-in-wordpress-tooltipy-plugin-patched.jpg","datePublished":"2018-06-13T20:55:29+00:00","description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","breadcrumb":{"@id":"https:\/\/www.threatshub.org\/blog\/two-bugs-in-wordpress-tooltipy-plugin-patched\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.threatshub.org\/blog\/two-bugs-in-wordpress-tooltipy-plugin-patched\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.threatshub.org\/blog\/two-bugs-in-wordpress-tooltipy-plugin-patched\/#primaryimage","url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2018\/06\/two-bugs-in-wordpress-tooltipy-plugin-patched.jpg","contentUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2018\/06\/two-bugs-in-wordpress-tooltipy-plugin-patched.jpg","width":680,"height":400},{"@type":"BreadcrumbList","@id":"https:\/\/www.threatshub.org\/blog\/two-bugs-in-wordpress-tooltipy-plugin-patched\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.threatshub.org\/blog\/"},{"@type":"ListItem","position":2,"name":"Bug","item":"https:\/\/www.threatshub.org\/blog\/tag\/bug\/"},{"@type":"ListItem","position":3,"name":"Two Bugs in WordPress Tooltipy Plugin Patched"}]},{"@type":"WebSite","@id":"https:\/\/www.threatshub.org\/blog\/#website","url":"https:\/\/www.threatshub.org\/blog\/","name":"ThreatsHub Cybersecurity News","description":"%%focuskw%% Threat Intel \u2013 Threat Intel Services \u2013 CyberIntelligence \u2013 Cyber Threat Intelligence - Threat Intelligence Feeds - Threat Intelligence Reports - CyberSecurity Report \u2013 Cyber Security PDF \u2013 Cybersecurity Trends - Cloud Sandbox \u2013- Threat IntelligencePortal \u2013 Incident Response \u2013 Threat Hunting \u2013 IOC - Yara - Security Operations Center \u2013 SecurityOperation Center \u2013 Security SOC \u2013 SOC Services - Advanced Threat - Threat Detection - TargetedAttack \u2013 APT \u2013 Anti-APT \u2013 Advanced Protection \u2013 Cyber Security Services \u2013 Cybersecurity Services -Threat Intelligence Platform","publisher":{"@id":"https:\/\/www.threatshub.org\/blog\/#organization"},"alternateName":"Threatshub.org","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.threatshub.org\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/www.threatshub.org\/blog\/#organization","name":"ThreatsHub.org","alternateName":"Threatshub.org","url":"https:\/\/www.threatshub.org\/blog\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/logo\/image\/","url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2025\/05\/Threatshub_Favicon1.jpg","contentUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2025\/05\/Threatshub_Favicon1.jpg","width":432,"height":435,"caption":"ThreatsHub.org"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/x.com\/threatshub"]},{"@type":"Person","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/person\/12e0a8671ff89a863584f193e7062476","name":"TH Author","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","caption":"TH Author"}}]}},"_links":{"self":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts\/3048","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/comments?post=3048"}],"version-history":[{"count":0,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts\/3048\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/media\/3049"}],"wp:attachment":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/media?parent=3048"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/categories?post=3048"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/tags?post=3048"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}