In Other News: Ransomware Developer Sentenced, Plugin4Shell AI Attack, Critical SAP Flaw
Reported exploitedSAPBlack AxenpmOur summary
This week’s security developments include a nearly 13-year Swiss prison sentence for the developer linked to Lockergoga, MegaCortex, and Nefilim ransomware. Defiant reported active exploitation of a file-upload vulnerability in the WooCommerce Wholesale Lead Capture plugin, which can enable PHP webshell uploads; users should update to version 2.0.3.2. SAP customers should urgently patch CVE-2026-44756, an unauthenticated memory-corruption issue affecting Extended Passport processing in products including S/4HANA, NetWeaver, and Business Suite. TP-Link also fixed Tapo C200 flaws CVE-2026-15315 and CVE-2026-15316 in firmware V5_1.4.6, while Plugin4Shell exposed silent plugin takeover risks for AI coding agents.
SecurityWeek publishes this story on its own site; we link to it rather than reprint it.
Worried this affects your company?
Discuss a security assessment of your internet-facing systems. Scope agreed before testing.