S3 Ep71: VM escapes, PHP holes, WordPress plugin woes, and scary scams

Published: Feb. 24, 2022, 4:31 p.m.

VM escapes could put your host servers at risk. PHP fixes an input validation bug in input validation code. A WordPress plugin maker shows you how to write a decent security report. And French scammers remind us that sextortion is sadly still a thing.\n\nhttps://nakedsecurity.sophos.com/vmware-fixes-holes\nhttps://nakedsecurity.sophos.com/irony-alert-php-fixes-security-flaw\nhttps://nakedsecurity.sophos.com/wordpress-backup-plugin-maker-updraft-says-you-should-update\nhttps://nakedsecurity.sophos.com/french-cybercriminals-using-sextortion-scams\n\nWith Paul Ducklin and Doug Aamoth.\n\nOriginal music by Edith Mudge (https://www.edithmudge.com)\n\nGot questions/suggestions/stories to share?\nEmail: tips@sophos.com\nTwitter: NakedSecurity (https://twitter.com/nakedsecurity)\nInstagram: NakedSecurity (https://instagram.com/nakedsecurity)