29 août 2024 | International, C4ISR

Critical WPML Plugin Flaw Exposes WordPress Sites to Remote Code Execution

Urgent security update for WPML WordPress plugin: Critical flaw allows remote code execution.

https://thehackernews.com/2024/08/critical-wpml-plugin-flaw-exposes.html

Sur le même sujet

  • Could a commercial drone replace the MQ-9 Reaper? The Air Force is considering it.

    9 avril 2020 | International, Aérospatial

    Could a commercial drone replace the MQ-9 Reaper? The Air Force is considering it.

    By: Valerie Insinna WASHINGTON — The Air Force is looking for a replacement to the stalwart MQ-9 Reaper and intends to explore options ranging from commercial drones built by emerging tech firms to high-end unmanned aircraft, the service's top acquisition official said Tuesday. Will Roper, the Air Force's assistant secretary for acquisition, technology and logistics, said the service is working on a study that will inform the fiscal 2022 budget and lay out a path for replacing the MQ-9 Reaper made by General Atomics. "The Reaper has been a great platform for us. Four million flight hours, just undeniable overmatch in a low-end uncontested fight, and it is certainly saving lives,” Roper told lawmakers at a House Armed Services Committee hearing. “But as we look to the high end fight, we just can't take them into the battlefield. They are easily shot down.” The MQ-9 Reaper and its precursor, the MQ-1 Predator, have been the Air Force's workhorse drones in the Middle East over the past two decades, providing both real-time video surveillance and the ability to strike targets. But looking forward, the Reaper is ill-suited to a war with Russia and China while at the same time seen by the Air Force as requiring too much money and manpower to sustain for continued operations in low-threat environments. There likely won't be a single, one-size fits all solution for replacing the MQ-9, Roper said. The Air Force may need drones that “are more high-end, military-unique” systems, and “they'll likely be expensive,” he acknowledged. There may also be room for unmanned attritable aircraft, which are reusable but are cheap enough that they can be shot down in battle without incurring massive financial losses. For lower-end missions, the Air Force sees promise in the emerging unmanned systems market, where new entrants have begun creating long-loiter drones for applications in agriculture, communications and the oil and gas sector. “A lot of companies are targeting that market, not thinking about defense because we've been buying Reapers forever,” Roper said, who added that by buying from promising commercial drone makers, Air Force may be able to influence those companies to keep their supply chains out of China and to incorporate military-specific features — potentially even weapons. “I think if we do the program right on the commercial side, we might be able to bring a new entrant into defense without making them a defense prime,” he said, adding that funding from the Air Force could help a commercial company move from making prototypes to building up a stable production line that could further be grown to manufacture drones on a more massive scale. “Working with the Defense Department, you don't need the kind of production capacity that the globe does. So, we're a pretty good first stop,” he said. However, the Air Force may face an uphill battle in getting Congress to support a plan to replace the Reaper. The service in its FY21 budget request has asked for 24 more MQ-9s before ending the programs of record — a move that would curtail the program from 363 to 337 Reapers. The early shutdown of the line would have major financial implications for General Atomics, said Chris Pehrson, the company's vice president of strategic development, in a February interview with Air Force Magazine. “We're actually going out about 22 months ahead of delivery and procuring the long-lead item parts, ... whether it's [satellite communication] equipment or engines ... to negotiate the best prices and get the best deals for the government,” Pehrson said. “Having the rug pulled out from under your feet at the last minute kind of disrupts all your supply chain investments that you're making.” Top generals in the Middle East and Africa have also raised concerns about the demands for intelligence, surveillance and reconnaissance and privately helped stave off retirements of the MQ-9 by the Air Force in FY21. In its unfunded wish list, U.S. Central Command included additional contractor-flown MQ-9 hours as its number one priority, at a cost of $238 million. https://www.defensenews.com/air/2020/03/12/could-a-commercial-drone-replace-the-mq-9-reaper-the-air-force-is-considering-it

  • US government shutdown creating angst for defense contractors

    9 janvier 2019 | International, Aérospatial, Naval, Terrestre, C4ISR, Sécurité

    US government shutdown creating angst for defense contractors

    By: Valerie Insinna WASHINGTON — As the U.S. government shutdown continues into its 18th day, defense firms and industry advocates are beginning to worry that the pause in business could eat into companies' cash flow. The Defense Department is funded for fiscal 2019, with Congress having passed a spending bill for the new fiscal year in September. That means work on the military's weapons programs continue apace, but many defense companies also hold contracts with agencies that are not currently funded, like the Department of Homeland Security — which includes the Coast Guard as well as Customs and Border Protection — and NASA. The Aerospace Industries Association, a lobbying group that represents defense and commercial aviation companies, warned that impacts to the aerospace sector extend beyond the 800,000 federal workers who are furloughed or working without pay. For example, weapons sales and transfers to U.S. allies and partners are stalled as a result of the closure of the departments of State and Commerce, AIA said in a Jan. 8 statement. Research projects at NASA, the Federal Aviation Administration, and National Oceanic and Atmospheric Administration are suspended, “setting back development of game changing technologies.” And meetings between the government and industry have been canceled or delayed. “Every day the shutdown lasts, the impacts grow and become more difficult and more expensive to fix,” said AIA President and CEO Eric Fanning. “It's time to get these dedicated public servants back to work.” Tony Moraco, the CEO of government service and information technology firm SAIC, told investors Jan. 7 that the effects of the shutdown are expected to be short term and primarily affecting accounts with NASA, the FAA and the U.S. Department of Agriculture. Moraco characterized the effect on SAIC and Engility — the latter of which is set to merge with the former this year — as a “modest impact on revenues and potentially cash collection, which we think we can recover — mostly — if this is resolved in the near term.” But SAIC Chief Financial Officer Charlie Mathis said the government is already behind on payments to the two companies by about $40 million to $50 million. “If we get through this quickly, they could catch up,” he said, but the shutdown would have to be resolved within a week for the companies to hit their cash-flow goals for their fiscal year ending Jan. 31. Furthermore, the companies are seeing a hit of about $10 million per week in revenue as the shutdown progresses, and “if it continues, that number could increase,” Mathis said. The probability of an extended shutdown seems to be rising. The government shutdown started Dec. 22 amid disagreements between President Donald Trump and Congress over funding for a border wall that would separate the United States and Mexico. But with Democrats now controlling the House of Representatives, a deal on funding for the wall may take weeks and could propel this shutdown past the 21-day mark of the 1995 shutdown, currently the longest on the books, according to CNN. Defense contractors will eventually get paid back for work accomplished while the government was shut down, but there could be long-standing consequences. If the shutdown persists for a protracted amount of time, there could be repercussions for the federal government's recruiting pipeline, as well as the balance of federal employees and contractors, said Byron Callan, an analyst for Capital Alpha Partners. “How will this shutdown impact the ability of federal agencies impacted by the shut-down to recruit and retain skilled individuals?” he wrote in an emailed analysis of SAIC's investor meeting. “There might be near-term collateral damage if people leave government service, but a 1-3 year factor to consider is how this shutdown and the potential for future ones accelerates reliance on federal service contractors.” https://www.defensenews.com/industry/2019/01/08/us-government-shutdown-creating-angst-for-defense-contractors

  • The US Navy’s FFG(X) could be awarded sooner than expected

    2 mars 2020 | International, Naval

    The US Navy’s FFG(X) could be awarded sooner than expected

    By: David B. Larter WASHINGTON – The U..S Navy's next-generation frigate could be awarded within the next few months, earlier than expected, the service's top civilian said Friday. Acting Secretary of the Navy Thomas Modly told conservative radio talk show host Hugh Hewitt that he had tasked Assistant Secretary of the Navy for Research, Development and Acquisition James Geurts to look at accelerating the award of the first ship, which was slated for this fall. “The plan was to try and do it in the latter part of this year,” Modly told Hewitt. “I've asked [Geurts] to try and accelerate that earlier, and he's looking into the possibilities for doing that. “But obviously, you know, we have acquisition rules, and we want to make sure that we do this in the proper way.” The competition has narrowed to bids from Huntington Ingalls Industries; a team of Navantia and General Dynamics Bath Iron Works; Fincantieri; and Austal USA. Navantia is offering a version of its F-100 design, which is in use by the Spanish Navy; Austal is submitting a version of its trimaran littoral combat ship; Fincantieri is offering its FREMM design; and Huntington Ingalls is believed to be offering an up-gunned version of its national security cutter. Lockheed Martin's version of the FFG(X), an up-gunned, twin-screw variant of its Freedom-class LCS, was pulled from the competition in May. The FFG(X) is supposed to be a small, multimission ship with a modified version of Raytheon's SPY-6 radar destined for the Flight III Arleigh Burke-class destroyer, Lockheed Martin's Aegis Combat System, as well as some point defense systems and 32 vertical launch cells for about half the cost of a destroyer. The first ship ordered in 2020 is expected to cost $1.28 billion, according to budget documents, with the next ship in 2021 dropping to $1.05 billion. The Navy expects it to take six years to complete design and construction of the first ship, which should be finished in 2026. Once construction begins, planners anticipate it will take 48 months to build. The second frigate is expected to be ordered in April 2021, and from there it should be delivered about five and a half years after the award date. That means that the first ship should be delivered to the fleet in July of 2026, and the second about three months later. https://www.defensenews.com/naval/2020/02/28/the-us-navys-ffgx-could-be-awarded-sooner-than-expected

Toutes les nouvelles