Milton Keynes Office - 01908 880498
Aardwolf Security
  • Security Testing
    • Web Application Penetration Test
    • API Penetration Testing
    • Network Penetration Testing
      • Internal Network Penetration Testing
      • External Network Penetration Testing
    • Mobile Application Penetration Testing
      • Android Penetration Testing
      • iOS Application Penetration Testing
    • Vulnerability Scanning Services
    • Firewall Configuration Review
    • Red Team Assessment
    • Server Build Review
    • Social Engineering
    • Secure Code Review
    • Database Configuration Review
    • Automotive Penetration Testing
    • ATM Penetration Testing
    • Cyber Essentials Services
    • WiFi Penetration Testing
  • Cloud Testing
    • Azure Penetration Testing
    • AWS Secure Cloud Config Review
    • Google Secure Cloud Review
  • Contact Us
  • About Us
  • Articles
  • News
Category:

News

  • News

    How the Scattered Spider Attack Bypassed TfL’s Defences: Lessons for UK Businesses

    by Rebecca Sutton June 24, 2026
    by Rebecca Sutton June 24, 2026

    Two members of Scattered Spider have pleaded guilty over the 2024 TfL breach. The techniques they used are low-tech and still active. Here is what organisations can do to make …

    FacebookTwitterLinkedinEmail
  • News

    ShapedPlugin Backdoor: What WordPress Site Owners Need to Check Right Now

    by Rebecca Sutton June 23, 2026
    by Rebecca Sutton June 23, 2026

    Three ShapedPlugin Pro plugins served malware via official updates for three weeks. Updating the plugin is not enough — here is what site owners need to do.

    FacebookTwitterLinkedinEmail
  • News

    CVE-2026-47729 Squidbleed: Is Your Proxy Leaking Passwords? How to Check and Fix It

    by Rebecca Sutton June 22, 2026
    by Rebecca Sutton June 22, 2026

    The Squidbleed vulnerability in Squid Proxy leaks HTTP credentials from heap memory in every default installation. Here is how to check whether you are affected and what to do while …

    FacebookTwitterLinkedinEmail
  • News

    Why the Gravity SMTP Vulnerability Should Change How You Think About Plugin Credentials

    by Rebecca Sutton June 21, 2026
    by Rebecca Sutton June 21, 2026

    The Gravity SMTP vulnerability (CVE-2026-4020) is being exploited at mass scale. But the real issue is structural: email plugins holding API keys create a risk that one permission bug can …

    FacebookTwitterLinkedinEmail
  • News

    Is Your EDR Actually Running? How Ransomware Groups Disable It Before You Notice

    by Rebecca Sutton June 20, 2026
    by Rebecca Sutton June 20, 2026

    The Gentlemen ransomware gang ships an EDR killer framework to every affiliate, targeting 48 security products before encryption begins. Here are three practical checks every IT team should make this …

    FacebookTwitterLinkedinEmail
  • News

    FortiBleed Shows Patching Is Not Enough to Protect Your Fortinet VPN

    by Rebecca Sutton June 19, 2026
    by Rebecca Sutton June 19, 2026

    The FortiBleed Fortinet VPN breach compromised 74,000 firewalls, many running current firmware. The real failures were exposed management interfaces, legacy password hashing, and no MFA. Here is the harder lesson.

    FacebookTwitterLinkedinEmail
  • News

    What the NCSC’s 75% State Threat Figure Means for Your Business

    by Rebecca Sutton June 18, 2026
    by Rebecca Sutton June 18, 2026

    Three-quarters of UK critical infrastructure incidents last year were state-sponsored. Here is what the NCSC recommends and why most businesses are in the threat picture.

    FacebookTwitterLinkedinEmail
  • News

    Fortinet FortiSandbox Vulnerabilities: What IT Teams Need to Do Right Now

    by Rebecca Sutton June 17, 2026
    by Rebecca Sutton June 17, 2026

    Three critical Fortinet FortiSandbox vulnerabilities are being actively exploited. Here is what your team needs to check, patch and verify before attackers get there first.

    FacebookTwitterLinkedinEmail
  • News

    SearchLeak Shows Why Microsoft 365 Copilot Is Now Attackers’ Most Valuable Target

    by Rebecca Sutton June 16, 2026
    by Rebecca Sutton June 16, 2026

    A now-patched Microsoft Copilot vulnerability let attackers steal emails, MFA codes and files with one click. The fix is in, but the underlying dynamic: AI tools with sweeping access inside …

    FacebookTwitterLinkedinEmail
  • News

    OptinMonster Backdoor: What to Check If Your WordPress Site Runs Awesome Motive Plugins

    by Rebecca Sutton June 15, 2026
    by Rebecca Sutton June 15, 2026

    A CDN-level supply chain attack backdoored over 1.2 million WordPress sites via OptinMonster, TrustPulse and PushEngage. Here is exactly what to check and how to clean up.

    FacebookTwitterLinkedinEmail
Newer Posts
Older Posts

Penetration Testing Services

Services Offered

  • Android Penetration Testing
  • ATM Penetration Testing
  • Cloud Penetration Testing
    • AWS Secure Cloud Config Review
    • Azure Penetration Testing
    • Google Secure Cloud Review
  • Cyber Essentials Services
  • Database Configuration Review
  • Mobile Application Penetration Testing
    • iOS Application Penetration Testing
  • Newsletter
  • Security Testing
    • API Penetration Testing
    • Automotive Penetration Testing
    • Firewall Configuration Review
    • Network Penetration Testing
      • External Network Penetration Testing
      • Internal Network Penetration Testing
    • Red Team Assessment
    • Secure Code Review
    • Server Build Review
    • Social Engineering
    • Vulnerability Scanning Services
    • Web Application Penetration Test
  • Sign Up To Our Newsletter
  • Terms and Conditions
  • WiFi Penetration Testing

Address & Telephone Number

Aardwolf Security Ltd

Suite 20
548-550 Elder House
Elder Gate
Milton Keynes
MK9 1LR

Tel – 01908 880498
Email – contact@aardwolfsecurity.com

 

Aardwolf Security Ltd are registered in England and Wales.

Company number: 09464876

VAT registration No: GB-300106778

 

Penetration testing services

Recent Posts

  • SharePoint Authentication Bypass Chain: What On-Premises Admins Must Patch Now
  • SC Cleared Penetration Testing: A Procurement Checklist for Public Sector Buyers
  • The VMware vCenter Exploit Proves Patch-and-Hope Is Not a Strategy
  • N-central Vulnerability: A Four-Step Check If You Run N-able’s RMM Tool
  • Veeam, HashiCorp and Django Patch Critical Flaws in the Same Week: What to Check
  • How to Judge a Provider’s Penetration Testing Methodology Before You Buy

Services Offered

  • Web Application Penetration Test
  • API Penetration Testing
  • Network Penetration Testing
  • Vulnerability Scanning Services
  • Cloud Penetration Testing
  • Mobile Application Penetration Testing
  • Red Team Assessment
  • Vulnerability Scanning Services
  • Facebook
  • Twitter
  • Linkedin
  • Youtube
  • Github

© Aardwolf Security 2026. All rights reserved. | Privacy Policy | Terms and Conditions

Aardwolf Security
  • Security Testing
    • Web Application Penetration Test
    • API Penetration Testing
    • Network Penetration Testing
      • Internal Network Penetration Testing
      • External Network Penetration Testing
    • Mobile Application Penetration Testing
      • Android Penetration Testing
      • iOS Application Penetration Testing
    • Vulnerability Scanning Services
    • Firewall Configuration Review
    • Red Team Assessment
    • Server Build Review
    • Social Engineering
    • Secure Code Review
    • Database Configuration Review
    • Automotive Penetration Testing
    • ATM Penetration Testing
    • Cyber Essentials Services
    • WiFi Penetration Testing
  • Cloud Testing
    • Azure Penetration Testing
    • AWS Secure Cloud Config Review
    • Google Secure Cloud Review
  • Contact Us
  • About Us
  • Articles
  • News