Defending Your Digital Rights

    A non-profit organization committed to protecting digital freedoms, privacy, and security for vulnerable communities worldwide.

    About Us

    We are a collective of digital rights advocates, security experts, and educators committed to empowering individuals and communities with the knowledge and tools to protect their digital freedoms.

    Our Initiatives

    How we work to protect digital rights and empower communities

    Awareness

    Raising awareness about digital rights, privacy threats, and security best practices.

    Advocacy

    Advocating for policies and regulations that protect digital rights and freedoms.

    Education

    Providing training and resources on digital security for vulnerable groups.

    Support

    Offering direct assistance to individuals and organizations facing digital threats.

    Community Building

    Creating networks of digital rights defenders to share knowledge and resources.

    Collaboration

    Working with partners globally to develop solutions to digital security challenges.

    Security Alerts

    Latest WordPress security vulnerabilities affecting plugins, themes, and core.

    MEDIUM (5.0)
    Plugin

    Stored Cross-Site Scripting in EMC Calendly Plugin via Shortcode

    Published Date: Apr 19, 2026

    The EMC – Easily Embed Calendly Scheduling Features plugin for WordPress is vulnerable to stored XSS due to inadequate input sanitization and output escaping on shortcode attributes. This flaw affects all versions up to 4.4 and allows contributors and higher roles to insert malicious scripts into pages.

    MEDIUM (5.3)
    Plugin

    Stored Cross-Site Scripting in Content Blocks Plugin

    Published Date: Apr 18, 2026

    The Content Blocks (Custom Post Widget) plugin for WordPress is vulnerable to Stored Cross-Site Scripting (XSS) due to improper input sanitization and output escaping in its content_block shortcode. This vulnerability affects versions up to, and including, 3.3.9, allowing authenticated users with contributor-level access or higher to inject malicious scripts.

    MEDIUM (6.8)
    Plugin

    Stored Cross-Site Scripting Vulnerability in Youzify Plugin

    Published Date: Apr 18, 2026

    The Youzify plugin for WordPress contains a Stored Cross-Site Scripting (XSS) vulnerability via the 'checkin_place_id' parameter, affecting versions up to 1.3.6. This flaw allows authenticated users with Subscriber-level access or higher to inject malicious scripts that automatically execute when a page containing the script is accessed.

    WordPress Vulnerabilities

    Updated every hour with the latest vulnerabilities

    Latest News and Digital Rights Updates

    Stay informed about the latest digital rights issues, threats, and community resources

    AI scam is costing victims millions: Cybersecurity experts share tips to prevent you from becoming next victim
    April 21, 2026

    AI scam is costing victims millions: Cybersecurity experts share tips to prevent you from becoming next victim

    As technology continues to advance, so do the methods employed by cybercriminals. Recently, fraudulent activities leveraging artificial intelligence have become a lucrative venture for scammers. These deceptive schemes, primarily involving the use of sophisticated AI to create deepfake videos and audio clips, are gaining traction and costing unsuspecting victims millions of dollars. Deepfake technology allows malicious actors to generate incredibly realistic digital impersonations of executives, celebrities, and even personal acquaintances. The intent is often to manipulate emotions and prompt the victims to divulge sensitive information or transfer money. Cybersecurity experts are sounding the alarm on the growing prevalence of these scams. They underscore that the sophistication of AI means even a discerning eye or ear might struggle to differentiate between authentic and fabricated content. The consequences are particularly dire when deepfakes are used to impersonate trusted figures or loved ones, as victims are more likely to comply with requests that seem urgent or emotionally resonant. Preventing an AI-induced scam involves heightened vigilance and an understanding of cybersecurity basics. Experts advise verifying any unexpected communication that requests money or confidential information, especially if it's digitally delivered. Additionally, be wary of communications that provoke strong emotions, as these are often designed to cloud judgment. Implementing two-factor authentication and keeping software updated are recommended practices to safeguard against unauthorized access and deceitful tactics. The emergence of AI scams marks yet another chapter in the evolution of cybersecurity threats, reminding everyone that the digital landscape is a battleground where vigilance and knowledge are essential defenses.

    NITDA, CAC push cybersecurity upgrades to secure digital assets
    April 21, 2026

    NITDA, CAC push cybersecurity upgrades to secure digital assets

    Nigeria's National Information Technology Development Agency (NITDA) and the Corporate Affairs Commission (CAC) have embarked on a strategic initiative aimed at fortifying the nation's digital infrastructure through robust cybersecurity upgrades. This initiative is in direct response to the burgeoning threats faced by digital ecosystems in the wake of increased digital transformation. The coordinated efforts signify a crucial advancement in Nigeria's capacity to protect sensitive data and critical information systems against cyber threats that are becoming increasingly sophisticated. By reinforcing these digital assets, NITDA and CAC are not only safeguarding public trust but also paving the way for secure business operations and economic growth. This cybersecurity upgrade is expected to enhance the nation’s resilience to cyber-attacks, thereby boosting confidence among stakeholders and investors. Furthermore, this is a significant step towards aligning with global cybersecurity standards, ensuring that Nigeria can effectively handle potential digital threats. As digital transactions and online activities surge, securing the digital frontier becomes imperative. The improved cybersecurity framework will encompass a comprehensive approach to risk management, incident response, and sector-specific protection tailored to address Nigeria’s unique digital landscape. The collaboration between NITDA and CAC exemplifies a proactive stance in embracing digital security measures necessary for maintaining the integrity and availability of essential services and infrastructure across the country.

    LASG unveils cybersecurity guidelines to boost digital safety
    April 20, 2026

    LASG unveils cybersecurity guidelines to boost digital safety

    The Lagos State Government has unveiled comprehensive cybersecurity guidelines aimed at strengthening the digital landscape for both businesses and residents. This initiative seeks to bolster digital safety and stimulate economic growth by fostering a secure and trustworthy online environment. As the digital economy in Lagos continues to expand, there arises an increasing need to safeguard sensitive data against escalating cyber threats. By implementing these guidelines, the government aspires to mitigate risks associated with cyber breaches, such as data theft, ransomware attacks, and unauthorized access. The guidelines cover a wide array of best practices designed to protect digital infrastructures, including establishing robust password protocols, adhering to regular security audits, and improving incident response mechanisms. Moreover, they emphasize the importance of ongoing cybersecurity education and awareness for individuals and organizations alike. By introducing these measures, Lagos aims to become a leading digital hub in Africa, promoting innovation while ensuring that its digital economy remains resilient and secure. This significant move not only reassures investors but also encourages residents to engage more actively in the digital space, thereby creating a more connected and secure community.

    Get Involved

    Join us in defending digital rights and protecting vulnerable communities.

    Donate

    Your contribution helps us provide free security resources to those who need them most.

    Volunteer

    Contribute your skills and time to support our mission and programs.

    Partner

    Collaborate with us on initiatives that advance digital rights and security.

    Let's Work Together

    Get in touch to discuss your needs or how you can support our mission

    Jedar

    Jedar for Digital Rights is a non-profit organization dedicated to protecting digital freedoms, enhancing online privacy, and promoting secure digital practices for vulnerable communities worldwide.

    Follow Us

    All Rights Reserved © 2026 Jedar for Digital Rights.

    Cookie Preferences

    We use cookies to enhance your browsing experience, serve personalized ads or content, and analyze our traffic. By clicking "Accept All", you consent to our use of cookies.

    Learn More