Automatic Website Traffic RSS
Hacker Hides Backdoor Inside Fake WordPress Security Plugin | AutoTraffic
Hacker Hides Backdoor Inside Fake WordPress Security Plugin
A cyber-criminal has hidden the code for a PHP backdoor inside the source code of a WordPress ... other security-focused plugins that block access to login functions or would detect the hacker's ...
read more
Fake WordPress security advisory pushes backdoor plugin
WordPress administrators are being emailed fake WordPress security advisories ... Next, the plugin downloads a base64-encoded backdoor payload from the C2 and saves it as 'wp-autoload.php' in ...
read more
Fake WordPress plugins again allowing hackers into unsecured sites
Security researchers from the web security and protection company Sucuri have discovered that cybercriminals are using malicious plugins, which hide in plain sight and serve as backdoors, to gain ...
read more
WordPress plugin used by 300,000 websites hides a secret backdoor
With over 300,000 websites confirmed to be actively using the plugin, the discovery is a serious security incident for the WordPress ... The backdoor is contained inside a “plugin update ...
read more
Fake SEO Plugin Used In WordPress Malware Attacks
Malware that passes itself off as a WordPress SEO plugin has been infecting sites and opening a backdoor ... to security experts. The intent of the hackers behind the malware is to hide in plain ...
read more
Critical Bug in WordPress Plugins Open Sites to Hacker Takeovers
Security researchers are warning users of two WordPress plugins ... tmp.zip file to install fake SEO stats plugin which will then add a wp-xmlrpc.php backdoor to the root directory of the ...
read more
Zero-day in WordPress SMTP plugin abused by two hacker groups
Two cyber-security companies providing firewall plugins for WordPress sites have detected attacks abusing a zero-day vulnerability in a popular WordPress plugin. At least two hacker groups have ...
read more
WordPress Security Plugin Exposes +1 Million Websites
which is to hide the WordPress login page. The WPS Hide Login security plugin defeats hacker attempts to gain access to a WordPress site by hiding the administrator login page and making the wp ...
read more
Thousands of WordPress sites have been hacked through tagDiv plugin vulnerability
The vulnerable plugin, known as tagDiv Composer, is a mandatory requirement for using two WordPress themes ... by displaying fake captcha dialogs. Sucuri, the security firm Sinegubko works ...
read more
Subscribe to RSS Feed