Multiple WordPress plugins have been maliciously modified to include a backdoor making it possible to create administrator accounts in order to take control of the website.

Habitually, These new non-legitimate accounts are called “Options” or “PluginAuth” with the information leaked to a malicious IP address, Plugin-focused:

It is recommended to update to the latest versions of such plugins to avoid exposure to potential attacks.

Fountain: TheHackerNews


Leave a Reply

Your email address will not be published. Required fields are marked *

More news
New wave of scams using AI-cloned voices
Read more »
Una brecha en la Comisión Europea salpica unas treinta instituciones
Read more »
Un ciberataque expone datos y entradas de aficionados del FC Ajax
Read more »
Michelin suffers a data exfiltration
Read more »
Atacan un centro de investigación nuclear en Polonia
Read more »