Multiple WordPress plugins have been maliciously modified to include a backdoor making it possible to create administrator accounts in order to take control of the website.

Habitually, These new non-legitimate accounts are called “Options” or “PluginAuth” with the information leaked to a malicious IP address, Plugin-focused:

It is recommended to update to the latest versions of such plugins to avoid exposure to potential attacks.

Fountain: TheHackerNews


Leave a Reply

Your email address will not be published. Required fields are marked *

More news
This is how the use of AI in cybercrime has evolved
Read more »
Skoda confirms a breach on its web portal
Read more »
data of almost 200.000 Zara users are exposed
Read more »
Vimeo sufre una brecha de datos
Read more »
Booking.com suffers a data exfiltration of bookings
Read more »