Skip to main content

New WordPress backdoor creates rogue admin to hijack websites

  • October 11, 2023
  • 1 reply
  • 9 views

Jasper_The_Rasper
Moderator
Forum|alt.badge.img+54

October 11, 2023 By Bill Toulas

 

New WordPress backdoor creates rogue admin to hijack websites

A new malware has been posing as a legitimate caching plugin to target WordPress sites, allowing threat actors to create an administrator account and control the site's activity.

The malware is a backdoor with a variety of functions that let it manage plugins and hide itself from active ones on the compromised websites, replace content, or redirect certain users to malicious locations.

 

Fake plugin details

Analysts at Defiant, the makers of the Wordfence security plugin for WordPress, discovered the new malware in July while cleaning a website.

Taking a closer look at the backdoor, the researchers noticed that it came "with a professional looking opening comment" to disguise as a caching tool, which typically helps reduce server strain and improve page load times.

 

>> Full Article <<

1 reply

russell.harris
Popular Voice
Forum|alt.badge.img+5

Wordpress really getting insecure these days


Reply