New malware attacks millions of websites by using wordpress plug-in vulnerabilities, and the official wordpress website is attacked

One year ago (2023-11-27) Chief Editor
4 minutes
two hundred and seventy-nine
zero

Researchers found that an ongoing malicious attack against millions of WordPress websites aims to use backdoors and various WordPress plug-in vulnerabilities for infection.

According to wordpress statistics, the wordpress content management system provides nearly 60 million websites, and developers around the world have installed hundreds of wordpress plug-ins.

Network criminals start the load by taking advantage of the vulnerabilities in some of the most popular WordPress plug-ins and injecting malicious scripts into the unpatched WordPress website.

This new activity aims to attack millions of WordPress websites to fully control and redirect visitors to malicious websites, where attackers provide malware downloads and add backdoors.

Researchers from WordFence's latest survey found that the initial malware attacks from many IPs were associated with a network hosting provider.

Open Phoenix News to view more HD pictures

Shortly afterwards, they found that only one IP address was related to the ongoing malware activity and was associated with the Rackspace server, which hosted some attacked websites.

Attackers use wordpress plug-ins to add backdoors

Many popular WordPress plug-ins are carrying out this activity, and new vulnerabilities have also been added to the target list.

Recently, Nintendo warned wordpress users that a vulnerability was found in the bold page generator plug-in installed on more than 20000 wordpress websites. Attackers actively exploit this vulnerability to destroy websites supported by wordpress.

According to WordFence, similarly, following the famous WordPress plug-in, this new activity is also actively targeting.

Bold Page Builder

Blog Designer

Live chat with Facebook Messenger

Yuzo related position

Visual css style editor

Wp real-time chat support

Form lightbox

Mixed composer

All previous nicdark plug-ins (nd booking, nd travel, nd learning, etc.)

Unfortunately, if any vulnerabilities to attack new targets are exposed in the near future, the threat behavior will continue to update this activity.

At the initial stage of the study, researchers found that attackers injected malicious scripts, redirected visitors to malicious websites and pushed unwanted pop-up windows.

However, the new round of activities infected the vulnerable WordPress, making it take advantage of the management session and control the website.

Attackers avoid detection by WAF and IDS software by injecting ambiguous scripts.

The java load provided by this activity can allow an attacker to create a new administrator account, and the attacker can freely install more backdoors or perform other malicious activities.

(Translated from gbhackers)

This article is written by: Chief Editor Published on Software Development of Little Turkey , please indicate the source for reprinting: //hongchengtech.cn/blog/751.html
Kuke_WP editor
author

Related recommendations

One year ago (2023-11-27)

12 WordPress enterprise theme templates are recommended! WordPress can be built without writing code!, Wordpress setup

When many companies choose WordPress to build their websites, they often don't know which theme is easy to use. There are too many WordPress corporate themes in the market for everyone to choose, but they always hesitate to make a decision. Here we have carefully sorted out 12 WordPress corporate themes, covering all walks of life
four hundred and forty-eight
zero
One year ago (2023-11-27)

Inventory of WordPress themes on online course website (updated in 2020), free WordPress themes

To build an online education platform using the WordPress website building program, it is not only necessary to choose a better virtual host provider, but also the most important thing is to use a core online course plug-in, and a powerful WordPress theme can also improve students' learning experience. Learn more about WordPre
four hundred and forty-eight
zero
One year ago (2023-11-27)

Count the domestic excellent WordPress themes and wordpress excellent themes

WordPress originates from abroad, is easy to use, and is very popular, making more and more websites in China start to use WordPress website building programs. There are also many powerful experts or teams in China who have developed WordPress Chinese themes. This article details the outstanding WordPress themes in China. I Begin Theme
six hundred and thirty-eight
zero
One year ago (2023-11-27)

Best WordPress theme list in 2022 (free and paid), Wordpress resource network theme

When building a WordPress website, should you use a free theme or an advanced theme? What types of functions do you need, and how advanced do you want your website to be? These are all good questions. You need to explain before you spend money on WordPress topics. This is why we need to know all the details of the selected theme, and cover the topics from several
three hundred and ninety-five
zero

comment

0 people have participated in the review

Scan code to add WeChat

contact us

WeChat: Kuzhuti
Online consultation: