Tech

WordPress sites targeted by malicious plugin disguised as security tool

Share
Share


  • Wordfence researchers uncover a new piece of WordPress malware
  • Threat actors used AI to create legitimate-looking tools
  • The malware pretends to be an anti-malware product

Security researchers have discovered a piece of WordPress malware pretending to be an antimalware solution. In late April, Marko Wotschka from the Wordfence team published a new blog post detailing an “interesting WordPress malware”: it appears in the file system as a normal WordPress plugin, often with the name ‘WP-antymalwary-bot.php’.

While looking inconspicuous at first, the researchers discovered that this plugin contains several functions that allows attackers to persist on the target website, hide the plugin from the dashboard, and remotely execute code.

Share

Leave a comment

Leave a Reply

Your email address will not be published. Required fields are marked *

Related Articles
What happened and why it matters
Tech

What happened and why it matters

Credit: Pixabay/CC0 Public Domain On April 28, Spain experienced a widespread power...

Hundreds of top ecommerce sites under attack following Magento supply chain flaw
Tech

Hundreds of top ecommerce sites under attack following Magento supply chain flaw

Sansec found 21 Magento extensions with malicious code The extensions belong to...

What is the release date and time for Andor season 2 episodes 7 to 9 on Disney+?
Tech

What is the release date and time for Andor season 2 episodes 7 to 9 on Disney+?

Andor season 2 is halfway through its 12-episode run, so one of...

Hydrogel material weaves seeds into textiles
Tech

Hydrogel material weaves seeds into textiles

A touch-sensing hairband is among the potential applications for LivingLoom, a design...