Tech

WordPress sites targeted by malicious plugin disguised as security tool

Share
Share


  • Wordfence researchers uncover a new piece of WordPress malware
  • Threat actors used AI to create legitimate-looking tools
  • The malware pretends to be an anti-malware product

Security researchers have discovered a piece of WordPress malware pretending to be an antimalware solution. In late April, Marko Wotschka from the Wordfence team published a new blog post detailing an “interesting WordPress malware”: it appears in the file system as a normal WordPress plugin, often with the name ‘WP-antymalwary-bot.php’.

While looking inconspicuous at first, the researchers discovered that this plugin contains several functions that allows attackers to persist on the target website, hide the plugin from the dashboard, and remotely execute code.

Share

Leave a comment

Leave a Reply

Your email address will not be published. Required fields are marked *

Related Articles
What is a ‘smart city’ and why should we care? It’s not just a buzzword
Tech

What is a ‘smart city’ and why should we care? It’s not just a buzzword

Credit: Pixabay/CC0 Public Domain More than half of the world’s population currently...

Sanding away hidden insulation results in more reliable method to measure robotic touch reception
Tech

Sanding away hidden insulation results in more reliable method to measure robotic touch reception

Electrical characterization of the conductivity and thickness of the insulating surface layer....

Forget Synology? This NAS brand says locked drives are for children, and it won’t play along
Tech

Forget Synology? This NAS brand says locked drives are for children, and it won’t play along

Asustor won’t force users into branded drives – you pick the parts,...

Gmail servers hijacked by malicious PyPI packages to spread havoc – here’s how to stay safe
Tech

Gmail servers hijacked by malicious PyPI packages to spread havoc – here’s how to stay safe

Socket found seven malicious packages on PyPI The packages were abusing Gmail...