Tech

Over 10,000 WordPress sites found showing fake Google browser update pages to spread malware

Share
Share


  • Researchers discover 10,000 compromised WordPress sites
  • The sites were embedded with malicious JavaScript code
  • The goal was to deliver infostealers to victims

Ten thousand WordPress websites were being used to deliver infostealing malware to victims running both Windows and macOS devices, experts have warned.

A report from cybersecurity researchers at c/side claims a threat actor likely compromised different WordPress sites using an older version of the platform (6.7.1) and with it – an older, outdated plugin. Once the sites are breached, the attackers would deploy malicious JavaScript code, which would generate a fake page in an iframe, to the visitors.

Share

Leave a comment

Leave a Reply

Your email address will not be published. Required fields are marked *

Related Articles
ASUS reveals critical security flaw affecting AiCloud routers, so patch now
Tech

ASUS reveals critical security flaw affecting AiCloud routers, so patch now

ASUS patches a 9.2-rated security flaw in certain routers The flaw stems...

Want your own personal satellite? Here’s how and what it’ll cost
Tech

Want your own personal satellite? Here’s how and what it’ll cost

by Richard N. Velotta Credit: Pixabay from Pexels The Las Vegas-based company...

Judge’s antitrust ruling is a positive step
Tech

Judge’s antitrust ruling is a positive step

Credit: cottonbro studio from Pexels Of course, Google has an unlawful monopoly...

The OnePlus 13T’s battery just got revealed, and it could come with a surprising twist
Tech

The OnePlus 13T’s battery just got revealed, and it could come with a surprising twist

OnePlus has unveiled more details of its upcoming 13T phone The fresh...