news.mlab.sh
Back to the feed
malware

WordPress Backdoor Rebuilds Itself After Cleanup Using Files, Database, and Shared Memory

HighCVSS 7.5ExploitedEPSS 2%
Image: The Hacker News
Summary

Researchers at Sucuri have identified a sophisticated WordPress backdoor, codenamed 'SC', that employs a self-healing mechanism to persist on infected sites. It communicates with a command-and-control server via the Ethereum blockchain and is delivered through various attack vectors, including vulnerabilities in plugins and themes. A separate, high-severity SQL injection flaw in the wpForo Forum WordPress plugin is also actively being exploited.

Read the full article at The Hacker News

Summary written automatically in our own words from the original article, which belongs to its publisher and remains the reference. It may contain errors. Sources & data

Report an error
Confirmed errors are fixed and listed on /corrections.