news.mlab.sh
5 results
threat-intel

Exposed Hacker Server Reveals WP-SHELLSTORM Backdooring Thousands of WordPress Sites

A cybercrime crew exposed its operations – including tools, logs, and target lists – after leaving a server open for three weeks. The WP-SHELLSTORM operation, which involved planting webshells on vulnerable WordPress and Joomla sites, resulted in over 1.4 million targeted domains, though only a fraction were actually c…

The Hacker News · Jul 10, 2026 High