News Post

Supply-chain attack on WordPress plugins affects as many as 36,000 sites

Arstechnica

· 6d
placeholder-image

A supply-chain attack targeted WordPress plugins running on 36,000 websites. Five plugins were affected, allowing for the creation of attacker-controlled administrative accounts and manipulation of search results. The malware injected into the updates is not sophisticated and dates back to June 2024. Users are advised to uninstall the affected plugins and check for unauthorized content or admin accounts. The origins and distribution method of the malware are still being investigated. This attack highlights the vulnerability of supply chain attacks and the importance of regularly updating and securing software.

No Comments yet

Download the medial app to read full posts, comements and news.