WordPress websites under attack — expert report says dozens of plugins hijacked to target thousands of sites



  • Malicious actor bought 31 WordPress plugins from Essential Plugin
  • Updates injected backdoors, granting full site access
  • Spam campaigns hidden from owners, C2 resolved via Ethereum smart contract

A hacker bought more than 30 legitimate WordPress plugins and abused their good standing to infect tens of thousands of websites with backdoors.

Austin Ginder, founder of Anchor Hosting, reported how a client recently alerted him of a known plugin suddenly allowing unauthorized third-party access. The investigation led him to a somewhat troubling discovery: a company that developed 31 WordPress plugins, both free and premium versions, was sold in early 2025, to a person calling themselves “Kris”.


https://cdn.mos.cms.futurecdn.net/xwpEUtGigAH5K4krGZFy5K-2560-80.jpg



Source link

Latest articles

spot_imgspot_img

Related articles

Leave a reply

Please enter your comment!
Please enter your name here

spot_imgspot_img