More than 2000 WordPress sites have been hacked by cybercriminals for a scam campaign that redirects visitors to several scam sites.
What does the report say?
Discovered by researchers from Sucuri, the hacking campaign makes use of previously known vulnerabilities in WordPress plugins. Some of the vulnerable plugins exploited include the ‘CP Contact Form with PayPal’ and the ‘Simple Fields’.
Conclusion
Website owners are urged to disable the modification of primary folders to block hackers from inserting malicious files. Meanwhile, experts claim that attackers will continue to register new domains or leverage existing unused domains to conduct such scam campaigns in the future.
Source: https://cyware.com/news/over-2000-wordpress-sites-hacked-to-propagate-scam-campaign-e94ef815
Download a copy of the 15 Ways to protect your business from a Cyber Attack
We're Aabyss and we can better secure your all-important data
If you’re concerned about your cyber security and protecting your private data, we can help.
We’re Aabyss and we have years of experience in supporting businesses in the North West with cyber security, among many other technology challenges. Through our internationally recognised approach, we’ll get to know your business and create the most appropriate solution to meet your commercial and operational requirements.
If you have any concerns or would like to discuss the challenges you face, please contact the team today to book your free discovery meeting.