Hackers are compromising WordPress 3.2.1 blogs in order to infect their visitors with the notorious TDSS rootkit. The number of infections is growing steadily, according to Web security firm Websense. It’s not clear how the websites are being compromised, but there are publicly known exploits for vulnerabilities that affect WordPress. The Java vulnerability exploited in the attack is known as CVE-2011-3544 and allows the remote execution of arbitrary code. The people behind these attacks are luring victims to the infected websites by sending them spam emails that contain malicious links.”]

