More than 2,000 WordPress websites have been found infected with a piece of crypto-mining malware. The malware is the same one that infected more than 5,400 WordPress websites last month. The same malware was updated in November to include a keylogger/cryptocurrency malware called cloudflare[.]solutions. If the infected WordPress site is an e-commerce platform, hackers can steal more valuable data, including payment card data. Users are advised to change all WordPress passwords and update all server software.
Source: https://thehackernews.com/2018/01/wordpress-keylogger.html