Get a Pentest and security assessment of your IT network.

News

RCE Attempts Against the Latest WordPress REST API Vulnerability

RCE attempts started today after a few days of attackers (mostly defacers) rushing to vandalize as many pages as they could. Attackers in the wild are trying to exploit sites that have plugins that allow for PHP execution from within posts and pages. These plugins, allow users to insert PHP code directly into the posts as a way to make customizations easier. We believe that PHP code should be run within a plugin or theme. It should not be run directly from the posts. We are starting to see them being attempted on a few sites.”]

Source: https://blog.sucuri.net/2017/02/rce-attempts-against-the-latest-wordpress-rest-api-vulnerability.html

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

BlackEnergy exploits recently fixed flaws in Siemens WinCC

News

Google Chrome will block code injection from third-party software within 14 months