menu
techminis

A naukri.com initiative

google-web-stories
Home

>

Technology News

>

A key Word...
source image

Tech Radar

2w

read

52

img
dot

Image Credit: Tech Radar

A key WordPress feature has been hijacked to show malicious code, spam images

  • A special directory in WordPress, called mu-plugins, has been abused by threat actors to host malicious code.
  • The malicious code in mu-plugins allows threat actors to execute arbitrary code, redirect visitors to malicious websites, and display spam and ads.
  • Sucuri researchers found three variants of malicious code in mu-plugins, including redirect.php, index.php, and custom-js-loader.php.
  • To mitigate the risk, website admins should conduct regular security checks, scan for malicious files, update plugins and themes, and monitor file integrity.

Read Full Article

like

3 Likes

For uninterrupted reading, download the app