menu
techminis

A naukri.com initiative

google-web-stories
Home

>

Technology News

>

Another ma...
source image

Tech Radar

2w

read

349

img
dot

Image Credit: Tech Radar

Another major WordPress plugin has been hacked to try and hijack your sites

  • Hackers have found a way to install old, outdated, and vulnerable plugins on WordPress websites, directly from the WordPress plugin repository.
  • The vulnerability was found in Hunk Companion, a plugin used by over 10,000 websites, allowing crooks to install other plugins with known vulnerabilities.
  • A threat actor abused the bug to install a vulnerable version of WP Query Console, enabling remote code execution on target sites.
  • The bug has been patched in Hunk Companion version 1.9.0, but roughly 8,800 sites are still vulnerable.

Read Full Article

like

21 Likes

For uninterrupted reading, download the app