Hackers are targeting over a million WordPress sites in ongoing attacks

clock • 3 min read
Hackers target over a million WordPress sites in ongoing attack
Image:

Hackers target over a million WordPress sites in ongoing attack

They are exploiting security bugs in four WordPress plugins and 15 Epsilon Framework themes

Researchers at cyber security firm Wordfence say they have detected a massive, ongoing wave of attacks that is originating from over 16,000 different IP addresses and targeting more than 1.6 millio...

To continue reading this article...

Join Computing

  • Unlimited access to real-time news, analysis and opinion from the technology industry
  • Receive important and breaking news in our daily newsletter
  • Be the first to hear about our events and awards programmes
  • Join live member only interviews with IT leaders at the ‘IT Lounge’; your chance to ask your burning tech questions and have them answered
  • Access to the Computing Delta hub providing market intelligence and research
  • Receive our members-only newsletter with exclusive opinion pieces from senior IT Leaders

Join now

 

Already a Computing member?

Login

You may also like
Two command injection bugs threaten Fortinet's FortiSIEM

Threats and Risks

Affect versions from October 2022 to 2024

clock 07 February 2024 • 2 min read
Microsoft's calm start to 2024: January Patch Tuesday addresses 49 bugs

Threats and Risks

None of them is currently under active exploitation or publicly disclosed

clock 10 January 2024 • 3 min read
Microsoft, Dell and Lenovo laptops vulnerable to Windows Hello authentication flaw

Threats and Risks

Researchers employed reverse engineering techniques on both software and hardware

clock 27 November 2023 • 2 min read
Most read

Sign up to our newsletter

The best news, stories, features and photos from the day in one perfectly formed email.

More on Hacking

Cambridge University hit by DDoS attack

Cambridge University hit by DDoS attack

Anonyous Sudan claims it also hit the University of Manchester

John Leonard
clock 20 February 2024 • 1 min read
Southern Water confirms customer data breach

Southern Water confirms customer data breach

Stems from Black Basta attack last month

clock 14 February 2024 • 2 min read
Cloudflare's estate breached by suspected state-sponsored threat actors

Cloudflare's estate breached by suspected state-sponsored threat actors

The attackers exploited unrotated access token and service account credentials obtained from an Okta breach in October

clock 05 February 2024 • 2 min read