fake-security-plugin-on-wordpress-enables-remote-admin-access-for-attackers

Cybersecurity experts have revealed a fresh initiative aimed at WordPress platforms that conceals malware as a security plugin.
The plugin, known as “WP-antymalwary-bot.php,” includes numerous features to sustain access, remain undetectable from the admin dashboard, and perform remote code execution.
“It has a pinging capability that can relay information back to a command-and-control (C&C) server.”


Leave a Reply

Your email address will not be published. Required fields are marked *

Share This