Author Topic: Quite some Word Press CMS misconfigurations and now spreading malware.  (Read 348 times)

0 Members and 1 Guest are viewing this topic.

Offline polonus

  • Avast √úberevangelist
  • Probably Bot
  • *****
  • Posts: 33580
  • malware fighter
Where we stumbled upon this malicious blog website:

https://urlhaus.abuse.ch/url/2083998/
Do not click that malware link given there.

Oudated Word Press CMS version.  User Enumeration enabled. Directory Listing enabled.

Smoke Loader and dofoil malware downloads via malicious jpg file in theme.

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!