WordPress sites under attack from newly found Linux trojan
darkreading.com
WordPress sites under attack from newly found Linux trojan
1–10 of 83 posts
Re: WordPress sites under attack from newly found Linux trojan
#2Re: WordPress sites under attack from newly found Linux trojan
#3That narrows it down then.
Re: WordPress sites under attack from newly found Linux trojan
#4"targets 32-bit versions of Linux and also can run on 64-bit versions of the platform." That narrows it down then.
Re: WordPress sites under attack from newly found Linux trojan
#5Even the Google-cached version.
Re: WordPress sites under attack from newly found Linux trojan
#6Website loads as a white page to me. Even the Google-cached version.
Re: WordPress sites under attack from newly found Linux trojan
#7Re: WordPress sites under attack from newly found Linux trojan
#8Website loads as a white page to me. Even the Google-cached version.
Re: WordPress sites under attack from newly found Linux trojan
#9Website loads as a white page to me. Even the Google-cached version.
Re: WordPress sites under attack from newly found Linux trojan
#10"Linux.Backdoor.WordPressExploit.1 is a trojan application for 32-bit and 64-bit Linux operating systems that targets x86-compatible devices. The backdoor is written in the Go (Golang) programming language and executes attackers’ commands. Its main functionality is to attack websites based on the WordPress CMS by exploiting vulnerabilities in outdated versions of plugins and themes for this platform. If an attack is successful, the webpages of such sites are injected with a malicious JavaScript that redirects website visitors to other sites."
https://vms.drweb.com/virus/?i=25604695
"Linux.Backdoor.WordPressExploit.2 is a trojan application for 32-bit and 64-bit Linux operating systems that targets x86-compatible devices. The backdoor is written in the Go (Golang) programming language and executes attackers’ commands. Its main functionality is to attack websites based on the WordPress CMS by exploiting vulnerabilities in outdated versions of plugins and themes for this platform. If an attack is successful, the webpages of such sites are injected with a malicious JavaScript that redirects website visitors to other sites. This backdoor is a modification of the Linux.Backdoor.WordPressExploit.1 malicious application. It differs from it in the address of the C&C server, the address of the domain from which the malicious script is downloaded, and its additional list of vulnerabilities to exploit."