Live data from Hacker News

I found a WordPress RCEs with GPT5.6 and $25

slcyber.io

211–220 of 247 posts

Re: I found a WordPress RCEs with GPT5.6 and $25

#211
post #190
post #121

Earlier quoted context omitted.

I work in the field and I just cannot believe anyone would pay that much for a Word Press exploit. People pay money for iOS or Android because there is valuable information stored on devices running those operating systems. There's absolutely nothing of value on any Word Press site. The only possible reason I can think of is for a watering hole attack, but that would require a second exploit that would be worth far m…

Bulk reply to all the people replying. bink is correct. The people who buy exploits are governments. There is very little interest in Wordpress or indeed any target that isn't a browser or a mobile. Browsers and mobiles are the only things that are perennially useful to an intelligence agency. Those two are reliable access vectors for the vast majority of things that interest government organisations.

Aren’t WP exploits valuable for watering hole attacks?

Re: I found a WordPress RCEs with GPT5.6 and $25

#212
post #211
post #190

Earlier quoted context omitted.

Bulk reply to all the people replying. bink is correct. The people who buy exploits are governments. There is very little interest in Wordpress or indeed any target that isn't a browser or a mobile. Browsers and mobiles are the only things that are perennially useful to an intelligence agency. Those two are reliable access vectors for the vast majority of things that interest government organisations.

Aren’t WP exploits valuable for watering hole attacks?

You don't need an RCE for that though. There's a lot of vulnerable plugins deployed everywhere.

Re: I found a WordPress RCEs with GPT5.6 and $25

#213
post #190
post #121

Earlier quoted context omitted.

I work in the field and I just cannot believe anyone would pay that much for a Word Press exploit. People pay money for iOS or Android because there is valuable information stored on devices running those operating systems. There's absolutely nothing of value on any Word Press site. The only possible reason I can think of is for a watering hole attack, but that would require a second exploit that would be worth far m…

Bulk reply to all the people replying. bink is correct. The people who buy exploits are governments. There is very little interest in Wordpress or indeed any target that isn't a browser or a mobile. Browsers and mobiles are the only things that are perennially useful to an intelligence agency. Those two are reliable access vectors for the vast majority of things that interest government organisations.

Are they only buying browser RCEs or are they also interested in RCEs deliverable via browser?

ex: Target hits website -> site delivers RCE for some software that is on the target's system

Re: I found a WordPress RCEs with GPT5.6 and $25

#214
post #190

Earlier quoted context omitted.

Bulk reply to all the people replying. bink is correct. The people who buy exploits are governments. There is very little interest in Wordpress or indeed any target that isn't a browser or a mobile. Browsers and mobiles are the only things that are perennially useful to an intelligence agency. Those two are reliable access vectors for the vast majority of things that interest government organisations.

> There is very little interest in Wordpress I'd disagree here. Still 41% of all sites use Wordpress [1]... and that means a lot of targets, and a lot of ways to target them. Your good ole' deface/ransomware extortion scheme, leaking data supposed to be confidential (such as account lists), trusted spreaders for exploits, or the latest hit, bets on "prediction markets" that have some Wordpress site set as oracle. Peo…

Plenty of underground forums sell exploits for people to do stuff like that, but you're talking $200, not a theoretical $500k.

You also don't need an RCE for 99% of that.

Re: I found a WordPress RCEs with GPT5.6 and $25

#215
post #211
post #190

Earlier quoted context omitted.

Bulk reply to all the people replying. bink is correct. The people who buy exploits are governments. There is very little interest in Wordpress or indeed any target that isn't a browser or a mobile. Browsers and mobiles are the only things that are perennially useful to an intelligence agency. Those two are reliable access vectors for the vast majority of things that interest government organisations.

Aren’t WP exploits valuable for watering hole attacks?

You already owned the WordPress admin with your browser 0day, you don’t care if WordPress is secure or not.

Re: I found a WordPress RCEs with GPT5.6 and $25

#216

Earlier quoted context omitted.

The great irony is they still sport their "Code is Poetry" mantra on their website [0]. If code is poetry, Wordpress is a new genre of it, probably? [0]: https://codex.wordpress.org/WordPress_Philosophy

They could just go a bit more honest and migrate to "Code is pasta". WP is also closer to a pizza slice than Michelin star fine dining experience.

A pizza slice covered in pineapple [0]

[0] https://wptavern.com/wordpress-org-login-introduces-mandator...

Re: I found a WordPress RCEs with GPT5.6 and $25

#217
post #138

Earlier quoted context omitted.

I currently work for a federal contractor including the DoD as their customer, using Wordpress as their main website. You would think there’s no sensitive information there, but some times all it takes is enough information about someone and their team to impersonate that person and gain access to an email thread, file sharing system or even an access card to a building. Never underestimate incompetence.

And never underestimate the competence of others.

lol, a big part of security is being smart enough to never challenge the bored…

Re: I found a WordPress RCEs with GPT5.6 and $25

#218
post #121

Earlier quoted context omitted.

Likely referencing https://www.crowdfense.com/exploit-acquisition-program/ Zerodium used to offer up to 300k in 2021 https://www.securityweek.com/sites/default/files/images/Zero... These brokers usually don't pay the bulk sum - they sell access to nation actors and you get payed out over time as long as the bug is not patched to discourage reselling and burning it. I doubt anyone would confirm if they got the full pa…

I work in the field and I just cannot believe anyone would pay that much for a Word Press exploit. People pay money for iOS or Android because there is valuable information stored on devices running those operating systems. There's absolutely nothing of value on any Word Press site. The only possible reason I can think of is for a watering hole attack, but that would require a second exploit that would be worth far m…

Compromising a crappy wordpress site means compromising mailbox credentials.

https://lolware.net/blog/2020-09-02-autodiscover-circus/

Re: I found a WordPress RCEs with GPT5.6 and $25

#219
post #211

Earlier quoted context omitted.

Aren’t WP exploits valuable for watering hole attacks?

You don't need an RCE for that though. There's a lot of vulnerable plugins deployed everywhere.

Ok, but an RCE in WP Core still seems pretty dang valuable, especially if you want to hit non-commercial websites that are less likely to have as many plugins installed?

Re: I found a WordPress RCEs with GPT5.6 and $25

#220
post #18

Earlier quoted context omitted.

The WordPress codebase is a disgrace. PHP is a beautiful language by now, but they absolutely butcher it and refuse to do anything about that.

The great irony is they still sport their "Code is Poetry" mantra on their website [0]. If code is poetry, Wordpress is a new genre of it, probably? [0]: https://codex.wordpress.org/WordPress_Philosophy

[deleted]
Post reply on HN