WP News – Thousands of WordPress websites have been infected with a mystery malware that redirects traffic to a different website.

WP News - Thousands of WordPress websites have been infected with a mystery malware that redirects traffic to a different website. hackerguyphoto

Thousands of WordPress websites were infected with an unknown malware variant that cybersecurity researchers from Sucuri have found.

Malware would redirect visitors to a different website where ads from the Google Ads platform would load. This would make money for the malware website's owners.

The Sucuri team found that an unknown threat actor had managed to compromise almost 11,000 WordPress-powered websites.

Redirected

WordPress is the worlds most popular web hosting platform that is generally perceived as being secure. However, it also offers countless WordPress plugins, some of which carry high-severity vulnerabilities.

The researchers think that the threat actors used a vulnerability to deliver the malware. They don't know which vulnerability it was, but they're guessing that it was something that was already known and unpatched.

The malware works by redirecting people to a different website that loaded ads from Google. This way, Google would be tricked into paying the ad campaign owners for the views, which are actually fraudulent.

Sucuri has been tracking similar campaigns for a while now. In late November last year, we saw a campaign that infected around 15,000 WordPress sites. The difference between this campaign and the others we've seen is that the attackers didn't try to hide the malware in this one. They installed more than 100 malicious files on each website.

This new campaign is different than the old one in a few ways. First, the attackers tried to hide the malware from being found. Second, the malware was made more persistent so it would stay on the sites longer.

To keep yourself safe from website attacks, make sure to keep your website and all of its plugins up to date, and use a strong password and multi-factor authentication on your wp-admin panel. If you've already been infected, follow Sucuri's how-to guide to changing your passwords and protecting your website behind a firewall.

Some security plugins we recommend available free to our members:

  1. WP Cerber Security Pro
  2. iThemes Security Pro Plugin
  3. Wordfence Security Premium

Create back ups

Get clear of Spam

Leave a Comment

Your email address will not be published. Required fields are marked *

Shopping Cart
  • Your cart is empty.
BLACK
Friday
Save upto £50 on memberships
Get 20% off on all Items. Use Code
BlackFriday20
Sale
LIVE NOW!
X
Hi! We have detected your currency as $ US Dollars ($) USD. Is this correct?
Converted prices are for reference only - all orders are charged in £ Pound Sterling (£) GBP.
Scroll to Top

Choose your currency:

Close
Converted prices are for reference only - all orders are charged in £ Pound Sterling (£) GBP.
  • USDUS Dollars ($)
  • EUREuros (€)
  • GBPPound Sterling (£)
  • AUDAustralian Dollars ($)
  • BRLBrazilian Real (R$)
  • CADCanadian Dollars ($)
  • CZKCzech Koruna
  • DKKDanish Krone
  • HKDHong Kong Dollar ($)
  • HUFHungarian Forint
  • ILSIsraeli Shekel (₪)
  • JPYJapanese Yen (¥)
  • MYRMalaysian Ringgits
  • MXNMexican Peso ($)
  • NZDNew Zealand Dollar ($)
  • NOKNorwegian Krone
  • PHPPhilippine Pesos
  • PLNPolish Zloty
  • SGDSingapore Dollar ($)
  • SEKSwedish Krona
  • CHFSwiss Franc
  • TWDTaiwan New Dollars
  • THBThai Baht (฿)
  • INRIndian Rupee (₹)
  • TRYTurkish Lira (₺)
  • RUBRussian Rubles
  • AOAAngolan Kwanza