The West News
    Facebook Twitter Instagram
    The West News
    • Home
    • News
      • Tech
      • Sports
      • Local
    • Entertainment
    • Gaming
      • Guides
      • Elden Ring
      • Fortnite
      • New World
      • FIFA 22
      • Pokemon Go
    • Credit Card
    Facebook Twitter Instagram
    The West News
    Home»News»WordPress sites with millions of users are being scanned for potential threats
    News

    WordPress sites with millions of users are being scanned for potential threats

    Abhishek YadavBy Abhishek YadavJuly 15, 2022Updated:July 15, 2022No Comments2 Mins Read
    Facebook Twitter Pinterest LinkedIn Tumblr Email
    Share
    Facebook Twitter LinkedIn Pinterest Email

    WordPress sites with millions of users are being scanned for potential threats

    Cybercriminals are searching for websites utilizing an abandoned WordPress (opens in new tab) plugin because it has a high-severity vulnerability. Since July 4, hackers have searched over 1.6 million WordPress sites for the vulnerable plugin, according to security company Wordfence. Fortunately, only a very tiny percentage of websites are using the plugin, thus reducing the threat environment. The aforementioned plugin is referred to as Kaswara Modern WPBakery Page Builder. It allegedly no longer receives updates because its creators have abandoned it. It is therefore susceptible to CVE-2021-24284.

    Threat actors are able to upload and download files to and from susceptible WordPress websites thanks to this vulnerability, which could result in a total site takeover. The firm that makes Wordfence, Defiant, claims that its users experience approximately 500,000 daily attempted attacks. Despite differences in magnitude, the attacks originate from more than 10,000 different IP addresses. It was claimed that some IP addresses were producing “millions of requests.” Researchers advise website administrators to immediately delete the Kasware Modern WPBakery Page Builder Addons plugin from their websites; for those who don’t use it, they should still block the attackers’ IP addresses.

    However, WordPress is a relatively secure platform; there are very few flaws that can be detected there directly. The majority can be found in third-party WordPress plugins, which are the majority. Some of them are for profit, and skilled teams often provide updates. Some, on the other hand, put their users at risk of identity theft, data theft, defacement of websites, and other problems because they are free to use and don’t get nearly as many updates as they should.

    Related

    hacker News Tech Wordpress Site
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Abhishek Yadav
    • Website

    Related Posts

    Meta has announced it is soon adding end-to-end encryption by default to its Facebook Messenger platform

    August 15, 2022

    Lamar Jackson sets a deadline for the Baltimore Ravens to extend his contract

    August 15, 2022

    2022 Ballon d’Or nominees: Why is Cristiano Ronaldo nominated but Lionel Messi isn’t?

    August 15, 2022

    Leave a Reply Cancel reply

    Meta has announced it is soon adding end-to-end encryption by default to its Facebook Messenger platform

    August 15, 2022

    Lamar Jackson sets a deadline for the Baltimore Ravens to extend his contract

    August 15, 2022

    2022 Ballon d’Or nominees: Why is Cristiano Ronaldo nominated but Lionel Messi isn’t?

    August 15, 2022

    Erik Ten Hag has canceled a planned day off for Manchester United players after suffering a 4-0 defeat to Brentford

    August 15, 2022
    Facebook Twitter Instagram Pinterest
    • About Us
    • Contact
    • Disclaimer
    • Privacy Policy
    • Sitemap
    © 2022 TheWestNews.

    Type above and press Enter to search. Press Esc to cancel.