WordPress- affected by malware!!

Hello everyone!

    Welcome to New Age Informers where we believe in sharing knowledge. Today we are going to discuss new flaw found in WordPress. According to the latest research done by a security researcher from Sucuri, Denis Sinegubko, a new malware named as "wp-vcd" has been discovered by him in WordPress. It injects malicious codes which led WordPress admin users into vulnerable or drudged websites.




    As per the research, the malware called as wr-vcd comes pre-installed with unauthorized or pirated WordPress premium themes which were published for free download on untrusted websites. Denis Sinegubko recorded that the attackers had loaded that malicious code via the include function and inserted it into the core files of WordPress such as class.wp.php & functions.php. But, according to the Sucuri's report, the method of injecting malicious code was outdated now. They do so because unfamiliar users will not delete the file by considering it the core file and if they delete it, it will affect their website. Though, the security tools nowadays are so popular that this plan fails in front of them. Such latest security tools are now capable of detecting the modification done on the core files. As theme files are getting changed frequently, the malicious codes found a better place to hide it.




    It was found that the malware is running by adding a covered admin user to the database of the webistes having username as "100010010". This covert account will be used by the attackers later on to access the affected websites in order to perform several malicious deeds. The example for it is given below:


    Users of WordPress are suggested to download or install plugins and themes from trusted websites only. Another option for being safe is to keep your security tools as well as system up-to-date with latest security patches installed.

    For more interesting articles check out us here:
facebook: CLICK HERE!!!!!!!!!!
Twitter: @NewAgeInformers
Instagram: @new_age_informers_

Comments

  1. Great Information, I read out this blog to carefully and much knowledge about the malware, thank you so much to share this post with us https://goo.gl/rMXBKF

    ReplyDelete

Post a Comment