A WordPress plugin backdoor remained hidden inside a widely used redirect plugin for years. The issue exposed more than 70,000 websites to potential compromise without any visible warning signs. Backdoor Found in Popular Redirect Plugin The vulnerability affects the Quick Page/Post Redirect plugin. This tool helps WordPress users manage URL redirects across their sites. Security…
A WordPress plugin hack has exposed thousands of websites after attackers injected malicious code into widely used tools. The incident shows how supply chain attacks can quietly compromise trusted plugins and spread malware at scale. Attackers abused plugin ownership The WordPress plugin hack targeted several plugins developed by Essential Plugin. Attackers acquired control of these…
A new wave of cyberattacks is targeting websites running outdated WordPress plugins. Security researchers warn that hackers are exploiting known vulnerabilities in GutenKit and Hunk Companion, two popular plugins that remain unpatched on thousands of websites. The large-scale campaign began in early October 2025, according to Wordfence, which detected over 8.7 million attack attempts in…
A wave of WordPress plugin attacks is spreading across the internet, targeting websites that use outdated or unpatched extensions. Cybercriminals are exploiting known vulnerabilities to gain control of WordPress sites and install malicious plugins. The campaign has already affected thousands of websites and shows how quickly neglected updates can turn into serious security risks. Massive…