FeaturedNews Briefs

Massive WooCommerce exploit underway

1 Mins read

Security response author Wordfence reports that attacks have escalated on the WooCommerce Payments plug-in, software used by many small business owners to manage payments on their ecommerce websites.

The attacks target a known vulnerablility, CVE-2023-28121, and began on July 14, 2023. Wordfence has catalogued a peak of 1.3 million attacks against 157,000 websites on July 16.

The exploit attempts to install the WP Console plug-in as a gateway to execute malicious code including a file uploader to establish persistence of the payload.

Read the full Wordfence report here.

🤞 Get connected!

A once weekly email notification of new stories on TechNewsTT. Just that. No spam.

Possible UI Glitch. Click top right corner to dismiss 👉

Get Connected!

A once weekly email notification of new stories on TechNewsTT.

Just that. No spam.

Related posts
FeaturedTechnology Reporting

Where cybersecurity threats begin: Phishing

5 Mins read
Do not submit PII to anyone, anywhere, unless you have initiated the contact and are absolutely clear that you are speaking with/logged into/emailing/form-filling in an environment you are certain is secure.
FeaturedOpinion

Behavioral Analytics: The Key to Combatting Scalable Payment Fraud

6 Mins read
Suspicious behavior can also be detected through inconsistent interactions with the website’s user interface.
FeaturedOpinion

ISC2 anti-scammer guidance

2 Mins read
The Caribbean Chapter of the ISC2 has issued guidance and advice for internet users facing phishing messages and WhatsApp scams.
Subscribe
Notify of
guest


This site uses Akismet to reduce spam. Learn how your comment data is processed.

0 Comments
Oldest
Newest Most Voted
Inline Feedbacks
View all comments
×
BitDepthFeatured

A blitzkrieg of ransomware

0
Share your perspective in the comments!x
()
x