Skip to content

Security Stop Press : WordPress Sites Being Hacked Through Old Plugin 

Cybersecurity researchers at GoDaddy-owned Sucuri have warned that an old plugin called Eval PHP, last updated a decade ago, is being used to hack WordPress websites. The plugin, which creates a backdoor and can mask its activities as cookies has been described as “dangerous.” 

The advice is to: 

– Keep your website patched and up to date with the latest security releases. 

– Protect the admin panel behind 2FA or some another access restriction. 

– Regularly backup the website. 

– Use a web application firewall to block any bad bots and to virtually patch any known vulnerabilities.

Share

Tags

Related Posts

Free A hand using a wireless mouse at a modern desk setup with a computer and keyboard. Stock Photo https://www.pexels.com/photo/person-holding-apple-magic-mouse-392018/

Beyond Licensing: How to Stop Wasting Money on Your Microsoft 365 Security and Copilot Add-Ons

MicrosoftSecurity

WhatsApp Introduces Passkey-Encrypted Backups

CybersecuritySecurityTech News
Free cyber security phone login vector https://pixabay.com/vectors/cyber-security-phone-login-6144815/

Top 10 Security Tips for Mobile App Users

CybersecuritySecurity
MFA fatigue attacks blog image of a MFA sign in request from Microsoft. Photo by Ed Hardie on Unsplash

MFA Fatigue Attacks: What They Are and How to Avoid Them

CybersecuritySecurityTech Tip
2 Norbury Road
Reigate
Surrey
RH2 9BY
United Kingdom

Company

Services

Inventas Business IT Support Logo
Cyber Essentials Certified
Back To Top