Skip to content

Over 1 Million WordPress Sites Infected by Balada Injector Malware Campaign “Improving Your Focus and Productivity at Work” “Boosting Your Concentration and Efficiency in the Workplace”

WordPress websites have been hit by a malicious campaign called Balada Injector, which leverages all known and recently discovered theme and plugin vulnerabilities. Over one million WordPress websites have been infected since 2017 and the attack plays out in waves every few weeks. The attackers predominantly try to obtain database credentials in the wp-config.php file,… 

Critical WooCommerce Payments Plugin Flaw Patched for 500,000+ WordPress Sites

Critical WooCommerce Payments Plugin Flaw Patched for 500,000+ WordPress Sites WooCommerce, an e-commerce plugin for WordPress, has released patches for a critical security flaw affecting versions 4.8.0 through 5.6.1 of its Payments plugin, which is installed on over 500,000 websites. The vulnerability could allow an unauthenticated attacker to gain unauthorised access to impacted stores and…