Cyber Attacks
Attacker Bought 31 WordPress Plugins, Hid a Backdoor for 8 Months, Then Activated It with an Ethereum C2
An attacker purchased a portfolio of 31 trusted WordPress plugins on a public marketplace, embedded a PHP backdoor in a routine-looking update, and left it dormant for eight months before activating it to distribute hidden SEO spam to thousands of websites — with the malware resolving its command-and-control