Jan. 16, 2023, 9:01 p.m. | Bill Toulas

The RISKS Digest catless.ncl.ac.uk

Bill Toulas, BleepingComputer, 30 Dec 2022,
via ACM TechNews; Wednesday, January 4, 2023

Antivirus vendor Dr. Web disclosed a new Linux malware that exploits 30
flaws in multiple outdated WordPress plugins and themes to inject malicious
JavaScript and give attackers remote command capabilities. The vendor said
the trojan targets 32-bit and 64-bit Linux systems; it is mainly designed to
penetrate WordPress websites via a series of hardcoded exploits that run
successively until one breaks through. If the sites run outdated …

64-bit antivirus attackers backdoor bill bleepingcomputer capabilities command dec exploits flaws hardcoded inject january javascript linux linux malware malicious malware plugin plugins run series systems technews trojan vendor web websites wordpress wordpress plugins wordpress plugins and themes

SOC 2 Manager, Audit and Certification

@ Deloitte | US and CA Multiple Locations

Information Security Engineers

@ D. E. Shaw Research | New York City

Technology Transfer GMP Compliance Officer

@ Pharmathen | Sapes, East Macedonia and Thrace, Greece

Security Cyber Consultant DRC (m/w/d)

@ Atos | Berlin, DE, D-13353

Penetration Tester - InfoSec

@ Rapid7 | NIS Belfast

Cyber Vulnerability Lead

@ Under Armour | Remote, US