Dec. 1, 2023, 8:06 p.m. | Ram Gall

Wordfence www.wordfence.com

The Wordfence Threat Intelligence Team has recently been informed of a phishing campaign targeting WordPress users. The Phishing email claims to be from the WordPress team and warns of a Remote Code Execution vulnerability on the user’s site with an identifier of CVE-2023-45124, which is not currently a valid CVE. The email prompts the victim ...
Read More


The post PSA: Fake CVE-2023-45124 Phishing Scam Tricks Users Into Installing Backdoor Plugin appeared first on Wordfence.

backdoor campaign claims code code execution cve email fake intelligence phishing phishing campaign phishing scam plugin psa remote code remote code execution scam targeting team threat threat intelligence valid vulnerability wordfence wordpress wordpress security

More from www.wordfence.com / Wordfence

Security Specialist

@ Nestlé | St. Louis, MO, US, 63164

Cybersecurity Analyst

@ Dana Incorporated | Pune, MH, IN, 411057

Sr. Application Security Engineer

@ CyberCube | United States

Linux DevSecOps Administrator (Remote)

@ Accenture Federal Services | Arlington, VA

Cyber Security Intern or Co-op

@ Langan | Parsippany, NJ, US, 07054-2172

Security Advocate - Application Security

@ Datadog | New York, USA, Remote