Popular WordPress redirect plugin hid dormant backdoor for years

Source: BleepingComputer  ·  Category: Supply Chain


Quick Page/Post Redirect WordPress plugin (70,000+ sites) contained dormant backdoor for five years enabling arbitrary code injection. If the firm uses WordPress with this plugin, immediate removal and audit of site integrity required; assess client website exposure.

→ Read the full article

Read more