
Loading

Loading
We use strictly necessary cookies to run this site, and analytics cookies to understand how it's used. See our Privacy Policy for details.

Cybersecurity researchers have shed light on a WordPress compromise in which threat actors deployed multiple persistence mechanisms to ensure that the final payload kept returning without having to infect the site again.
Summary
The backdoor has been codenamed SC after the "SC_" markers present in the injected content.
This is a brief wire summary, the full story (linked below) has the complete details.
KazaSec's take
Stories like this are part of why proactive security testing exists, finding the gap before someone else does is always cheaper than responding after the fact.
Coverage details
Related security advisories
Relevant from KazaSec
More security news
We help organizations find and fix the gaps before they make headlines.