Security researchers at Sucuri have discovered a malware campaign targeting WordPress sites via hidden malware in the mu-plugins directory. This attack facilitates remote code execution, leading to server compromise and data theft. Threat actors exploited the /wp-content/mu-plugins/ directory by planting an index.php file with obfuscated PHP code for persistent control over infected sites.

M&S issues update as crippling nationwide IT outage still ongoing – The Sun
Marks & Spencer (M&S) halted online orders in the UK and Ireland following a cyber attack, leading to a 5% drop in share price. Physical