cognitive cybersecurity intelligence

News and Analysis

Search

Hiding WordPress malware in the mu-plugins directory to avoid detection

Sucuri researchers have detected a number of cases where hackers have hidden malware within the mu-plugins directory of WordPress, which auto-loads without activation. WordPress site administrators will typically find it tough to prevent the malware from executing, making the mu-plugins directory an ideal place for backdoors. It’s a method that permits attackers to redirect, control and manipulate websites without raising any alarms.

Source: securityaffairs.com –

Subscribe to newsletter

Subscribe to HEAL Security Dispatch for the latest healthcare cybersecurity news and analysis.

More Posts