Follow the latest coverage, related explainers and connected technology stories.
An attacker distributed malicious copies of the Admin Menu Editor Pro plugin after compromising its developer’s website, leading to the installation of hidden user accounts and a web shell in at least 1,500 sites. More than 230 customers are believed to have been affected, with the number potentially higher because another version was also compromised.
Attackers are exploiting an undocumented critical vulnerability in the WooCommerce Wholesale Lead Capture plugin to upload malicious PHP files and potentially take control of WordPress sites. Wordfence has blocked more than 100,000 attacks, while administrators should update to version 2.0.3.2 or later and check for signs of compromise.