{"id":11361,"date":"2021-12-10T08:36:00","date_gmt":"2021-12-10T13:36:00","guid":{"rendered":"http:\/\/local.brightwhiz\/?p=11361"},"modified":"2021-12-13T03:50:30","modified_gmt":"2021-12-13T08:50:30","slug":"hackers-attacking-1-6-million-wordpress-sites","status":"publish","type":"post","link":"http:\/\/local.brightwhiz\/hackers-attacking-1-6-million-wordpress-sites\/","title":{"rendered":"Hackers are Aggressively Attacking Over 1.6 Million WordPress Sites"},"content":{"rendered":"\n

Hackers are actively hitting more than 1.6 million WordPress sites in coordinated large-scale attack campaigns originating from 16,000 IP addresses. They are doing this by exploiting security bugs in four WordPress<\/a> plugins and 15 Epsilon Framework themes.<\/p>\n\n\n\n

WordPress security company Wordfence, said<\/a> Thursday it had detected and blocked more than 13.7 million attacks aimed at the plugins and themes in a period of 36 hours. The exploits make it possible for attackers to update arbitrary options on vulnerable websites resulting in the taking over the breached websites and carrying out further malicious actions.<\/p>\n\n\n\n

Attackers are targeting 4 individual plugins with Unauthenticated Arbitrary Options Update Vulnerabilities. The four WordPress plugins in question are:<\/p>\n\n\n\n