Thousands of WordPress Sites Get Hacked

Crypto growing
   Reading time 1

Thousands of WordPress Sites Get Hacked

Nearly 2,000 WordPress sites were hacked to display a fake NFT and discount pop-up that tricks visitors into connecting their crypto wallets to a crypto drainer, which will steal all the funds in the wallet.

Cybersecurity company, Sucuri discovered the hack in early March 2024.

Let’s break this down so you can understand it.

2,000 compromised sites is an extremely small number, considering WordPress has over 472 million installs. However, any compromise, regardless of the statistics, is still bad.

A crypto wallet drainer is a malicious script that seals all cryptocurrency and assets when someone connects their wallet. When people visit these compromised sites, the scripts display misleading messages to convince users to connect their wallets to the site. However, once they do so, the scripts steal all the contained assets.

Source:
https://www.bleepingcomputer.com/news/security/hackers-deploy-crypto-drainers-on-thousands-of-wordpress-sites/
https://www.bleepingcomputer.com/news/security/hacked-wordpress-sites-use-visitors-browsers-to-hack-other-sites/

Average Jow Weekly Logo
Average Joe

Welcome to the Average Joe Weekly blog. This is basically my place on the web where I can help spread some of the knowledge that I have accumulated over the years. I served 10+ years in the Marine Corps on Active Duty, but that was some 25 years ago.

Avatar photo

By Average Joe

Welcome to the Average Joe Weekly blog. This is basically my place on the web where I can help spread some of the knowledge that I have accumulated over the years. I served 10+ years in the Marine Corps on Active Duty, but that was some 25 years ago.

Leave a comment

This site uses Akismet to reduce spam. Learn how your comment data is processed.