WordPress sites led by malicious accessories disguised as safety tool




  • Wordfence researchers discover a new piece of WordPress malware
  • Threat actors used AI to create legitimate -looking tools
  • Malware aims to be an anti-malware product

Security researchers have discovered a piece of WordPress malware that pretends to be an antimalware solution. At the end of April, Marko Wotschka of the Wordfence team published a new blog post detailing an “WordPress” malware: it appears in the file system as a normal WordPress complement, often with the name ‘WP-AntyMalwary-Bot.php’.

While they seem discreet at the beginning, the researchers discovered that this complement contains several functions that allow the attackers to persist on the target website, hide the complement to the board and execute the code remotely.

Leave a Comment

Your email address will not be published. Required fields are marked *