Cybersecurity News
Filters
Filtered by tag: wordpress × Clear
Experts warn 2,000 hacked WordPress sites were secretly running a global crime ring
Around 2,000 hacked WordPress sites were used as infrastructure for a global cybercrime operation. The compromised sites served multiple roles: delivering malware to victims, acting as command-and-control servers for infected devices, and storing stolen data. Security experts warn the scheme exploited the sites' legitimacy to avoid detection, highlighting risks for website owners who neglect security updates.
Thousands of Hacked WordPress Sites, One Operation: Unmasking StopAndProtect
Researchers at Check Point identified a ransomware operation called StopAndProtect in May 2026. The campaign uses the ClickFix social-engineering technique to trick victims into running a PowerShell command, triggering a multi-stage downloader chain. Thousands of hacked WordPress sites serve as infrastructure for the operation, which researchers have now partially unmasked through analysis of its infection chain and supporting infrastructure.
How to Create a Secure WordPress Staging Site: Beginner’s Guide
A WordPress staging site lets you test updates and changes before they go live, reducing the risk of breaking your site for visitors. However, staging sites copy sensitive data like admin accounts, customer records, and API keys, making security essential. The article guides beginners through creating a staging environment while ensuring it remains protected from exposure or exploitation.
