Malcious Admin Menu Editor Pro plugin backdoors 1,500 WordPress sites
Overview
A malicious version of the Admin Menu Editor Pro plugin for WordPress has been distributed to over 200 users after attackers compromised the maintainer's website. This breach allowed the threat actor to push updates that created hidden user accounts on victims' sites, potentially giving them unauthorized access. As a result, around 1,500 WordPress sites are at risk, which could lead to data theft or further exploitation. Users of this plugin should take immediate action to ensure their sites are secure, as the implications of these backdoors could be severe for website integrity and user data. It serves as a reminder for all site administrators to regularly monitor and verify updates from third-party sources.
Key Takeaways
- Active Exploitation: This vulnerability is being actively exploited by attackers. Immediate action is recommended.
- Affected Systems: Admin Menu Editor Pro plugin for WordPress, affected sites include over 1,500 WordPress installations
- Action Required: Users should remove the compromised version of the Admin Menu Editor Pro plugin and replace it with a legitimate version from a trusted source.
- Timeline: Newly disclosed
Original Article Summary
Malicious versions of the Admin Menu Editor Pro plugin for WordPress have been distributed to more than 200 customers after a threat actor compromised the maintainer's website and pushed updates that created a hidden user account. [...]
Impact
Admin Menu Editor Pro plugin for WordPress, affected sites include over 1,500 WordPress installations
Exploitation Status
This vulnerability is confirmed to be actively exploited by attackers in real-world attacks. Organizations should prioritize patching or implementing workarounds immediately.
Timeline
Newly disclosed
Remediation
Users should remove the compromised version of the Admin Menu Editor Pro plugin and replace it with a legitimate version from a trusted source. Regularly check for unauthorized user accounts and update site security measures.
Additional Information
This threat intelligence is aggregated from trusted cybersecurity sources. For the most up-to-date information, technical details, and official vendor guidance, please refer to the original article linked below.
Related Topics: This incident relates to Malware.