|

Linked – Popular WordPress Plugin Comes with a Backdoor, Steals Site Admin Credentials

620861371_41bc79ff9e_m_wordpress“The plugin in question was Custom Content Type Manager (CCTM), a popular WordPress plugin for creating custom post types that, in the three years since it was uploaded on the WordPress plugin repo, has amassed quite a following, being currently installed on more than 10,000 sites.

Custom Content Type Manager version 0.9.8.8 contains malicious code

As Sucuri’s investigation revealed, in the past two weeks, the plugin that looked like an abandoned project for the last 10 months, mysteriously changed owner, and immediately after, the new developer, named wooranker, updated the plugin and pushed out a new version.”

The question, for me, is how did this person get ownership and access to update a WordPress plugin? Is there some flaw in the WordPress plugin community that would allow someone to take ownership of existing plugins? That’s scary. The original Sucuri post has some more info in that regard.

Popular WordPress Plugin Comes with a Backdoor, Steals Site Admin Credentials

Similar Posts

  • An update on the security hole in Morpheus. The hole might just be the users..*L* I still don’t see why on earth, after being told over and over again to not open strange attachments in email, people would download and run any old file that some random stranger decided to share. Nevermind the copyright violations,…

  • |

    Linked: How’d they do it without you?

    Seth’s point here is one many workers would do well to remember:

    “It’s easy to use our indispensability as fuel. Fuel to speak up and contribute. That’s important. But it’s also possible for that same instinct to backfire, and for us to believe that if we don’t do it, it won’t get done right.

    That’s unlikely.”

  • Security a Top Priority

    I haven’t had any word from my hosting provider about what the real server path to the site is, so no testing for now. Still keeping my fingers crossed that using it will speed things up a bit. In the meantime: Via Scripting News, I see that Dan Gillmor puts into more elequent words the…

  • Malware Advertising Warning

    I was looking at the Statcounter website earlier and watch my browser page refresh to show me an advertisement. That’s annoying behavior, but one that, unfortunately, is becoming more and more common on the web when I’m not running an Ad-blocker. What was much more than just annoying, however was what the “advertisement” actually was….

  • | | |

    Reading – Heinz Ketchup QR Code Takes You to Porn Site

    I’ve always been bothered by the idea of QR codes. I felt that they undermined everything we tried to teach users about online security. Don’t open email attachments that you weren’t expecting, don’t blindly follow links without checking where they go, or just go to the website and login without clicking a link in an…

  • This Week’s Links (weekly)

    Brace yourselves for the best WordPress yet tags: Blogging MM Technology Assisted Review – The Gavel Has Sounded tags: LitSupport MM Good Processing Requires a Sound Process – eDiscovery Best Practices tags: LitSupport MM “Big-A-Law — Y U No Collapse Already?” tags: LitSupport MM Courts Struggle With Determining Reasonability of e-Discovery Vendor Bills tags: LitSupport…

Leave a Reply

This site uses Akismet to reduce spam. Learn how your comment data is processed.

To respond on your own website, enter the URL of your response which should contain a link to this post's permalink URL. Your response will then appear (possibly after moderation) on this page. Want to update or remove your response? Update or delete your post and re-enter your post's URL again. (Find out more about Webmentions.)