2026-08-02 10:05 UTC
⚠️ CRITICAL: Wordfence Finds Critical Backdoor in ARVE WordPress Plugin
A backdoored version 10.8.7 of the ARVE WordPress plugin was released with malicious code granting full admin access via secret token. ~20,000 active installations were at risk before WordPress.org blocked distribution. The attacker likely compromised the developer's account to inject the backdoor…
https://threatnoir.com/focus
#infosec #cybersecurity
Replies (0)
No replies.