• Alerts
  • Events
  • DCR
    • Explore Cyware Products
    Alerts Events DCR
    Go to listing page

    Malicious WordPress Plugin Creates Hidden Admin User Backdoor

    • Malware and Vulnerabilities
    • June 23, 2025
    • sucuri
    A malicious WordPress plugin named php-ini.php was discovered that conditionally created a malicious admin user on infected websites. The plugin mimicked the legitimate wpforms plugin but only included a single file.
    Read More
    • WordPress
    Cyware Publisher

    Publisher

    Previous

    Anubis Ransomware Lists Disneyland Paris as New Victim

    Breaches and Incidents

    Next

    Critical Authentication Bypass Vulnerability in Telepor ...

    Malware and Vulnerabilities


    RESOURCES
    Cyber Fusion Center Guide
    EVENTS

    News and Updates, Hacker News

    Get in touch with us now!

    1-855-692-9927


    Download Cyware Social App

    Terms of Use Privacy Policy © 2023