Technology Today

Cybercriminals are paying close attention to the security flaws that were recently discovered in several popular WordPress plugins and they have begun to target websites that still run vulnerable versions of them.According to BleepingComputer, at least two threat actors are actively attacking unpatched versions of the ThemeGrill Demo Importer, Profile Builder and Duplicator plugins.
What these three plugins have in common is the fact that they were all revealed to contain a critical security bug that could be exploited in recent reports.Researchers estimate that there are hundreds of thousands of WordPress sites that are currently at risk of being exploited because their admins have not yet patched these three plugins.One of the threat actors, who goes by the handle 'tonyredball', is exploiting two of these vulnerable plugins to obtain backdoor access.
Tonyredball was observed exploiting the administrator registration vulnerability in Profile Builder by using requests that contained the username, email and other profile details of the new administrator account, according to WordPress security experts at Defiant.However, the researchers also noted that tonyredball has launched a number of attacks which take advantage of the database deletion flaw in older versions of the ThemeGrill Demo Importer plugin.Another threat actor exploiting vulnerable WordPress plugins is identified by Defiant as 's olarsalvador1234' because of an email address used in the requests leading to exploitation.In addition to targeting ThemeGrill Demo Importer and Profile Builder, this threat actor is also exploiting unpatched flaws in Duplicator which is a plugin that allows websites to be cloned and migrated to other locations.Duplicator versions lower than 1.3.28 have been found to contain a security bug that allows unauthenticated users to download arbitrary files from victim sites.
By exploiting the bug, an attacker can retrieve a site's configuration file (wp-config.php) where the credentials for database access are stored.
This allows a threat actor like solarsalvador1234 to establish long-term access to a compromised site.According to update rates, Defiant estimates that around 800,000 sites may still run a vulnerable version of the Duplicator plugin.If you're WordPress site is running an older version of ThemeGrill Demo Importer, Profile Builder or Duplicator, it is highly recommended that you update to the latest version as soon as possible to prevent falling victim to these kinds of attacks.Via BleepingComputer





Unlimited Portal Access + Monthly Magazine - 12 issues


Contribute US to Start Broadcasting - It's Voluntary!


ADVERTISE


Merchandise (Peace Series)

 


Leading 20 pieces of tech Brits miss the most - consisting of corded phones and movie video cameras


Everyone utilizing Chrome put on red alert and informed to clear browsing data immediately


Rare deal that rivals Amazon sale sees Samsung Galaxy Smartwatch plummet to £39


Get a free Samsung Galaxy Watch - tech editor shares where to discover it


Fortnite down RECAP: Epic Games release declaration as video game continues to be offline


Top Tech: Sky launches UK's 'fastest broadband' with big 5Gbps fibre upgrade


Virgin Media users alerted they deal with new streaming block - examine your television and act now


All UK WhatsApp users put on alert and provided with immediate pointer this week


Gtech's 'perfect' cordless vacuum package is £& pound; 200 off and makes cleaning 'a lot simpler'


TOWIE's Pete Wicks succumbs to 'fake' Wimbledon influencer who tricked him


Sky summertime sale cuts cost of family essentials but Virgin has something much better


UK Fire television Stick users will be obstructed from popular streaming app on this exact date


Nifty Samsung code gets Galaxy fans this mobile for less


Sky TV block as brand-new crackdown interrupts UK homes from viewing content totally free


Sky's biggest-ever conserving on Gigafast broadband cuts £& pound; 96 off the ultimate upgrade


Google is fixing a major issue with your Gmail inbox, and free upgrade is coming soon


Top Tech: 5 Amazon-rivalling deals from Apple, Samsung, Shark and more


Amazon Prime Day: Favourite tech gizmos and home appliances we actually use and love


Consumers can get an Echo Pop speaker for less than ₤ 6 if they do one easy thing


Sky is dispensing a huge upgrade, however just if your postcode is on this list


Amazon slashes ₤ 450 off Shark self-emptying robotic vacuum in mega Prime Day offer


Newest Kindle hits lowest ever cost in Amazon Prime Day deal with over ₤ 100 off


Samsung unveils new Galaxy, and it makes your current Android phone appearance extremely inferior


Simply hours remain on Virgin Media's complimentary 4K TV deal - act quickly


Everyone with an Android phone placed on red alert as massive new threat validated


The 'finest' smart device of 2025 confirmed - has the iPhone or Android come out on top


Amazon's best Apple deals for Prime Day consisting of iPhone, iPad and AirPods


Tech professional warns 'never state yes' to 3 questions from callers you don't recognise


Millions of Brits 'forced to function as online security guards' for elderly family members


Leading Tech: Virgin Media's totally free television giveaway ends quickly as 48-hour countdown begins


All Amazon Prime users put on high alert - you need to follow 4 new rules today


Amazon gives you 3 reasons to ditch your Fire TV Stick and try something new this week


Apple fans rush for 22% off AirPods Pro 2 as Amazon Prime Day kicks off


Paramount+ drops to £3.99 in half price sale ending this week


Amazon is handing out free Echo speakers this week and here's how to get yours