Thousand of WordPress, Joomla and SquareSpace Sites Serving Malicious Updates

According to HelpNet Security, thousands of compromised WordPress, Joomla and SquareSpace-based sites are actively pushing malware disguised as Firefox, Chrome and Flash Player updates to visitors.

This campaign has been going on since at least December 2017 and has been gaining steam. The malicious actors are injecting JavaScript that triggers the download requests into the content management systems’ JavaScript files or directly into the sites’ homepage.

According to Malwarebytes’ estimates, thousands or WordPress and Joomla sites and a little over 900 SquareSpace sites have been injected with the malicious scripts.

Image source

Read more: HelpNet Security

Discover Your Options & Request a Demo

Request a Free Consultation with our Specialists

Contact Now