CyberSecurity news

FlagThis

Aman Mishra@gbhackers.com //
Original img attribution: https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEiDvK4ztqIEYtzW21r6konHYYIbUavWetjci9mQnAuxcFMWfyunokYEta_eonV0rHzS2_RZnjQCOxqMB1Muf3CXQ-kK9SMpO3d6jTqDwgjXXkWDcx6SrjSIDUJuv2FT6ncNn2Goq8pEJkqINgQ-gO5bd0xEOUroWBtFFvoY9QNmG6eo5v3p9BKW3R_ekUo/s16000/Malicious%20Code%20Injection.webp
ImgSrc: blogger.googleu

Share: bluesky twitterx--v2 facebook--v1 threads


References :
  • cyberpress.org: WordPress GravityForms Plugin Targeted in Malicious Code Injection Attack
  • gbhackers.com: Hackers Compromise WordPress GravityForms Plugin with Malicious Code Injection
  • Ian Campbell: Just a heads-up on this supply chain attack on the Gravity Forms wordpress plugin, one IOC is POST requests to gravityapi[.]org - a 3 day old domain.
  • Talkback Resources: WordPress Gravity Forms developer hacked to push backdoored plugins
Classification: