WordPress sites targeted by malicious plugin disguised as security tool

May Be Interested In:AI paper mills are swamping science with garbage studies




  • Wordfence researchers uncover a new piece of WordPress malware
  • Threat actors used AI to create legitimate-looking tools
  • The malware pretends to be an anti-malware product

Security researchers have discovered a piece of WordPress malware pretending to be an antimalware solution. In late April, Marko Wotschka from the Wordfence team published a new blog post detailing an “interesting WordPress malware”: it appears in the file system as a normal WordPress plugin, often with the name ‘WP-antymalwary-bot.php’.

While looking inconspicuous at first, the researchers discovered that this plugin contains several functions that allows attackers to persist on the target website, hide the plugin from the dashboard, and remotely execute code.

share Share facebook pinterest whatsapp x print

Similar Content

Trump administration briefing: Democrats divided as funding bill passes; president rails against justice department
Trump administration briefing: Democrats divided as funding bill passes; president rails against justice department
Australian Government Agencies Failing to Keep Up With Cyber Security Change
Australian Government Agencies Failing to Keep Up With Cyber Security Change
Percival Everett's 'James' awarded Carnegie Medal for fiction
Percival Everett’s ‘James’ awarded Carnegie Medal for fiction
Small liquor firms decry Delhi's new point system as favouring bigger brands
Small liquor firms decry Delhi’s new point system as favouring bigger brands
Mouse brain slices brought back to life after being frozen for a week
Mouse brain slices brought back to life after being frozen for a week
EA cracks down on modders selling their custom Sims 4 content
EA cracks down on modders selling their custom Sims 4 content
Global Focus: Events that Define Our World | © 2025 | Daily News