Latest Daily News Hosting, Technology News, Updates, and Trends
Latest Daily News Hosting, Technology News, Updates, and Trends
  • Home
  • News Categories
    • Cyber Security
    • Cloud Hosting
    • Data Center
    • WordPress
    • Search Engine Ranking
    • cPanel Hosting
    • CDN Hosting
    • Press Release
    • WordPress.org-Wp Engine Battle
    • World
  • Web Stories
 Malicious WordPress Plugins Infect Sites with Data-Thieving Malware 
Cyber Security WordPress

Malicious WordPress Plugins Infect Sites with Data-Thieving Malware 

by Manvinder Singh October 23, 2024 0 Comment

Thousands of WordPress websites are under threat after hackers exploited various WordPress plugins. GoDaddy claims to have spotted the new variant of the ClickFix malware. 

A new variant of the ClearFake, also known as ClickFix malware, has allegedly compromised more than six thousand WordPress websites. ClickFix, introduced in 2024, is a social engineering tactic that deceives users into executing malicious scripts by pasting them in PowerShell terminal. It shares many similarities with ClearFake that displays fake web browser update banners on compromised websites.   

“The GoDaddy Security team is tracking a new variant of ClickFix (also known as ClearFake) fake browser update malware that is distributed via bogus WordPress plugins,” explains GoDaddy security researcher Denis Sinegubko. “These seemingly legitimate plugins are designed to appear harmless to website administrators but contain embedded malicious scripts that deliver fake browser update prompts to end-users,” he wrote. 

Affected plugins 

The impacted plugins spotted in the campaign include LiteSpeed Cache Classic, Custom CSS Injector, MonsterInsights Classic, Custom Footer Generator, Wordfence Security Classic, Custom Login Styler, Search Rank Enhancer, SEO Booster Pro, Social Media Integrator, Responsive Menu Builder, among others, according to a report from GoDaddy. 

Rise in Malicious Activities 

Installing the malicious plugins would prompt connections with various WordPress actions to enable malicious JavaScript injection into the site’s HTML that would retrieve a JavaScript file stored in a Binance Smart Chain Contract, which displays fake software update banners.  

ClickFix campaigns have become more prevalent this year, with threat actors compromising websites to display banners showing fake errors for Google Chrome, Google Meet conferences, Facebook, and even CAPTCHA pages.  

ClearFake, the other variant that everybody has witnessed before, is a type of malware attack that happens when a website gets hacked and shows a fake pop-up notification. This notification often looks like a browser message or an antivirus alert. It tells users that their computer is outdated or is infected with a virus, which eventually prevents them from viewing the desired website.  

Over the past couple of years, information-stealing malware has become a menace to cyber security defenders worldwide as stolen credentials are used to steal data and breach networks. 

Previous post
Next post

Manvinder Singh (Website)

author

Manvinder Singh, with 15 years in the web hosting industry, now shares his expertise as a news auditor, enriching web hosting users with valuable insights and guidance. His extensive experience spans server management, security protocols, and customer support, making him a trusted source in navigating the complexities of web hosting solutions. Passionate about transparency and reliability, Manvinder continues to empower businesses and individuals with practical knowledge, ensuring they make informed decisions in optimizing their online presence.

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Recent News

  • CITRA to Sign Lease Contract with Google to Establish Three Data Centers  
  • Last Algorithm Update of 2024; Google Rolls Out December Core Update
  • WP Engine Scores Legal Win Against Automattic
  • Search Engine Update: Google Resolved Indexing Issues
  • Google Asks US Government to Break Up Microsoft’s Cloud Deal with Open AI

Recent Comments

No comments to show.

Archives

  • December 2024
  • November 2024
  • October 2024
  • September 2024
  • August 2024
  • July 2024
  • June 2024
  • May 2024
  • October 2022
  • September 2022
  • August 2022
  • March 2022
  • February 2022
  • January 2022
  • December 2021
  • November 2021

Categories

  • Cloud Hosting
  • cPanel Hosting
  • Cyber Security
  • Data Center
  • Press Release
  • Search Engine Ranking
  • WordPress
  • WordPress.org-Wp Engine Battle
  • World

About Hosting Daily News

Hosting Daily news primarily focuses on delivering quality and authentic content related to the hosting industry. Hosting Daily News covers a wide range of news, articles, announcements, community-based content to keep the tech enthusiasts engaged with the latest development of hosting industry which includes Cloud Hosting, Web Hosting, cybersecurity, WordPress, AI technology and various topics related to hosting. We aim to foster collaborations and knowledge sharing content among industry stakeholders.

Top Categories

  • Cloud Hosting
  • cPanel Hosting
  • Cyber Security
  • Data Center
  • Press Release
  • Search Engine Ranking
  • WordPress
  • WordPress.org-Wp Engine Battle
  • World

Latest News

  • CITRA to Sign Lease Contract with Google to Establish Three Data Centers  
  • Last Algorithm Update of 2024; Google Rolls Out December Core Update
  • WP Engine Scores Legal Win Against Automattic
  • Search Engine Update: Google Resolved Indexing Issues
  • Google Asks US Government to Break Up Microsoft’s Cloud Deal with Open AI
Copyright © 2025 HostingDailyNews. All Right Reserved.
  • Instagram
  • Facebook
  • X
  • LinkedIn