Hackers target critical WordPress plugin flaw to install backdoors and create admin accounts

A recently discovered vulnerability in a popular WordPress plugin is being actively exploited in attacks by hackers attempting to install backdoors on websites, inject custom code, and grant themselves admin rights. The flaw existed in a version of the nofollow” title=”Link to plugin”>AMP for WP – Accelerated Mobile Pages plugin, designed to make webpage load faster on mobile devices.

Read full news article on Graham Cluley