扫码下载
BTC $60,930.43 -2.12%
ETH $1,561.33 -6.07%
BNB $574.17 -2.75%
XRP $1.08 -2.78%
SOL $62.57 -5.21%
TRX $0.3196 -1.78%
DOGE $0.0814 -2.88%
ADA $0.1557 -4.48%
BCH $218.19 -1.78%
LINK $7.32 -3.14%
HYPE $59.44 -4.06%
AAVE $61.28 -7.03%
SUI $0.7018 -1.59%
XLM $0.1991 +5.30%
ZEC $358.43 +17.19%
BTC $60,930.43 -2.12%
ETH $1,561.33 -6.07%
BNB $574.17 -2.75%
XRP $1.08 -2.78%
SOL $62.57 -5.21%
TRX $0.3196 -1.78%
DOGE $0.0814 -2.88%
ADA $0.1557 -4.48%
BCH $218.19 -1.78%
LINK $7.32 -3.14%
HYPE $59.44 -4.06%
AAVE $61.28 -7.03%
SUI $0.7018 -1.59%
XLM $0.1991 +5.30%
ZEC $358.43 +17.19%

慢雾安全提醒:警惕恶意攻击者利用 WordPress 插件漏洞发起的水坑攻击

2024-04-28 14:53:45
收藏

ChainCatcher 消息,近期有攻击者利用 WordPress 插件漏洞攻击正常的站点,然后在站点中注入恶意的 js 代码,发起水坑攻击,在用户访问站点时弹出恶意弹窗,骗取用户执行恶意的代码或进行 Web3 钱包签名,从而盗取用户的资产。

建议有使用 WordPress 插件的站点注意排查是否存在漏洞,及时更新插件,避免被攻击;用户在访问任何站点的时候,要仔细识别下载的程序以及 Web3 签名的内容,避免下载到恶意程序或因授权了恶意的签名导致资产被盗。

app_icon
ChainCatcher 与创新者共建Web3世界