掃碼下載
BTC $62,115.91 +2.06%
ETH $1,608.86 +2.62%
BNB $588.79 +1.92%
XRP $1.12 +3.41%
SOL $64.80 +3.43%
TRX $0.3275 +2.00%
DOGE $0.0845 +4.49%
ADA $0.1613 +2.67%
BCH $225.16 +1.06%
LINK $7.68 +4.33%
HYPE $59.70 -0.23%
AAVE $62.93 +2.53%
SUI $0.7528 +7.14%
XLM $0.2078 +5.72%
ZEC $400.94 +2.64%
BTC $62,115.91 +2.06%
ETH $1,608.86 +2.62%
BNB $588.79 +1.92%
XRP $1.12 +3.41%
SOL $64.80 +3.43%
TRX $0.3275 +2.00%
DOGE $0.0845 +4.49%
ADA $0.1613 +2.67%
BCH $225.16 +1.06%
LINK $7.68 +4.33%
HYPE $59.70 -0.23%
AAVE $62.93 +2.53%
SUI $0.7528 +7.14%
XLM $0.2078 +5.72%
ZEC $400.94 +2.64%

慢霧安全提醒:警惕惡意攻擊者利用 WordPress 插件漏洞發起的水坑攻擊

2024-04-28 14:53:45
收藏

ChainCatcher 消息,近期有攻擊者利用 WordPress 插件漏洞攻擊正常的站點,然後在站點中注入惡意的 js 代碼,發起水坑攻擊,在用戶訪問站點時彈出惡意彈窗,騙取用戶執行惡意的代碼或進行 Web3 錢包簽名,從而盜取用戶的資產。

建議有使用 WordPress 插件的站點注意排查是否存在漏洞,及時更新插件,避免被攻擊;用戶在訪問任何站點的時候,要仔細識別下載的程序以及 Web3 簽名的內容,避免下載到惡意程序或因授權了惡意的簽名導致資產被盜。

app_icon
ChainCatcher 與創新者共建Web3世界