Back to Intel

Intel Node

Popular WordPress Plugin Scripts Tampered to Plant Hidden Backdoors on Sites

lowadvisory2026-06-15T09:59:38+00:00source excerpt

Source excerpt · The upstream feed supplied only part of this article.Read the original source →

An attacker tampered with trusted JavaScript files used by WordPress sites running PushEngage, OptinMonster, and TrustPulse, turning those files into a way to break into the sites. When a site administrator was logged in as the file loaded, the code created an admin account under the attacker's control and installed a hidden plugin that opened a way back in.

Read Original Source