Hundreds of WordPress sites have been hacked, attackers are threatening fake ransomware

Hundreds of WordPress sites were hacked and a message was left on them claiming that the site data was encrypted, but as the company explained Juices who noticed the attacks, it is a “fake ransomwareu“.

In the message, the attackers ask for 0.1 bitcoin (about $ 6,100) to unblock the hacked websites.

According to the results of the Google search with the text of the attacker’s message, at least 300 sites have been attacked so far.

The ransom message appears only on a few pages of the hacked site, and not on the entire website, which explains why no one has paid the ransom so far.

Moreover, pages that were cached in Google search results as affected have since been cleared, suggesting that site owners have had no difficulty returning their sites.

Photo: Juices

Sites that still display the message also show no signs of any form of encryption or error that would prevent visitors from using the rest of the website. Sucuri said the ransom message was generated by exploiting a vulnerability in a WordPress plugin called Directorist that was installed on the affected sites.

The attack seems to be some kind of „scarewarea“, which aims to scare website owners to pay a ransom, and those who do not have much knowledge about the sites.

But even if the scenario is that attackers have managed to encrypt site data, ransomware attacks on websites have rarely succeeded in the past. This is because most site owners have the ability to recover their websites from backups, replacing encrypted files with clean versions.



Source: Informacija.rs by www.informacija.rs.

*The article has been translated based on the content of Informacija.rs by www.informacija.rs. If there is any problem regarding the content, copyright, please leave a report below the article. We will try to process as quickly as possible to protect the rights of the author. Thank you very much!

*We just want readers to access information more quickly and easily with other multilingual content, instead of information only available in a certain language.

*We always respect the copyright of the content of the author and always include the original link of the source article.If the author disagrees, just leave the report below the article, the article will be edited or deleted at the request of the author. Thanks very much! Best regards!