logoalt Hacker News

Someone bought 30 WordPress plugins and planted a backdoor in all of them

1167 pointsby speckxlast Monday at 5:54 PM326 commentsview on HN

Comments

vomayankyesterday at 1:33 AM

[dead]

jerukmanggayesterday at 12:16 AM

[dead]

aaabbbbyesterday at 3:08 PM

[dead]

rapidsluglast Monday at 9:16 PM

[dead]

neuzhouyesterday at 5:15 AM

[dead]

cookiengineeryesterday at 3:22 AM

The fun part is that Google Safebrowsing doesn't even flag the malicious company's website.

And on their pricing page they offer all plugins as a bundle for 0 USD per year! What a steal! /s

Don't click on this, I would assume it may contain malware: https://essentialplugin[.]com/pricing/

EGreglast Monday at 7:10 PM

[flagged]

show 3 replies
photochemsynlast Monday at 10:44 PM

[flagged]

show 1 reply
nullbytelast Monday at 6:27 PM

[flagged]

show 1 reply
cold_tomlast Monday at 8:24 PM

[flagged]

show 1 reply