Skip to main content
Back to news
Safety

Nearly 2,000 Hacked WordPress Sites Converted Into Criminal Infrastructure

(45 days ago) · 1 source · Summarized by CryptoBipto

Security researchers have identified nearly 2,000 compromised WordPress websites that have been repurposed by attackers to serve as criminal infrastructure. The hacked sites are reportedly being used to distribute malware, host phishing pages, or facilitate other illicit activities. The discovery highlights ongoing vulnerabilities in widely used web platforms.

WHY IT MATTERS

Think of a hacked website like a storefront that looks normal from the outside but has been secretly taken over by criminals operating out of the back room. When nearly 2,000 websites are compromised this way, it means thousands of unsuspecting visitors could be exposed to scams or malware. For crypto users, this is especially relevant because attackers often use hacked websites to create fake login pages for wallets or exchanges — a technique called 'phishing' — to trick people into revealing their passwords or secret recovery phrases (the master keys to their crypto). This is a reminder to always verify that you are on the correct website before entering sensitive information, and to keep software updated to reduce the risk of being compromised.

WordPress powers a significant portion of websites on the internet, making it a frequent target for cyberattacks. When attackers compromise WordPress sites, they can use them as launchpads for a variety of criminal operations, including distributing malware, stealing credentials through phishing, or redirecting visitors to scam pages.

Read the full analysis with a CryptoBipto membership

Members can read the full analysis of every story, not just the headline.

Get started

SOURCES

  • decrypt.co

RELATED

CybersecurityPhishingMalwareWordPress Vulnerabilities