Why Are WordPress Sites Still Running EOL PHP?
ID: 9b3f2253-7027-597f-8c06-9c21ab2fb32a
STIX ID: report--9b3f2253-7027-597f-8c06-9c21ab2fb32a
Feed Name: Censys Blog
Threat Score
This report analyzes the security posture of publicly visible WordPress sites, highlighting widespread use of outdated PHP and plugins, the resulting vulnerability surface, and an active defacement campaign attributed to ‘MR.GREEN’ that has impacted hundreds of sites; it documents common TTPs (xmlrpc.php abuse, exposed SSH, plugin/backdoor supply-chain risks), provides telemetry-based counts and examples, and offers remediation guidance for patching and configuration hygiene.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
