Malicious WordPress Plugin Assists in Phishing Attacks
ID: 66b5d972-e848-5a1b-867a-e5af867deee1
STIX ID: report--66b5d972-e848-5a1b-867a-e5af867deee1
Feed Name: KnowBe4 Blog
Threat Score
Researchers warn that attackers are leveraging a WordPress plugin called PhishWP to set up or compromise sites that mimic legitimate payment processors, capturing credit card numbers, CVVs, billing addresses and 3D Secure OTPs and sending the harvested data to attackers (commonly via Telegram) in real time; victims receive fake confirmation messages while fraud is perpetrated.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
