Smart Slider updates hijacked to push malicious WordPress, Joomla versions
ID: 1bf595b1-6cbe-5a60-97f7-cdec1c964bf5
STIX ID: report--1bf595b1-6cbe-5a60-97f7-cdec1c964bf5
Feed Name: Bleeping Computer
**Executive Summary:** A malicious update distributed via the Smart Slider 3 Pro plugin (version 3.5.1.35) in early April implanted multi-layer backdoors, created hidden admin accounts, and exfiltrated credentials from WordPress and Joomla sites (Smart Slider 3 is used on ~900,000 sites); the report details persistence mechanisms (mu-plugins, theme functions.php, wp-includes file using a .cache_key), detection/cleanup guidance, and recommends restoring clean backups or installing version 3.5.1.36 and rotating all credentials.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
