logo

Hackers exploit 14-year-old CMS editor on govt, edu sites for SEO poisoning

ID: 98e932c7-afc3-59b1-a1c9-620617329503

STIX ID: report--98e932c7-afc3-59b1-a1c9-620617329503

Feed Name: Bleeping Computer

Threat Score
50/100

Date Published: 2024-02-26

Date Updated: 2026-04-20

Author: Bill Toulas

...
...

Threat actors are exploiting open-redirect flaws in deprecated FCKeditor installations across universities, government, and corporate sites to create static pages that are indexed by search engines and later swap them for redirects to scam, phishing, or malicious sites; this SEO-poisoning campaign leverages trusted domains to bypass filters and maintain visibility until takedown.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.