Massive Compromise of WordPress-based Sites but ‘Everything will be Fine’ « M86 Security Labs Blog | ICT Security-Sécurité PC et Internet | Scoop.it

A few days ago, hundreds of websites, based on WordPress 3.2.1, were compromised. The attacker uploaded an HTML page to the standard Uploads folder and that page redirects the user to the Phoenix Exploit Kit.

 

Its logs show that users from at least four hundred compromised sites were redirected to Phoenix exploit pages.