Close Menu
  • Home
  • UNSUBSCRIBE
  • News
  • Lifestyle
  • Tech
  • Entertainment
  • Sports
  • Travel
Facebook X (Twitter) WhatsApp
Trending
  • 800-year-old ‘hugging skeletons’ are genetically confirmed as Poland’s only medieval same-sex double burial
  • There’s a new T. rex from the dinosaur age — and it ruled the seas with a skull-crushing bite
  • Great Pyramid of Giza is remarkably resilient to earthquakes —‬ and it’s due to the ancient Egyptians’ ‘extraordinary’ engineering knowledge
  • China’s real-life ‘transformer’ mech is a giant humanoid robot that can switch from bounding on 4 legs to walking on 2
  • How can we prevent AI models from cannibalizing themselves when human-generated data runs out? Scientists say they’ve found the answer.
  • ‘The system is likely to reach a breaking point’: Major Italian volcano is speeding toward a transition, and a major eruption could be on the way
  • China installs world’s largest floating wind turbine in deep water test — it generates enough energy to power 4,200 homes annually
  • Diagnostic dilemma: A biopsy of a woman’s cancerous tumor caused it to vanish
Facebook X (Twitter) WhatsApp
Baynard Media
  • Home
  • UNSUBSCRIBE
  • News
  • Lifestyle
  • Tech
  • Entertainment
  • Sports
  • Travel
Baynard Media
Home»Tech»More than 14,000 WordPress sites hacked, used to spread malware
Tech

More than 14,000 WordPress sites hacked, used to spread malware

EditorBy EditorOctober 18, 2025No Comments2 Mins Read
Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
Share
Facebook Twitter LinkedIn Pinterest Email

WordPress is one of the most popular content management systems on the Internet. In fact, more than 43 percent of all websites run on WordPress. This makes the latest attack on WordPress sites by a new threat actor all the more concerning.

According to a new report from the Google Threat Intelligence Group (GTIG), a new threat actor codenamed UNC5142 has been successfully hacking into WordPress sites and using a brand new technique to spread malware across the web. UNC5142, according to the report, would find vulnerable WordPress websites often using flawed WordPress themes, plugins, or databases.

SEE ALSO:

Notorious hacker group doxxes ICE and FBI officials in new leak, report says

The targeted WordPress sites would be infected with a CLEARSHORT, multi-stage JavaScript downloader that distributes the malware. The threat group would then deploy a new technique dubbed “EtherHiding,” which is enabled by CLEARSHORT.

Mashable Light Speed

Google describes EtherHiding as “a technique used to obscure malicious code or data by placing it on a public blockchain, such as the BNB Smart Chain.” This use of blockchain to spread malicious code is unique and makes stopping the spread of malware all the more difficult.

The smart contract containing the code on the blockchain would then call up a CLEARSHORT landing page, often hosted on a Cloudflare dev page, that utilizes a ClickFix social engineering tactic. This tactic tricks the website visitor into running malicious commands on their computer via the Windows Run dialog or Mac’s Terminal app.

UNC5142’s attacks are often financially motivated, according to Google. GTIG says it has been tracking UNC5142 since 2023. However, Google reports that UNC5142 suddenly stopped all activity in July 2025.

This could mean that this new threat actor group, which has been successfully carrying out its malware campaigns, just decided to call it quits. Or it could mean that the threat actor has altered its techniques, successfully obscuring its latest actions, and is still hacking into vulnerable websites today.

Source link

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Previous ArticleIndia vs England: Charlotte Edwards vows best cricket is to come from her team ahead of World Cup showdown | Cricket News
Next Article Model Emily Ratajkowski makes Victoria’s Secret Fashion Show debut at 34
Editor
  • Website

Related Posts

Tech

iPhone exploit DarkSword has been released in the wild

March 24, 2026
Tech

The U.S. router ban: Everything you need to know

March 24, 2026
Tech

Underage sexual content, self-harm info targeted by OpenAI’s new open-source prompts

March 24, 2026
Add A Comment

Comments are closed.

Categories
  • Entertainment
  • Lifestyle
  • News
  • Sports
  • Tech
  • Travel
Recent Posts
  • 800-year-old ‘hugging skeletons’ are genetically confirmed as Poland’s only medieval same-sex double burial
  • There’s a new T. rex from the dinosaur age — and it ruled the seas with a skull-crushing bite
  • Great Pyramid of Giza is remarkably resilient to earthquakes —‬ and it’s due to the ancient Egyptians’ ‘extraordinary’ engineering knowledge
  • China’s real-life ‘transformer’ mech is a giant humanoid robot that can switch from bounding on 4 legs to walking on 2
  • How can we prevent AI models from cannibalizing themselves when human-generated data runs out? Scientists say they’ve found the answer.
calendar
May 2026
M T W T F S S
 123
45678910
11121314151617
18192021222324
25262728293031
« Apr    
Recent Posts
  • 800-year-old ‘hugging skeletons’ are genetically confirmed as Poland’s only medieval same-sex double burial
  • There’s a new T. rex from the dinosaur age — and it ruled the seas with a skull-crushing bite
  • Great Pyramid of Giza is remarkably resilient to earthquakes —‬ and it’s due to the ancient Egyptians’ ‘extraordinary’ engineering knowledge
About

Welcome to Baynard Media, your trusted source for a diverse range of news and insights. We are committed to delivering timely, reliable, and thought-provoking content that keeps you informed
and inspired

Categories
  • Entertainment
  • Lifestyle
  • News
  • Sports
  • Tech
  • Travel
Facebook X (Twitter) Pinterest WhatsApp
  • Contact Us
  • About Us
  • Privacy Policy
  • Disclaimer
  • UNSUBSCRIBE
© 2026 copyrights reserved

Type above and press Enter to search. Press Esc to cancel.