In this week's Websense Security Labs video, research manager Chris Astacio guides us through the latest mass injections that have been occurring in Wordpress blogs. Chris explains how hackers have been exploiting vulnerabilities in a WordPress plugin called TimThumb.php to remotely access blogs and inject html code that will redirect visitors to attack sites.
For more statistics on the nature of the injections and a link to the author's site for an updated version (and fix for the problem!) check out the Websense Security Labs blog post on TimThumb.php here: http://community.websense.com/blogs/securitylabs/archive/2011/08/15/vulnerabi...
Follow the latest breaking news on cyber security with the weekly Websense Security Labs Video diaries here: http://securitylabs.websense.com/?cmpid=prtube
Link to this comment:
All Comments (0)