Categories: Ad Guardian PlusNews

Social share plugin for WordPress exploited by hackers

The critical security vulnerabilities of one of the popular social media sharing plugins – Social Warfare, was exploited by hackers in order to take control of the WordPress websites still running a vulnerable version of the plugin, used to add social share buttons.

Although a patched new version of the plugin was published in March, a security researcher published a full disclosure of how the vulnerability could be exploited. Thus, hackers can take complete control of the websites and servers, without any authentication and redirect the victims to ads websites. Also, the attackers use compromised sites to host malicious code or perform digital coin mining.

The Social Warfare plugin’s vulnerable version seems to be still used by more than 85% of the WordPress active sites, meaning that hundreds of millions of visitors are at the risk of hacking.

The only real solution is an update for the Social Warfare plugin to the newest version.

Laurentiu Titei

Recent Posts

How to Extend/Increase Bluetooth Range in Windows 11,10

Bluetooth allows you to connect your device to another device wirelessly. But the range of Bluetooth is quite low and limited, which…

13 hours ago

Fix: The Local Device Name Is Already in Use in Windows 10, 11

You might encounter the issue of ‘the local device name is already in use’ while using your system with a…

2 days ago

Best Free Windows Server Backup Software in 2026

Let’s introduce you to the best server backup software for you to use in 2026. Social…

3 days ago

How to Update Windows Security Signatures Manually Windows 11/10

Windows Security signatures are digital fingerprints that verify the integrity and authenticity of various software…

3 days ago

Best Free Textbook PDF Websites to Download Books Online 2026

The global eBooks market is set to grow at a 1.18% CAGR by 2030 and…

4 days ago

Fixed: Field ‘Browser’ Doesn’t Contain a Valid Alias Configuration

This simple guide can help you fix the field ‘browser’ doesn’t contain a valid alias configuration error on your device…

7 days ago