Breaking News

CORSAIR Expands Its Gaming Ecosystem at Computex 2026 with Advanced Hall Effect Technology, Stream Deck-Integrated Performance, and All-Day Audio CORSAIR Unveils the Latest Innovation in Cases, Cooling, Power Supplies and More for DIY PC Builders at COMPUTEX 2026 be quiet! unveils new power, cooling, and peripheral lineup Micron Powers AI Everywhere at COMPUTEX 2026 Delkin Devices Launches New microSD Express Cards Optimized for Nintendo Switch 2 Gaming

logo

  • Share Us
    • Facebook
    • Twitter
  • Home
  • Home
  • News
  • Reviews
  • Essays
  • Forum
  • Legacy
  • About
    • Submit News

    • Contact Us
    • Privacy

    • Promotion
    • Advertise

    • RSS Feed
    • Site Map

Search form

CryptoPHP Threatens Popular Content Management Systems

CryptoPHP Threatens Popular Content Management Systems

Enterprise & IT Nov 25,2014 0

CryptoPHP is a threat that uses backdoored Joomla, WordPress and Drupal themes and plug-ins to compromise webservers on a large scale, and Fox-It warns that site administrators are at risk of being socially engineered into installing the backdoor on their server. By publishing pirated themes and plug-ins free for anyone to use instead of having to pay for them, the CryptoPHP actor is social engineering site administrators into installing the included backdoor on their server.

Fox-It warns that after being installed on a webserver the backdoor has several options of being controlled which include command and control server communication, mail communication as well as manual control.

Operators of CryptoPHP currently abuse the backdoor for illegal search engine optimization, also known as Blackhat SEO. The backdoor is a well developed piece of code and dynamic in its use. The capabilities of the CryptoPHP backdoor include integration into popular content management systems like WordPress, Drupal and Joomla; public key encryption for communication between the compromised server and the command and control (C2) server; an extensive infrastructure in terms of C2 domains and IP’s; backup mechanisms in place against C2 domain takedowns in the form of email communication; manual control of the backdoor besides the C2 communication; remote updating of the list of C2 servers and the ability to update itself.

Fox-It says it has identified thousands of backdoored plug-ins and themes which contained 16 versions of CryptoPHP as of the 12th of November 2014.

Fox-It has produced a white paper that details how to detect the presence of the backdoor.

Tags:
Previous Post
Sony to Reduce Smartphone, TV Lineups
Next Post
ASML Says First EUV Production Systems Will Be Ready in 2016

Related Posts

Latest News

CORSAIR Expands Its Gaming Ecosystem at Computex 2026 with Advanced Hall Effect Technology, Stream Deck-Integrated Performance, and All-Day Audio
Gaming

CORSAIR Expands Its Gaming Ecosystem at Computex 2026 with Advanced Hall Effect Technology, Stream Deck-Integrated Performance, and All-Day Audio

CORSAIR Unveils the Latest Innovation in Cases, Cooling, Power Supplies and More for DIY PC Builders at COMPUTEX 2026
Cooling Systems

CORSAIR Unveils the Latest Innovation in Cases, Cooling, Power Supplies and More for DIY PC Builders at COMPUTEX 2026

be quiet! unveils new power, cooling, and peripheral lineup
Cooling Systems

be quiet! unveils new power, cooling, and peripheral lineup

Micron Powers AI Everywhere at COMPUTEX 2026
Enterprise & IT

Micron Powers AI Everywhere at COMPUTEX 2026

Delkin Devices Launches New microSD Express Cards Optimized for Nintendo Switch 2 Gaming
Cameras

Delkin Devices Launches New microSD Express Cards Optimized for Nintendo Switch 2 Gaming

Popular Reviews

Akaso 360 Action camera

Akaso 360 Action camera

Dragon Touch Digital Calendar

Dragon Touch Digital Calendar

be quiet! Pure Loop 3 280mm

be quiet! Pure Loop 3 280mm

Noctua NF-A12x25 G2 fans

Noctua NF-A12x25 G2 fans

Endorfy Thock V2 Wireless Keyboard

Endorfy Thock V2 Wireless Keyboard

Soft2bet and the unseen hardware that makes instant play possible

Soft2bet and the unseen hardware that makes instant play possible

Crucial T710 2TB NVME SSD

Crucial T710 2TB NVME SSD

JSAUX 65Wh Rog Ally Battery

JSAUX 65Wh Rog Ally Battery

Main menu

  • Home
  • News
  • Reviews
  • Essays
  • Forum
  • Legacy
  • About
    • Submit News

    • Contact Us
    • Privacy

    • Promotion
    • Advertise

    • RSS Feed
    • Site Map
  • About
  • Privacy
  • Contact Us
  • Promotional Opportunities @ CdrInfo.com
  • Advertise on out site
  • Submit your News to our site
  • RSS Feed