Security
Headlines
HeadlinesLatestCVEs

Headline

ShadowCaptcha Exploits WordPress Sites to Spread Ransomware, Info Stealers, and Crypto Miners

A new large-scale campaign has been observed exploiting over 100 compromised WordPress sites to direct site visitors to fake CAPTCHA verification pages that employ the ClickFix social engineering tactic to deliver information stealers, ransomware, and cryptocurrency miners. The large-scale cybercrime campaign, first detected in August 2025, has been codenamed ShadowCaptcha by the Israel National

The Hacker News
#wordpress#The Hacker News

The Hacker News: Latest News

MixShell Malware Delivered via Contact Forms Targets U.S. Supply Chain Manufacturers