F
Rate!
getmyfreetraffic.com
Type: Website Or Domain
Source: Other
Verified
Just posting it out here so it’s out there, so people watch out. Last night, most of my sites on my other server were breached by devidpentesting@yandex.ru. Nothing was downloaded and user data wasn’t breached, but the hacker managed to drop some malicious cookies (via some hidden scripts) in my visitor browsers (affiliate cookies) and then redirect the traffic to getmyfreetraffic.com.
185.212.128.0/23 <— Where attacks came from.
It is now confirmed that this was due to a vulnerability in the WordPress plugin Easy WP SMTP: https://www.wordfence.com/blog/2019/03/hackers-abusing-recently-patched-vulnerability-in-easy-wp-smtp-plugin/
Reports by other users:
There's one additional report by another user.
You can login to view additional reports.
You can login to view additional reports.