Got an account at WordPress.com? You should replace your password.
Over the weekend an unidentified group of hackers raised a huge offensive attack against blogs that use this popular content management system. Growing number of attacks, during which hackers try to break into websites with the user name ‘Admin’ and a long chain of common passwords (Brute Force method) and using Zero-Day security holes in WordPress and various additives that are installed on the system.
Once the hackers manage to break into the site, they transplant a malicious software that allows them to remotely control the site. And what do they do with it? Very simple. Hacked site makes its a botnet server, which in turn attacks other sites using the same method.
Read More