{"id":7216,"date":"2023-12-02T10:19:34","date_gmt":"2023-12-02T10:19:34","guid":{"rendered":"https:\/\/musilda.cz\/?p=7216"},"modified":"2023-12-02T10:19:34","modified_gmt":"2023-12-02T10:19:34","slug":"phishing-scam-e-mail-vyzyva-uzivatele-k-instalaci-falesneho-wordpress-pluginu","status":"publish","type":"post","link":"https:\/\/affinite.io\/cs\/phishing-scam-e-mail-vyzyva-uzivatele-k-instalaci-falesneho-wordpress-pluginu\/","title":{"rendered":"Phishing scam e-mail vyz\u00fdv\u00e1 u\u017eivatele k instalaci fale\u0161n\u00e9ho WordPress pluginu"},"content":{"rendered":"\n
Phishing je jeden z „nejkonverzn\u011bj\u0161\u00edch“ typ\u016f podvodu v online prost\u0159ed\u00ed. S minimem n\u00e1klad\u016f, lze dos\u00e1hnout zna\u010dn\u00fdch zisk\u016f a proto se tyto podvody za\u010d\u00ednaj\u00ed zam\u011b\u0159ovat i na oblasti, kde to d\u0159\u00edve nebylo b\u011b\u017en\u00e9, jako jsou u\u017eivatel\u00e9 WordPressu.<\/p>\n\n\n\n
Ned\u00e1vno Wordfence Threat Intelligence t\u00fdm obdr\u017eel informace o podvodn\u00e9 kampani c\u00edlen\u00e9 na WordPress u\u017eivatele. V t\u00e9to kampani je rozes\u00edl\u00e1n fale\u0161n\u00fd e-mail, kter\u00fd se tv\u00e1\u0159\u00ed, \u017ee poch\u00e1z\u00ed od WordPress t\u00fdmu a upozor\u0148uje na \u00fadajnou zranitelnost umo\u017e\u0148uj\u00edc\u00ed vzd\u00e1len\u00e9 spou\u0161t\u011bn\u00ed k\u00f3du na str\u00e1nk\u00e1ch u\u017eivatele. Tato zranitelnost je ozna\u010dena identifik\u00e1torem CVE-2023-45124, kter\u00fd v\u0161ak moment\u00e1ln\u011b nen\u00ed platn\u00fd. E-mail d\u00e1le nab\u00e1d\u00e1 p\u0159\u00edjemce k sta\u017een\u00ed a instalaci dopl\u0148ku s n\u00e1zvem „Patch“, kter\u00fd je sou\u010d\u00e1st\u00ed scamu.<\/p>\n\n\n\n