WordPress wp2shell RCE Under Active Attack
A critical pre-auth RCE chain in WordPress Core is being actively exploited right now. Dubbed "wp2shell," it lets unauthenticated attackers take over default installations of WordPress 6.9 and 7.0. No plugins, no special config, no credentials needed. Here's what you need to know.
Read more