WebPagetest Forums
Check your wordpress plugins [security alert] - Printable Version

+- WebPagetest Forums (https://www.webpagetest.org/forums)
+-- Forum: WebPagetest (/forumdisplay.php?fid=7)
+--- Forum: Announcements (/forumdisplay.php?fid=8)
+--- Thread: Check your wordpress plugins [security alert] (/showthread.php?tid=868)



Check your wordpress plugins [security alert] - pmeenan - 06-22-2011 11:56 PM

Looks like wordpress.org got hacked and the hackers got in and compromised a bunch of plugins (including W3TC). If you updated your plugins during the exposed period you'll want to make sure to update again to get the fixed versions.

Sorry, don't know more - just relaying what I've been reading: http://wordpress.org/news/2011/06/passwords-reset/

I haven't seen any information about what the malicious code did that was installed into the plugins - it could have been a benign back door or it could have wreaked all sorts of havoc while it was running.