Nov 08 2008

Fake WordPress 2.6.4 Update

Published by at 9:17 am under Uncategorized

We run WordPress here at TDV and wanted to make sure others had seen this alert on a fake 2.6.4 update:

Can you find five differences between these two sites? Wordpresz.org may indeed look like WordPress.org, but the 2.6.4 release it’s distributing is on purposely backdoored in order to steal the content of cookies from those who have installed it, potentially leading to to hijacking of their WordPress blogging platforms for malicious purposes.

2 responses so far

2 Responses to “Fake WordPress 2.6.4 Update”

  1. jumperon 10 Nov 2008 at 11:15 am

    Heike -

    Thanks for letting me know about this update. There wasn’t any notice about it on the dashboard. I went ahead and applied it.

    Regards,

    Jumper

  2. Heikeon 10 Nov 2008 at 11:29 am

    Well played, sir. Well played.