Thousands of web pages exploited by hackers to spread malware


  • UNC5142 hacked over 14,000 WordPress sites to distribute malware
  • Malware payloads were mined from the blockchain, building resilience and preventing takedowns.
  • ClickFix tricks deceived users into executing malicious commands

More than 14,000 WordPress websites have been hacked and used as launching pads for malware distribution, Google’s Threat Intelligence Group (GTIG) said in a recent report.

Discussing the campaign in depth, GTIG said it was the work of UNC5142, a relatively new threat actor that emerged in late 2023 and shut down operations in late July 2025.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top