Exposed Hacker Server Reveals WP-SHELLSTORM Backdooring Thousands of WordPress Sites
A cybercrime crew left its server exposed for three weeks, revealing the inner workings of a mass site-hacking operation tracked as WP-SHELLSTORM.…
A cybercrime crew left its server exposed for three weeks, revealing the inner workings of a mass site-hacking operation tracked as WP-SHELLSTORM.…
A cybercrime operation that breaks into websites at scale, plants webshell backdoors, and packages access for resale. Targeted WordPress and Joomla sites…
A research team that independently analyzed the same exposed WP-SHELLSTORM directory, publishing findings on June 22, 2026, before SOCRadar's writeup.