Categories: News

Joomla Websites Vulnerable To Critical Exploit

When it comes to content management systems, WordPress is the preferred option for most website owners. Even a fair amount of Bitcoin platforms are using WordPress in some capacity, especially where blogging and news updates are concerned. For those companies using Joomla, it might be time to think twice about using this platform, as there is a critical vulnerability waiting to be exploited.

Also read: Ripple Trade To Shut Down in January – GateHub Takes its Place

Joomla Critical Bug Actively Exploited By Hackers

Joomla doesn’t make too many mainstream media headlines these days, even though it is a very versatile content management system for website owners. However, most people prefer to use WordPress or similar free blogging solutions, and Joomla is hardly ever mentioned. That is until a critical security flaw is discovered by researchers.

At the time of publication, hackers were actively exploiting one of Joomla’s critical vulnerabilities, which has been present in the platform’s source code for nearly eight years now. It does not happen often that a vulnerability exists for so long, although it remained undiscovered until very recently.

Even though Joomla engineers recently released a security patch to fix the vulnerability, the damage had already been done. Hackers have been exploiting the Joomla vulnerability for a little while, as attacks started last Saturday and continued all throughout Sunday. Security firm Sucuri reported a few hundred exploit attempts over the course of 48 hours.

Related Post

As one would come to expect, the number of attacks against Joomla sites increased exponentially once word got out about this vulnerability. Every single Joomla site was – and still is – a target for hackers unless the owner has installed the most recent security update in the past 36 hours.

What makes matters, even more, worrying is how it remains unclear as to what this exploit can do to Joomla-based websites. When content management systems are vulnerable to attack, just about anything can happen. More details are expected to be revealed in the near future, though.

Do you run a website based on Joomla? If so, have you applied the latest security patch, or noticed any strange activities? Let us know in the comments below!

Source: Ars Technica

Images credit 1,2

JP Buntinx

JP Buntinx is a FinTech and Bitcoin enthusiast living in Belgium. His passion for finance and technology made him one of the world's leading freelance Bitcoin writers, and he aims to achieve the same level of respect in the FinTech sector.

Share
Published by
JP Buntinx

Recent Posts

Velocity Ticket Debuts As The AI-Powered Invoicing Tool Every Service Business Needs in 2026

Velocity Ticket is trying to fix a major gap in businesses, and the approach it…

2 days ago

Axelar Confirms $4.67M Exploit on Secret Network Bridge, Core Protocol Remains Unaffected

Axelar is moving fast to contain damage after identifying a security incident that has resulted…

3 days ago

Sui Synthetic Dollar suiUSDe Gets Its Own Website

suiUSDe now has a dedicated landing page. The token, officially the eSui Dollar, comes out…

3 days ago

Ventuals Winds Down HIP-3 DEX, vHYPE Withdrawals Now Live For All Holders

Ventuals has fully wound down its HIP-3 DEX, and vHYPE withdrawals are now open. The…

3 days ago

Avalanche Launches Payments Collective With Franklin Templeton And 25 Others

Avalanche has launched the Avalanche Payments Collective, bringing together 28 organizations spanning nearly every layer…

4 days ago

ASTER Whale Reopens 5x Long Days After Getting Fully Liquidated On The Same Token

A wallet tracked as 0x5f91 just opened a fresh 5x leveraged long on ASTER, putting…

4 days ago