WordPress.org

Make WordPress Core

Opened 9 months ago

Closed 9 months ago

Last modified 9 months ago

#45213 closed defect (bug) (invalid)

Very large network of hacked WordPress sites

Reported by: hansfer Owned by:
Milestone: Priority: normal
Severity: normal Version:
Component: Security Keywords:
Focuses: Cc:

Description

Hi there,

I've discovered a very large network of hacked WordPress sites.

The site using the network for backlinks is: https://sentencechecker.top

Just check the backlink-profile of his site, he's ranking with 1000s of links from hacked WP sites, where he put fake blog posts on.

I recommend to make a Google web spam report his site (sentenchecker.top) as well:
https://www.google.com/webmasters/tools/spamreport

Hate spam!

Attached a list of backlinks that are 99.9% hacked WordPress sites.

Best regards,
Hans

Attachments (1)

links-of-hacked-sites.txt (1.2 MB) - added by hansfer 9 months ago.
list of hacked WP sites

Download all attachments as: .zip

Change History (4)

@hansfer
9 months ago

list of hacked WP sites

#1 @peterwilsoncc
9 months ago

  • Milestone Awaiting Review deleted
  • Resolution set to invalid
  • Severity changed from critical to normal
  • Status changed from new to closed

Hello, and welcome to trac!

Trac is for reporting bugs and requesting enhancements to the WordPress open-source software. The exception being for security related issues, which shouldn't be reported here, and instead logged through https://hackerone.com/wordpress.

As open-source software, WordPress can't manage individual sites or their content. It's unfortunate but many sites are hacked due to out of date software or plugins.

As WordPress don't have any control over these sites, I am going to close this ticket as invalid. It sounds a little unfriendly but it's trac's way of recording the issue is outside of WordPress's control.

#2 @SergeyBiryukov
9 months ago

  • Component changed from General to Security

#3 @hansfer
9 months ago

Ok, sorry, can you please delete this ticket?

Note: See TracTickets for help on using tickets.