The Case of Hidden Spam Pages

The Case of Hidden Spam Pages

Spammy posts and pages being placed on WordPress websites is one of the most common infections that we come across. The reason being is that the attack is very low-level in terms of sophistication: All that is required of the attacker is to brute force their way into the wp-admin panel; from there they just have their scripts/bots post spam posts and pages effectively achieving a blackhat SEO attack. Since an out-of-the-box WordPress website contains no protection on admin access other than a password (with no limit on the number of failed login attempts), and the admin users can often be discovered via enumeration, this remains a very popular type of spam infection on the platform.

Continue reading The Case of Hidden Spam Pages at Sucuri Blog.

Read more: The Case of Hidden Spam Pages

Story added 25. June 2025, content source with full text you can find at link above.