It another security updates for the WordPress CMS users that a widespread malware attack campaign that has already compromised more than 100,000 websites worldwide and still counting.
Security service providing service Sucuri, which have earlier also reported many critical security vulnerability on WordPress have once again reported that Google has blacklisted over 11,000 domains with this latest malware campaign from SoakSoak.ru and thus malware dubbed as ‘SoakSoak Malware’.
Currently there are more that 70 million websites that are running on open source CMS WordPress, and this malware campaign can effect huge bundle of these sites.
Security team of Sucuri who is currently investigating the potential vector of the malare said the infections are not targeted only at WordPress websites, but it appears that the impact seems to be affecting most hosts across the WordPress hosting spectrum.
This malware modifying the file wp-includes/template-loader.php, which causes the wp-includes/js/swfobject.js to be loaded on every page you view on the site which includes a malicious java encoded script malware.
If you are running your site or blog on WordPress and are worried about the potential risk, for them Sucuri have provided a free tool to check the site for the malware. You can check your site against the malware effects.