WP Maps Pro bug exploited to create admin accounts on WordPress sites

2026-06-01T01:23:29Z7c2e70e6255ac5495829bef5ed3bb7f74ee0a499fcb5e17c6a0e15dcacd63c5b
active-exploitationai-enabled-luresandroid-ratbotnet-takedownbtmobchatgptcifswitchcve-2026-0257data-breachddos-as-a-servicefbi-fraud-warningglobalprotectlinuxmalwarepalo-altophishingprivilege-escalationshinyhunterswordpresswp-maps-pro

What happened

Multiple active and high-impact threats reported: attackers are exploiting a WP Maps Pro vulnerability to create unauthenticated admin accounts on WordPress sites; Palo Alto GlobalProtect PAN-OS authentication bypass (CVE-2026-0257) is being actively exploited to breach networks; a newly disclosed local Linux privilege-escalation (dubbed CIFSwitch) can yield root on multiple distributions; threat actors abuse ChatGPT share links to host fake outage pages that deliver malware; additional notable incidents include a lawsuit against 23andMe over a 2023 breach, the evolution of DDoS-as-a-Service,t

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
bleepingcomputer
Record identifier
7c2e70e6255ac5495829bef5ed3bb7f74ee0a499fcb5e17c6a0e15dcacd63c5b
Enrichment time
2026-06-01T01:23:29Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.