WP Maps Pro bug exploited to create admin accounts on WordPress sites

2026-06-01T07:23:29Ze25ba64982bbd9d16140a080c74eef498ef581d64a3d81df83d151eb3e5a1580
23andmeai-securityanthropicbotnetbotnet-takedowncharterchatgptcifswitchcve-2026-0257data-breachddos-as-a-serviceglobalprotectgoogle-chromegreyvibe','btmob','android-rat','fbi','world-cup-fraudlinux-kernellocal-privilege-escalationmalware-distributionpalo-altophishingsession-protectionshinyhuntersunauthenticated-admin-creationvpnwordpresswp-maps-pro

What happened

Multiple high-risk threats and incidents were reported: a vulnerability in the WP Maps Pro WordPress plugin is being abused to create unauthenticated admin accounts; attackers are actively exploiting a PAN‑OS GlobalProtect authentication bypass (CVE-2026-0257) to breach networks; a new local privilege escalation in the Linux kernel dubbed “CIFSwitch” can yield root on multiple distributions; ChatGPT share links are being abused to host fake outage pages that deliver malware; and other notable items include a 17‑million‑device botnet disruption, large data breaches (Charter, 23andMe lawsuit), D

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
bleepingcomputer
Record identifier
e25ba64982bbd9d16140a080c74eef498ef581d64a3d81df83d151eb3e5a1580
Enrichment time
2026-06-01T07:23:29Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · WP Maps Pro bug exploited to create admin accounts on WordPress sites · Baitaphish