🪟 Windows TippsModify Windows Support Phone Number with PowerShell(03.09.2026 um 00:00 Uhr)
🔧 AI Nachrichten Podcast: ChatGPT schwatzt Nutzern in Deutschland jetzt Werbung auf(28.08.2026 um 08:46 Uhr)
🪟 Windows TippsMicrosoft bringt Emoji 17.0 auf Windows 11(31.08.2026 um 08:16 Uhr)
🪟 Windows TippsModify Windows Support Phone Number with PowerShell(03.09.2026 um 00:00 Uhr)
🔧 AI Nachrichten Podcast: ChatGPT schwatzt Nutzern in Deutschland jetzt Werbung auf(28.08.2026 um 08:46 Uhr)
🪟 Windows TippsMicrosoft bringt Emoji 17.0 auf Windows 11(31.08.2026 um 08:16 Uhr)

📰 IT Security Nachrichten 🕛 vor 4 Monaten 4 Min Lesezeit SECURITY-FEED
0

Hackers Exploit Kali Forms Vulnerability to Take Over WordPress Sites

↗ Quelle (thecyberexpress.com)
🔬 IoC Intelligence (10 Indikatoren erkannt)
209[.]146[.]60[.]2649[.]156[.]40[.]126124[.]248[.]183[.]139202[.]56[.]2[.]126130[.]12[.]182[.]154104[.]28[.]160[.]1971[.]53[.]114[.]181157[.]15[.]40[.]74+2 weitere
🗣️ Stimme:
📑 Inhaltsübersicht

Kali Forms vulnerability

A recently disclosed Kali Forms vulnerability affecting a widely used WordPress plugin has escalated into an active security threat, enabling unauthenticated attackers to achieve Remote Code Execution on affected websites. The flaw impacts Kali Forms, a drag-and-drop form builder with more than 10,000 active installations, and has already been exploited in the wild shortly after public disclosure. 

Security researchers reported that the : 

  • March 2, 2026: Initial submission of the Remote Code Execution flaw via bug bounty reporting. 

  • March 5, 2026: Wordfence Premium, Care, and Response users received  addressed the issue in version 2.4.10 of the WordPress plugin, while all versions up to and including 2.4.9 remained vulnerable. 

    Technical Root Cause Behind the Kali Forms Vulnerability


    The core of this WordPress plugin flaw lies in how user-supplied form can inject arbitrary PHP function names. These are then executed directly, resulting in Remote Code Execution (RCE) attacks. 

    Researchers noted that the lack of input restrictions in prepare_post_data() enables overwriting internal placeholders. As a result, attacker-controlled values flow directly into call_user_func(), making exploitation trivial once the request is submitted. 

    One observed abuse pattern demonstrates authentication bypass attempts using built-in monitoring shows that exploitation began immediately after disclosure. Attackers have been systematically targeting the WordPress plugin using automated requests to admin-ajax.php. 

    A representative  flaw is triggered through manipulated form submission data. 

    Security systems recorded significant attack volume: 

    • Over 312,200 exploit attempts were blocked targeting the Kali Forms vulnerability. 

    • Heavy targeting was observed immediately after March 20, 2026 disclosure. 

    • Increased spike in activity between April 4 and April 10, 2026. 


    Top Attacking IP Addresses Observed 


    Threat intelligence identified several IPs responsible for large-scale exploitation attempts: 

    • 209.146.60.26 – over 152,000 blocked requests  

    • 49.156.40.126 – over 50,000  

    • 124.248.183.139 – over 26,000  

    • 202.56.2.126 – over 14,000  

    • 130.12.182.154 – over 11,000  

    • 104.28.160.197 – over 9,000  

    • 1.53.114.181 – over 5,700  

    • 157.15.40.74 – over 3,000  

    • 114.10.99.126 – over 2,500  

    • 83.147.12.83 – over 1,300  


    These sources were repeatedly associated with exploitation attempts targeting the Kali Forms vulnerability in the affected WordPress plugin. 
    Vollständiger Original-Bericht
    Ausführliche Details, Code-Beispiele & Hersteller-Stellungnahme auf thecyberexpress.com.
    ↗ Original-Artikel auf thecyberexpress.com lesen
Wie bewertest du diesen Beitrag?
1 Klick Feedback
Teilen mit Netzwerk & Team:
Community Threat-Level Barometer
Live Votum

Wie stufst du das Risiko dieser Schwachstelle / Bedrohung für dein Unternehmen ein?

Noch keine Stimmen — schätze das Risiko als Erster ein.

Community-Analysen & Experten-Meinungen 0

Verfasse deine eigene Analyse, teile Workarounds oder diskutiere diesen Vorfall im Blog.
Noch keine Community-Analyse verfasst. Markiere einen Textabschnitt oder klicke oben auf Eigene Analyse verfassen“!
Community Pulse: Relevanz-Einschätzung
1 Klick Experten-Votum
🔴 Akute Relevanz 0%
🟡 In Evaluierung 0%
🟢 Keine Auswirkung 0%
Spannende Innovation 0%
Verwandte Story-Cluster & Quellen (Vektor-KI)
Port 8095 Engine
1 Quelle
Modify Windows Support Phone Number with PowerShell
1 Quelle
Die Zukunft des Einkaufens: Warum wir ein neues Kapitel aufschlagen (und wie du es mitschreiben kannst)
1 Quelle
ZDE Podcast 251: Wie sieht digitales Instore Marketing 2026 aus, Amit Chatterjee?
Ähnliche Beiträge
🔍 Verwandte News

Auch interessante Nachrichten Hackers Exploit Kali Forms Vulnerability to Take Over WordPress Sites

Thematisch verwandte Begriffe: Hackers, Exploit, Kali, Forms · 6 Treffer

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...