How does this work guys? Need your insight! PLUS FREE..

This is what is called as "media highjacking".

What happens is that a site admin installs a malicious plugin or they have a vulnerability that allows a threat actor to upload "poison files".

In this case the posion file is an html page which gets shown in the static media folder of the sites.

Basically, in simpler words, site administrator fucked up and a hacker took advabtage of the situation.
 
Grateful for your generous help in clearing up my doubts. Thank you! :)
 
Back
Top