- What happens if you visit a WordPress site hacked through wp2shell? Malwarebytes
- CVE-2026-63030: wp2shell a Critical Remote Code Execution Vulnerability in WordPress Core Rapid7
- Cloudflare WAF protects WordPress applications from two high-severity vulnerabilities The Cloudflare Blog
- Hackers are exploiting recently patched WordPress bugs, putting millions of websites at risk TechCrunch
- ‘WP2Shell’ Opens Millions of WordPress Sites to Remote Takeover Dark Reading
- Exploitation in the Wild of wp2shell wiz.io
- ⚡ Weekly Recap: WordPress RCE, SonicWall 0-Days, AI Service Attacks, SharePoint 0-Day and More The Hacker News
- WP2Shell WordPress Vulnerabilities Exploited in the Wild SecurityWeek
- WordPress Core “wp2shell” RCE flaws get public exploits, patch now BleepingComputer