INTEL_REPORT
SecurityWeek · published 7/20/2026, 5:21:29 AM · TLP amber
Summary
Ingested excerpt (first ~500 chars of normalized text).
WP2Shell WordPress Vulnerabilities Exploited in the Wild Exploitation of the new WordPress vulnerabilities tracked as CVE-2026-60137 and CVE-2026-63030 started soon after disclosure. The post WP2Shell WordPress Vulnerabilities Exploited in the Wild appeared first on SecurityWeek . WP2Shell WordPress Vulnerabilities Exploited in the Wild - SecurityWeek Virtual Event Today: Cloud & Data Security Summit - Join Event In-Progress SECURITYWEEK NETWORK: Cybersecurity News Webcasts…
https://www.securityweek.com/wp2shell-wordpress-vulnerabilities-exploited-in-the-wild
sha256:de167d4ed20040b79354da2b8facba3b9499afc4db65fab99a41580881f6d8ad
What we pulled out
Deterministic extractor (IOC + allowlisted tokens + ATT&CK IDs present in DB).
Indicators
Linked with report → mentions → indicator. Values open the indicator workspace.
Malware families
Allowlist token matches only.
Threat actors mentioned
Allowlist mentions — not a formal attribution verdict.
ATT&CK techniques
MITRE IDs referenced in text and present in local technique table.
CONTINUE INVESTIGATION
High-signal pivots without leaving the thread you started in search.
Browse the report corpus.
Neighborhood from the first linked indicator.