[ad_1]
Hello Reddit, I have a WordPress site that is relatively inactive. This afternoon I received notice the admin email changed, it seems odd seeing as it’s [[email protected]](mailto:[email protected]). ? Any ideas on what’s up with this? Text below. Thanks!
​
Hi,
This notice confirms that the admin email address was changed on \_\_\_\_\_\_\_\_\_\_\_\_\_
The new admin email address is [[email protected]](mailto:[email protected]).
[ad_2]
Show us the “original” email if its from wordpress or another domain. You can click it above the sender details. My bet it’s a phishing email.
Seeing the same thing on different domain from OP. Haven’t triaged fully as yet. A dummy ‘wpnew_*****’ account with admin privileges and a throwaway email was created as well and promptly deleted.
Exactly the same thing has happened to me few minutes ago, there has to be a security hole somewhere. My site is only 3 weeks behind with updates.
Probably this, if you have Elementor Pro and WooCommerce installed
I’m seeing exclusively Russian IPs exploiting this. Figures.