Back to cases

Live public case

Attempted exploitation

Last activity Aug 17, 10:57:24 PM PDT

highNot required

Evidence-grounded assessment

Not required

Rapid enumeration of PHP and WordPress web-shell paths

Protected workloads
One protected workload
Progression
Within-workload activity
Severity basis
Maximum incident posture

Observed impact

    Recommended actions

      Attack timeline

      1 incident threads

      Live progression remains visible; PII, native endpoints, hashes, and private identities do not.

      1. 1
        Attempted exploitationopen

        Rapid enumeration of PHP and WordPress web-shell paths