SC WordPress Malware Uses Self-Rebuilding Loaders and Blockchain-Controlled Backdoor
Researchers analyzed SC malware that keeps reinfecting WordPress sites through mutually restoring files, database copies, and shared memory. Its backdoor hides an admin account, disables security plugins, and retrieves instructions via public Ethereum RPC gateways.

