Audits

6 benign audits. · 83 IOCs catalogued.

Verdict: All (11) Malicious (4) Cleaned (1) Suspicious (0) Inconclusive (0) Benign (6) In progress (0)

Suspect-shape but structurally unreachable — benign with one regression to flag. YARPP's version_info() matches the high-confidence catalog IOC unserialize_after_remote_call (@unserialize of wp_remote_post body, hardcod…

baseline 1.0 → head 5.30.11 · event #1741 · investigator austin

Historical PHP Object Injection chain in Admitad integration — gated since v6.0.0 (2023-08-21), endpoint dead. Two compounding patterns in application/libs/admitad/AdmitadProducts.php + application/libs/RestClient.php f…

baseline 11.0.0 → head 11.0.0 · event #1469 · investigator beacon-scan-skill

Verdict: legitimate team onboarding — not a takeover. alexopen is a Smash Balloon employee ("Alex at Smash Balloon" display name), added as a committer to the five Smash Balloon social-feed plugins owned by Awesome Moti…

baseline 6.9.1 → head 6.10.0 · event #114 · investigator austin