Close Menu
  • Home
  • News
  • Politics
  • Health
  • Business
  • Education
  • Opinion
  • Lifestyle
  • Entertainment
Facebook X (Twitter) Instagram
The Meridian Spy
  • Home
  • News
  • Politics
  • Health
  • Business
  • Education
  • Opinion
  • Lifestyle
  • Entertainment
The Meridian Spy
Home»News»NITDA Issues Security Alert on New Vulnerability Affecting Over Five Million Websites
News

NITDA Issues Security Alert on New Vulnerability Affecting Over Five Million Websites

meridianspyBy meridianspySeptember 30, 2024No Comments2 Mins Read
Facebook Twitter Pinterest LinkedIn Tumblr Email
Laptops, computer,
Internet scam
Share
Facebook Twitter LinkedIn Pinterest Email
Share
    

Share!

  • Share
  • Tweet

NITDA Issues Security Alert on New Vulnerability Affecting Over Five Million Websites

The National Information Technology Development Agency (NITDA) has issued a critical security alert regarding a newly discovered vulnerability, CVE-2024-28000, that poses a serious threat to over 5 million websites worldwide.

The vulnerability affects the LiteSpeed Cache plugin, a widely used optimization tool for WordPress websites, potentially allowing cybercriminals to take full control of compromised sites.

The flaw arises from the plugin’s “role simulation” feature, which can be exploited to grant unauthorized administrative access without requiring authentication. If successfully exploited, attackers could install malicious plugins, steal sensitive data, or redirect website visitors to harmful sites.

NITDA warned that this vulnerability is particularly dangerous due to the weak hash function and simplicity of the attack vector.

Cybercriminals can exploit the vulnerability through brute-force attacks or by manipulating exposed debug logs to gain administrative privileges.

With millions of websites using the LiteSpeed Cache plugin, the potential impact is significant. NITDA identified several risks, including:

Read Also:
NITDA Issues Security Alert on New Vulnerability Affecting Over Five Million Websites Globally
RAIN Hackathon 1.0: Driving Innovation in AI and Robotics
Tinubu to Forward Bill Mandating NIN Registration for Foreign Residents’ Taxation
Data theft: Attackers could steal personal or financial information from website users.

Website defacement: Cybercriminals might alter website content or disrupt services by installing malicious code.

Redirection to malicious sites: Visitors could be led to phishing sites or exposed to malware.

READ ALSO  DIG Mba, others retire, seven AIGs for promotion

The agency emphasized that businesses reliant on WordPress could face severe consequences, including financial losses and reputational damage, if this vulnerability is exploited.

To mitigate the risks, NITDA is urging all WordPress administrators using the LiteSpeed Cache plugin to update to the latest version (6.4.1) immediately.

The agency advised users to log into their WordPress dashboard, check the “Plugins” section, and apply updates as necessary.

Additionally, NITDA recommended disabling the debugging feature on live websites and conducting regular security audits to minimize exposure to vulnerabilities.

“Website owners should frequently check for vulnerabilities and ensure their plugins are up to date,” NITDA advised.

This alert underscores the ongoing threat posed by cybersecurity vulnerabilities and highlights the need for proactive measures to protect digital assets.

Share this:

  • Share on WhatsApp (Opens in new window) WhatsApp
  • Tweet

No related posts.

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
meridianspy

Related Posts

Ndume to Tinubu: Brief Nigerians regularly on security efforts

March 8, 2026

SERAP Drags FG to ECOWAS Court Over Alleged Mass Phone-Tapping Rules

March 8, 2026

Bwala’s Self-Indicting Post-Interview Alibi for Poor Performance By Farooq Kperogi

March 8, 2026
Search
Recent Posts
  • Ndume to Tinubu: Brief Nigerians regularly on security efforts
  • You can’t Dictate to Political Parties – Obi Urges INEC to Ignore Electoral Act 2026
  • SERAP Drags FG to ECOWAS Court Over Alleged Mass Phone-Tapping Rules
  • Bwala’s Self-Indicting Post-Interview Alibi for Poor Performance By Farooq Kperogi
  • Troops Repel Terrorists Deploying Armed Drones in Borno
  • Canal+ to Discontinue Showmax After MultiChoice Acquisition
  • Senate Grills Ex-NNPC Boss Kyari Over N210trn Audit Concerns
  • Despite Tinubu Order, FAAN Boss says Cashless Policy to Stay
  • Tinubu okays Jimoh Ibrahim, Fani-Kayode, Dambazau, 62 Other Ambassadors to Foreign Missions, UN
  • DIG Mba, others retire, seven AIGs for promotion
  • Tinubu Announces Resolution of OPL 245 Dispute, Clears Path for Major Deepwater Investment
  • Federal Government Approves 100% Exit Gratuity for Civil Servants
  • NUC Releases New Guidelines for Honorary Doctorate Degrees in Nigeria
  • Lady accuses Rivers LG chair of orchestrating assault over school video
  • Residents raise the alarm over bodies, elderly left behind after Borno attack
Categories
  • Business
  • Education
  • Entertainment
  • Foreign
  • Health
  • Investigations
  • Lifestyle
  • News
  • Opinion
  • Politics
  • Sport
Access Bank DiamondXtra Season 16 Rewards
  • About us
  • Contact Us
  • News
  • Politics
  • Health
© 2026 All Right Reserved. Designed by Techjuno

Type above and press Enter to search. Press Esc to cancel.