
Hackers mass-exploit Gravity SMTP, stealing keys from 100,000 WordPress sites via one unauthenticated request
One HTTP request can expose API keys, OAuth tokens, and system details, and Wordfence says it blocked 17 million-plus attempts.
By Abdullah Al-Otaibi·· 3 min
