Anatomy of a 90-Minute WordPress Core RCE Exploitation Campaign
When a critical pre-auth chain dropped in WordPress core, attackers reverse-engineered the patch within 90 minutes. Here is the technical breakdown of the resulting exploitation campaign.