A website pretending to be a core WordPress domain was recently used to steal user cookies and hijack sessions, Sucuri security researchers warn.
Article Link: http://feedproxy.google.com/~r/Securityweek/~3/EaH9iJilQAk/malware-sends-stolen-cookies-fake-wordpressapi-site