Zettapetta Attack Threatens WordPress

LOS ANGELES — There is an escalating threat to WordPress and other PHP-based websites now making the rounds. Known as Zettapetta, your site may be its next victim.

Reports are coming in that Linux-based web servers are under attack at a number of popular webhosts including GoDaddy, DreamHost, BlueHost and others.

There are several ways to check your site for infection, with one warning sign being a lack of control panel access. For a foolproof test, view your site's HTML source code and search for the word "zettapetta" — finding it, or redirection to www1.firesavez5.com or a similar domain, is proof positive of infection.

Fixing the problem, whose cause is still unknown, reportedly requires the deletion of the infected site along with all of its files, then re-uploading a freshly downloaded copy of the latest version of WordPress using SFTP rather than FTP. This may not prevent an attack from recurring, however, and manually deleting the erroneous command lines within your files may be just as effective a solution, say some experts, but not all agree.

"As you know, a new wave of attacks aimed at compromising websites running outdated versions of online applications, such as WordPress, recently hit across numerous Internet hosting providers," Todd Redfoot, GoDaddy.com's chief information security officer, stated. "The bottom line resolution is to be sure you have the most up-to-date versions of your applications within your entire hosting account."

"Though we understand this issue is frustrating, Go Daddy believes the situation is moving in the right direction," Redfoot added. "We have identified — and are attempting to work with — the key service providers the attackers are using, [and] are collaborating with the authorities to ensure the individuals will be prosecuted."

Sucuri Security offers a scripted solution as well as an SSH command to remove the infection automatically, but a fresh update and install is recommended.

Related:  

Copyright © 2026 Adnet Media. All Rights Reserved. XBIZ is a trademark of Adnet Media.
Reproduction in whole or in part in any form or medium without express written permission is prohibited.

More News

BranditScan Rolls Out 'UrLinks' Platform Feature

BranditScan has introduced its new UrLinks homepage feature for creators.

UK Outlaws Content Featuring Choking, Adults Portraying Children

The U.K.’s Crime and Policing Bill received final passage in Parliament on Monday, including provisions criminalizing depictions of “non-fatal strangulation” as well as sexual content in which adults portray children.

Grooby Launches 30th Anniversary Campaign

Grooby is celebrating its 30th anniversary with a showcase campaign featuring 30 of the studio's newest models.

Island Conference Joins ASACP as Media Sponsor

Island Conference has signed on as an in-kind media sponsor for the Association of Sites Advocating Child Protection (ASACP).

Elly Clutch, Girthmasterr to Host 2026 XMA Creator Awards

XBIZ is pleased to announce Elly Clutch and Girthmasterr as co-hosts of the 2026 XMA Creator Awards, presented by premium creator platform Fansly.

FSC: TAKE IT DOWN Act Provisions Take Effect May 19

The Free Speech Coalition has issued a reminder notice that the notice-and-removal requirements of the federal TAKE IT DOWN Act will go into effect on May 19.

Venus Berlin Joins ASACP as Media Sponsor

Venus Berlin has signed on as an in-kind media sponsor for the Association of Sites Advocating Child Protection (ASACP).

XBIZ Miami's Host Hotel Sold Out; Additional Hotel Added

Guest rooms at XBIZ Miami’s exclusive conference venue, Goodtime Hotel in South Beach, are now completely sold out.

Penthouse Wins Trademark Infringement Case Against Fraudulent Domain

The World Intellectual Property Organization (WIPO) has ruled in favor of Penthouse World Media in a case against a website using an infringing domain.

'Collective Corruption' Relaunches Through PAYSITE

Fetish and BDSM membership site Collective Corruption has relaunched through PAYSITE.

Show More