On April 30, Bleeping Computer released an advisory warning about a sophisticated phishing attack targeting WooCommerce store owners. This attack tricks users into downloading and installing a malicious plugin, compromising their websites.

📌 In this episode, Charly breaks down:

✅ What this phishing scam looks like and how it works

✅ What signs to look for in a fake security notice

✅ Why you should never download plugins from unofficial sources

✅ How to verify official WooCommerce communications

✅ Practical steps you can take right now to protect your store

🛡️ If you run a WooCommerce site, you need to listen to this one—it’s all about staying safe, informed, and secure.

Join my locals community and strike up a conversation about the topic

About the Author Charly Leetham

Charly Leetham has been in technology for over 40 years - from earning her amateur radio license at 13 to founding and running Ask Charly Leetham, a digital services business serving small businesses worldwide. After losing $1 million in a franchise failure, she rebuilt from scratch and has kept her business running for nearly two decades through skill, systems, and relentless practicality.

She hosts the podcast Rise and Shine - Your Business Tech Boost with Charly Leetham and speaks about what it actually takes to build businesses that work and last - not just look good on paper.

Share your thoughts

Your email address will not be published. Required fields are marked

{"email":"Email address invalid","url":"Website address invalid","required":"Required field missing"}