MonsterInsights Website Compromised And Sending Phishing Emails

Jun 13, 2026 04:09 AM - 1 week ago 8638

MonsterInsights website has been nether attack, is said to person been hacked, and is sending phishing emails to its customers. The free type of MonsterInsights is installed successful complete 2 cardinal websites and is claimed to beryllium installed connected a full of 3 cardinal sites.

MonsterInsights Under Attack

The charismatic MonsterInsights website is down and the location page has been replaced pinch the pursuing notice:

“Our website is offline arsenic we’re mitigating an attack. Your analytics and search aren’t affected.

Please DO NOT download MonsterInsights from immoderate 3rd statement website arsenic location is simply a known phishing effort happening correct now.

Thank you for your patience.

If you person immoderate questions, please scope retired to [email protected]

Screenshot Of MonsterInsights Website

MonsterInsights

MonsterInsights is simply a WordPress plugin installed successful complete 2 cardinal websites. It connects to a user’s Google Analytics (GA) relationship and provides website postulation insights wrong a dashboard wrong WordPress. It besides enables businesses to much easy usage GA’s analyzable search features. MonsterInsights besides offers a Pro type of the plugin pinch much features that would entreaty to ecommerce stores.

Reports Of Phishing Emails Originating From MonsterInsights

Users of the plugin are reporting having received phishing emails from MonsterInsights. Posts connected Facebook and X (formerly Twitter) corroborate that this is happening.

@alliemims posted connected X:

“I was coming present to scope retired arsenic I sewage those phishing emails. I didn’t interact pinch them. I went to your tract to effort to study it via interaction shape but sewage a 403. Sorry to perceive you are dealing pinch this nonsense. Best of luck! 🙏”

@biancavandepoel tweeted:

“Is location immoderate measurement you tin get successful touch pinch your clients by email ASAP? Because it seems for illustration the attackers already recovered them.”

MonsterInsights Response

MonsterInsights posted a response connected X informing users to not download aliases instal their plugin from immoderate different website, confirming that the emails are a phishing attempt.

“We are presently mitigating an onslaught – DO NOT instal MonsterInsights from immoderate 3rd statement website arsenic location is simply a known phishing effort happening correct now.”

Featured Image by Shutterstock/Sadi Hockmuller

Category News WordPress
Follow Us On Google
More