No. This is a security risk. Not only morality question.
I checked some of these plugins and found most of all of these are infected. For instance, they will use base64encode
functions and evaluate in the end to send info from your web site to URLs in Panama, Iran or like.
They may write to your license.txt
or readme.txt
files for instance, and in that way the hackers can get your credentials.
Note
There may be honest businesses having “null” or “nulled” in URL so I would like to enclose, since I meant specifically those web sites delivering hacked plugins.
Related Posts:
- What security concerns should I have when setting FS_METHOD to “direct” in wp-config?
- Is there a plugin that provides a stackoverflow style editor for wordpress? [closed]
- What Are Security Best Practices for WordPress Plugins and Themes? [closed]
- Are WordPress Plugins essential?
- Who are the most trusted plugin developers? [closed]
- I found this in a plugin. What does it do? is it dangerous?
- What are the common security flaws I need to look for? [closed]
- Open Source Forum for wordpress similar to stackexchange or stackoverflow [closed]
- Disabled plugins are they security holes – rumor or reality?
- How do I get WooCommerce to automatically recreate pages? [closed]
- What could a hacker do with my wp-config.php
- How Can I Securely Implement a Password-less Login Feature?
- Security and .htaccess
- Why “Contact Form 7” doesn’t update PHPmailer library?
- Are there procedures to prevent malicious plugin updates?
- Recommended eCommerce Plugin for a T-Shirt Sales Business? [closed]
- Is there a good plugin for an online booking system..? [closed]
- InDesign to WordPress workflow
- Secure WordPress paid plugin
- Send email when a new post is published [closed]
- How to transfer a WordPress blog to a different domain?
- Membership / subscription plugins – alternatives [closed]
- How to make media upload private? [duplicate]
- Does WordPress contain “default” anti-SQL injection code that responds with a 404 error?
- insert data in database table from plugin with WP3.1
- How Does WordPress Uninclude/Deactivate A Plugin?
- Content generator for development site [closed]
- What does a security risk in a plugin look like?
- Email Notifications of new posts to users – suggestions [closed]
- How to override normal WordPress search in Buddypress? [closed]
- WordPress Capabilities: edit_user vs edit_users
- Should we use plugins that aren’t available from the official WordPress site?
- How to check plugins for malicious code?
- How to properly secure my WordPress installation?
- Library plugin for WordPress [closed]
- Why allow overriding crucial pluggable functions wp_verify_nonce and wp_create_nonce?
- Markdown in WordPress 3.2?
- Where should my plugin POST to?
- Integrating Google Maps with custom marker and hover?
- Auto-post to multiple sites like Posterous? [closed]
- Security error WP 4.0 + WP phpBB Bridge [closed]
- Network-Wide Plugin Settings Management
- Disabled plugins are security holes – rumor or reality?
- Quote rotator in the sidebar
- Why am I sometimes getting a 404 error when I try to update a page with Elementor?
- Send batch of posts as HTML Email?
- Image Crop/Resize Function/Code Sinppet/Plugin to adjust/crop images during upload
- Should I use RIPS tool to test my themes and plugins?
- Subscribe2 Configuration
- Recommendationf for Quiz Plugin that saves results [closed]
- Conditional Display of Links in Widgets
- Prevent Brute Force Attack
- Plugin to restrict login and unpublish content from an author
- WordPress Plugin for One-Time Event Registration? [closed]
- Why users disable the WordPress update?
- How many security plugins are too many? [closed]
- Will WordPress username displayed somewhere in the site?
- Looking for a related post plugin which slides-in like the one at inc.com does [closed]
- Can Shopp Commercial Plugin be hacked to display radio buttons instead of Dropdowns? [closed]
- How do I copy files I downloaded from the wayback machine to my new site?
- wordpress Search function is not working
- What is the recommended way to be notified of security updates to my plugins? [closed]
- My WP site and password was hacked, what to do? [closed]
- Is there a WordPress Plugin like Imsanity that keeps high resolution originals? [closed]
- booking form with availability calendar [closed]
- Need Header slider plugin recommendation [closed]
- Facebook like plugin with Multi Option-Needed [closed]
- Looking for Plugin that displays Facebook group’s photos [closed]
- Simple Amazon Affiliate Plugin [closed]
- WordPress Plugin for Maps of specific Tweets? [closed]
- How can I create a navigation menu in the sidebar that can also act like a slider?
- How to resolve these findings from security audit
- Looking for a home page carousel [closed]
- contact form 7 captcha support anyother captcha plugin? [closed]
- Social network plugins for WordPress [closed]
- Need a Plugin to create a registration form for my website? [closed]
- Helpdesk solution which is not form based
- Publish post facebook page & twitter automatically [closed]
- Slider Plugins for header [closed]
- How I can hide my wp folders from Inspect Element (Developer Tools)
- How to Find WordPress site has backdoor login Codes
- registration plugin [closed]
- How to delete Password Protected posts cookies when a user logged out from the site
- How to rename files during upload to a random string?
- Take Elementor For Email FIeld Check if user is registered. IF not registered then register on woocommerece
- how to make wordpress remember my choice
- I’m getting the following error: Fatal error: Uncaught Error: Call to undefined function oil_paint_regeneration() [closed]
- What are Seeds? [closed]
- Stop the user if login from the cookies
- WordPress User Registration/ Sign Up -> Able to take Paid Certification Courses & keep track of Completed Certificates
- Block Root REST API Route using custom &/or iThemes
- Is it a good idea to restrict the REST API
- WordPress site server getting blocked due to resource abuse
- I want to move the one click accesbility button on bottom of my website screen,
- WordPress.Security.NonceVerification.Recommended
- Secure way to add JS Script to WordPress filesystem
- Bullet proofing a server with 150 WP insallations
- Code Snippets security when selecting “only run on front end”
- Missing Contact Form/Form Default Plugin in WordPress
- How to verify/test that a custom built wordpress theme is as secure as possible?