Security News

Critical Flaw Uncovered In WordPress That Remained Unpatched for 6 Years
2019-02-19 19:33

Exclusive — If you have not updated your website to the latest WordPress version 5.0.3, it’s a brilliant idea to upgrade the content management software of your site now. From now, I mean...

Hackers Target WordPress Sites via WP Cost Estimation Plugin
2019-02-14 18:58

Malicious actors have been hacking WordPress websites by exploiting vulnerabilities in a fairly popular plugin called WP Cost Estimation & Payment Forms Builder. read more

Critical WordPress Plugin Flaw Allows Complete Website Takeover
2019-02-12 20:29

Users of the popular plugin, Simple Social Buttons, are encouraged to update to version 2.0.22.

Stealthy Malware Disguises Itself as a WordPress License Key
2019-01-30 16:59

A spam injector hides in plain site within WordPress theme files.

Zero-Days in WordPress Plugin Actively Exploited
2019-01-28 18:33

The commercial Total Donations plugin for WordPress is impacted by multiple zero-day vulnerabilities that are being actively exploited in attacks, Wordfence security researchers report.  read more

WordPress Users Urged to Delete Zero-Day-Ridden Plugin
2019-01-28 14:39

The development team of the vulnerable Total Donations plugin appears to have abandoned it, and did not respond to inquiries from researchers.

Former Employee Hacks Popular WordPress Plugin’s Website
2019-01-21 15:55

The website for a popular WordPress plugin was hacked over the weekend, when a former employee abused a previously implemented backdoor to take over the domain. read more

WordPress to Warn on Outdated PHP Versions
2019-01-16 15:41

In an effort to improve the security of websites, WordPress will display a warning starting in April 2019 when encountering outdated PHP versions. In December last year, the free and open-source...

ThreatList: WordPress Vulnerabilities Tripled in 2018
2019-01-09 18:27

Despite fewer plugins being added to Wordpress last year, the CMS saw an astounding tripling of vulnerabilities in its platform in 2018.

WordPress users beware: These 10 plugins are most vulnerable to attacks
2019-01-09 16:31

WordPress vulnerabilities tripled over the past year, more than any other CMS, according to an Imperva report.