Security News

WordPress GDPR compliance plugin hacked
2018-11-13 12:48

There's no obvious executable payload in the attack but the attackers may be building a collection of websites and biding their time.

Hackers Exploit Flaw in GDPR Compliance Plugin for WordPress
2018-11-12 06:54

A critical security flaw affecting a GDPR compliance plugin for WordPress has been exploited in the wild to take control of vulnerable websites, users have been warned. read more

Irony meters explode as WordPress GDPR tool hacked, cell network hack shenanigans, crypto-backdoors, etc...
2018-11-10 08:08

Loads of bonus infosec news for your weekend Roundup This week we had broken promises in China, broken keys in Steam, and broken ..err, everything in Apache Struts.…

Update now! WordPress sites vulnerable to WooCommerce plugin flaw
2018-11-09 11:25

Researchers have published details of a dangerous flaw in the way the hugely popular WooCommerce plugin interacts with WordPress that could allow an attacker with access to a single account to...

Vulns in online shopping toolkit WooCommerce can blast a hole in your WordPress security
2018-11-07 21:45

Rogue managers can seize control of web shops A vulnerability in the WooCommerce online store platform, used by over four million vendors, can be exploited to hijack WordPress installations...

WordPress Flaw Opens Millions of WooCommerce Shops to Takeover
2018-11-07 16:33

A file delete vulnerability in WordPress can be elevated into a remote code execution vulnerability for plugins like WooCommerce.

Popular WooCommerce WordPress Plugin Patches Critical Vulnerability
2018-11-07 09:03

If you own an eCommerce website built on WordPress and powered by WooCommerce plugin, then beware of a new vulnerability that could compromise your online store. Simon Scannell, a researcher at...

WordPress takes aim at ancient versions of its software
2018-10-24 12:51

If you’re running a very old version of WordPress on your website, the project’s staff would like a word with you.

Couldn't give a fsck about patching? Well, that's your WordPress website pwned, then
2018-09-21 20:50

Fiends use vulns to lure victims into tech support scams Website admins are urged to update their WordPress installations as soon as possible to the latest version following a rash of attacks...

Old WordPress Plugin Being Exploited in RCE Attacks
2018-09-17 17:19

Old instances of the popular WordPress Duplicator Plugin are leaving sites open to remote code execution attacks.