https://ithemes.com/7-wordpress-security-best-practices/As hacks and security breaches become more of a concern for anyone running a WordPress website, it’s important to know you can drastically improve your security by using a few WordPress security best practices. If you don’t already have a WordPress security strategy in place, this post will help you understand seven ways you can […]
More info:
https://ithemes.com/7-wordpress-security-best-practices/
https://www.wordfence.com/blog/2020/03/active-attack-on-zero-day-in-custom-searchable-data-entry-system-plugin/ The Wordfence Threat Intelligence team is tracking a series of attacks against an unpatched vulnerability in the Custom Searchable Data Entry System plugin for WordPress. The estimated 2,000+ sites running the plugin are vulnerable to Unauthenticated Data Modification and Deletion, including the potential to delete the entire contents of any table in a vulnerable […]
More info:
https://www.wordfence.com/blog/2020/03/active-attack-on-zero-day-in-custom-searchable-data-entry-system-plugin/
https://pagely.com/blog/pagely-security-updates-feb-2020/WordPress Core No notable WordPress core security releases. Plugin/Theme Vulnerabilities of Note Duplicator Plugin The Duplicator and Duplicator-Pro plugins both contained a vulnerability that allowed attackers to make a single […]
More info:
https://pagely.com/blog/pagely-security-updates-feb-2020/
https://pagely.com/blog/unlicensed-wordpress-plugins-themes/One of the greatest things about WordPress is the open source community behind it. Thanks to the multitude of plugins and themes available, even the most basic of users can […]
More info:
https://pagely.com/blog/unlicensed-wordpress-plugins-themes/
https://ithemes.com/wordpress-vulnerability-roundup-march-2020-part-1/New WordPress plugin and theme vulnerabilities were disclosed during the first half of March, so we want to keep you aware. In this post, we cover recent WordPress plugin, theme and core vulnerabilities and what to do if you are running one of the vulnerable plugins or themes on your website. The WordPress Vulnerability Roundup […]
More info:
https://ithemes.com/wordpress-vulnerability-roundup-march-2020-part-1/
https://www.wordfence.com/blog/2020/03/vulnerability-patched-in-import-export-wordpress-users/ On February 26th, our Threat Intelligence team discovered a vulnerability in Import Export WordPress Users, a WordPress plugin installed on over 30,000 sites. The flaw allowed anybody with subscriber-level access or above to import new users via a CSV file, including administrative-level users. We reached out to the plugin’s developer on February 26th, who […]
More info:
https://www.wordfence.com/blog/2020/03/vulnerability-patched-in-import-export-wordpress-users/