Top reasons why WordPress websites get hacked (and how you can stop it)

Hacking is the process of finding flaws in a system, and exploiting them to bypass security controls. ‘Ethical’ hackers use this process to learn about a system and find its weaknesses. However, malicious or ‘black hat’ hacking … Continue reading Top reasons why WordPress websites get hacked (and how you can stop it)

How Activity Logs Help WordPress Admins Better Manage Website Security

Managing a WordPress website can sap a lot of your time and energy, which otherwise you’d spend on managing your business.

If you’re looking to cut down on the hours, you spend troubleshooting WordPress technical and security problems, better managing… Continue reading How Activity Logs Help WordPress Admins Better Manage Website Security

Critical Unpatched Flaw Disclosed in WordPress WooCommerce Extension

If you own an eCommerce website built on WordPress and powered by WooCommerce plugin, then beware of a new, unpatched vulnerability that has been made public and could allow attackers to compromise your online store.

A WordPress security company—calle… Continue reading Critical Unpatched Flaw Disclosed in WordPress WooCommerce Extension

Hackers Actively Exploiting Widely-Used Social Share Plugin for WordPress

Hackers have been found exploiting a pair of critical security vulnerabilities in one of the popular social media sharing plugins to take control over WordPress websites that are still running a vulnerable version of the plugin.

The vulnerable plugin … Continue reading Hackers Actively Exploiting Widely-Used Social Share Plugin for WordPress

New WordPress Flaw Lets Unauthenticated Remote Attackers Hack Sites

If for some reason your WordPress-based website has not yet been automatically updated to the latest version 5.1.1, it’s highly recommended to immediately upgrade it before hackers could take advantage of a newly disclosed vulnerability to hack your we… Continue reading New WordPress Flaw Lets Unauthenticated Remote Attackers Hack Sites

Critical Flaw Uncovered In WordPress That Remained Unpatched for 6 Years

Exclusive — If you have not updated your website to the latest WordPress version 5.0.3, it’s a brilliant idea to upgrade the content management software of your site now. From now, I mean immediately.

Cybersecurity researchers at RIPS Technologies Gmb… Continue reading Critical Flaw Uncovered In WordPress That Remained Unpatched for 6 Years

WordPress Update Breaks Automatic Update Feature—Apply Manual Update

WordPress administrators are once again in trouble.

WordPress version 4.9.3 was released earlier this week with patches for a total 34 vulnerabilities, but unfortunately, the new version broke the automatic update mechanism for millions of WordPress w… Continue reading WordPress Update Breaks Automatic Update Feature—Apply Manual Update

Unpatched DoS Flaw Could Help Anyone Take Down WordPress Websites

A simple yet serious application-level denial of service (DoS) vulnerability has been discovered in WordPress CMS platform that could allow anyone to take down most WordPress websites even with a single machine—without hitting with a massive amount of … Continue reading Unpatched DoS Flaw Could Help Anyone Take Down WordPress Websites

Hidden Backdoor Found In WordPress Captcha Plugin Affects Over 300,000 Sites

Buying popular plugins with a large user-base and using it for effortless malicious campaigns have become a new trend for bad actors.

One such incident happened recently when the renowned developer BestWebSoft sold a popular Captcha WordPress plugin t… Continue reading Hidden Backdoor Found In WordPress Captcha Plugin Affects Over 300,000 Sites