Up to 1.2 million GoDaddy customers’ data exposed in breach

Data connected with up to 1.2 million GoDaddy customers may have been accessed by an unauthorized party, the company reported to the U.S. Securities and Exhcnage Commission Monday. GoDaddy, a behemoth in the commercial web hosting and domain registrar space, reported that it discovered the apparent intrusion on Nov. 17, and that the improper access dated back to Sept. 6. Using a compromised password, an unknown party accessed a GoDaddy system dedicated to managed WordPress services, where the company offers customers hosting and other content management features. Up to 1.2 million active and inactive customers’ email addresses and customer numbers were exposed, which could set them up for phishing attacks, Demetrius Comes, the company’s chief information security officer, wrote in the notice. “We are sincerely sorry for this incident and the concern it causes for our customers,” Comes wrote. “We, GoDaddy leadership and employees, take our responsibility to protect customers’ data […]

The post Up to 1.2 million GoDaddy customers’ data exposed in breach appeared first on CyberScoop.

Continue reading Up to 1.2 million GoDaddy customers’ data exposed in breach

How to find the rest of the malware in ftp folder after a WordPress attack? [closed]

Recently, I managed to recover from a serious WordPress hack. Many files were compromised.
The strange thing is, the attackers were able to create a subfolder on my main directory, outside of WordPress. With my very limited knowledge, I wa… Continue reading How to find the rest of the malware in ftp folder after a WordPress attack? [closed]

Does adding a csv file to a wordpress plugin introduce security risks to the site?

I am currently working on an implementation reading data from a csv file from within a WordPress plugin. It was suggested the file be added within the plugin in an assets directory. I have concerns in doing this. In particular, I’m worried… Continue reading Does adding a csv file to a wordpress plugin introduce security risks to the site?

Securing your WordPress website against ransomware attacks

It’s no surprise to anyone who works in security that there’s been an explosion in ransomware incidents over the last two years, costing companies across various industries millions of dollars. According to a recent report from the Institute for Securi… Continue reading Securing your WordPress website against ransomware attacks

LoginID SDK empowers developers to integrate FIDO strong authentication into their websites or apps

LoginID announced additional SDK options for developers. These SDKs empower developers to integrate FIDO strong authentication into their websites or apps. A recent PYMNTS report has referenced the importance of strong authentication methods such as bi… Continue reading LoginID SDK empowers developers to integrate FIDO strong authentication into their websites or apps

Site displaying Internal Server Error 500 just as suspicious comments flagged as spam [closed]

In my 13 years of Wordpress, I’ve never seen anything like this. About an hour ago I was alerted by one of my users that the website was displaying an Internal Server Error 500 message on every page. I consulted my host’s tech support, and… Continue reading Site displaying Internal Server Error 500 just as suspicious comments flagged as spam [closed]