This is a good discussion about WordPress security with Mario Peshev and Oliver Sild. It is a wide-ranging discussion.

About WordPress Security
Oliver Sild @ youtube.com • 2 weeks ago
Oliver Sild @ youtube.com • 2 weeks ago
This is a good discussion about WordPress security with Mario Peshev and Oliver Sild. It is a wide-ranging discussion.
Vasyl Martyniuk @ aamportal.com • 1 month ago
Advanced Access Monitor is a security focused plugin that has a pretty robust free version. The free version has an audit feature that checks a number of areas to see that they are locked down and in line with best practices. This article outlines the audit feature.
Sarah Ulmer @ solidwp.com • 2 months ago
It seems like the number of unpatched vulnerabilities is increasing. If that is correct it is not a good trend.
Oliver Sid @ patchstack.como • 2 months ago
Patchstack has released their annual State of WordPress security report.
Oliver Sid @ patchstack.com • 3 months ago
If you are going to be at WordCamp Asia, Patchstack is running a “Capture the Flag” hacker challenge. They already have over 100 people signed up.
Eric Burel @ smashingmagazine.com • 3 months ago
For developers, this article looks at the OWASP told ten vulnerabilities list, so hopefully you can recognize and avoid them in your code.
John Blackbourn @ make.wordpress.org • 3 months ago
Coming in WordPress 6.8 – The algorithm used for passwords is changing from phppass portable hashing to bcrypt.
Sybre Waaijer @ x.com • 4 months ago
There is too much bad stuff going around about WordPress, but more keeps leaking out. Here is a thread on X that shows the data collected by WooCommerce … the extent of which is way over the top
Oliver Sid @ patchstack.com • 5 months ago
The entire Patchstack app is now available as an API for free for people on their Developer plan. This allows for the integration of Patchstack with your own workflow and automations.