Joost on the fear marketing of WordPress security.
Fear Marketing of WordPress
Joost De Valk @ poststatus.com • 7 months ago
Joost De Valk @ poststatus.com • 7 months ago
Joost on the fear marketing of WordPress security.
Scott Kingsley Clark @ pods.io • 8 months ago
The latest version of Pods is a security release. Hotfixes for various Pods versions are available.
Roger Montti @ searchenginejournal.com • 8 months ago
Roger Montti of the Search Engine Journal asked WPScan and Wordfence what site owners need to know about medium level vulnerabilities?
Emil Tragardh @ youtube.com • 8 months ago
With the help of breakdance XSS any user can trick the admin user to execute PHP code without them knowing it. The code is written by the Editor (or any other user role) and later executed unknowingly by the administrator.
William Brown @ blackhats.net.au • 8 months ago
A year ago we were all urged to jump on the passkeys train because it was superior security. In this article the author describes two problems – vendor lock-in and uneven implementation.
Dennis Dormon @ mainwp.com • 8 months ago
A security researcher alerted MainWP that some customer account information had been found in a large dump of compromised accounts. The notification says the accounts may be ones where users reused their credentials on multiple sites. MainWP reset all passwords and are requiring two factor authentication going forward. The account information is logging into the MainWP website, not ones related to connected sites.
Vladimir Smitka @ smitka.me • 8 months ago
An interesting list of steps and code for better securing a WordPress site from a WordPress veteran.
Aaron Jorbin @ wordpress.org • 9 months ago
The topic of WordPress security is timely. WordPress 6.5.2 is a security and fix release just dropped.
David McCan @ webtng.com • 9 months ago
There has been a lot of discussion about WordPress security and it seemed like the WordPress security posture hasn’t changed much over the years. David McCan discusses this and shares some ideas about how to bring WordPress security in line with current best practices.