BestCyberNews: News Online

BCN+NAME1

Start knowing

Breaking

Showing posts with label WordPress. Show all posts
Showing posts with label WordPress. Show all posts

The 10 Most Common Mistakes That WordPress Developers Make

9 years ago

We are only human, and one of the traits of being a human is that we make mistakes. On the other hand, we are also self-correcting, meaning we tend to learn from our mistakes and hopefully are thereby able to avoid making the same ones twice. A lo...

Read More

XSS Zero-day Vulnerability in WordPress, Millions of Websites Affected

10 years ago

WordPress was issued a critical security Patch to users, after millions of websites were at risk of a bug that allows attackers to take control of a system. If your WordPress site allows users to post comments via the WordPress commenting system,...

Read More

FBI Warns WordPress Users, Regarding Pro-ISIS Hackers Script Kiddies

10 years ago

On Tuesday, Researchers at the FBI continue to identify WordPress vulnerabilities as the door through which ISIS hackers are able to spread propaganda. The FBI said that the low-level attacks are from those seeking the notoriety of being associat...

Read More

WordPress Plugin "Google Analytics by Yoast" Patches Critical Vulnerability

10 years ago

Google Analytics by Yoast is a WordPress plug-in for monitoring website traffic. With approximately seven million downloads it’s one of the most popular WordPress plug-ins. A security vulnerability in the plug-in allows an unauthenticated attac...

Read More

50000+ WordPress Sites are Compromised by MailPoet

11 years ago

WordPress popular plug-in MailPoet are being urged to update it, following the discovery of a vulnerability that has so far led to 50,000 websites becoming compromised. The security flaw is located in MailPoet Newsletters, previously known as wys...

Read More

WordPress New Vulnerability: Remote Code Execution through TimThumb plugin

11 years ago

New vulnerability found in WordPress, A zero-day vulnerability in the popular TimThumb plugin for WordPress leaves many websites vulnerable to exploits that allow unauthorized attackers to execute malicious code. The vulnerability involved poor h...

Read More

Vulnerability found in the All in One SEO Pack WordPress

11 years ago 0

Vulnerability found in the all in one SEO pack WordPress, the All in One SEO Pack just released a new version of their popular WordPress plugin. Security release patching two privilege escalation vulnerabilities we discovered earlier this week th...

Read More

Free Guide for WordPress Security Checklist

11 years ago 0

WordPress is a free and open source blogging tool and a content management system (CMS) based on PHP and MySQL, which runs on a web hosting service. Features include a plug-in architecture and a template system.  WordPress is used by more than 18...

Read More

2,000 Websites Compromised with iFrames Vulnerability in WordPress OptimizePress Theme

11 years ago 0

According Sucuri Nearly 2,000 Websites are compromised with iFrames vulnerability in WordPress OptimizePress Theme, all of the contaminated websites that are reviewed and cleared using OptmizePress, and they all had the same iFrame injected. Goog...

Read More

WordPress Plugins with Backdoor and Sending Phishing Emails

11 years ago 1

WordPress plugins had a malicious backdoor added to them via the plugin repository. That lead to WordPress.org resetting all passwords as a precaution. You can read about it here: Passwords Reset. I must note that the WP.org team did a amazing job...

Read More

WordPress Plugin Leaves Sensitive Data

12 years ago 0

A security researcher is warning WordPress uses that a popular plugin may leave sensitive information from their blog accessible from the public Internet with little more than a Google search. The researcher, Jason A. Donenfeld, who uses the han...

Read More

RARSTONE, TrendMicro revealed Naikon cyberespionage campaign

12 years ago 0

RARSTONE is the name of the RAT (REMOTE ACCESS TOOL) used in a cyber espionage campaign dubbed “Naikon” uncovered by security experts at TrendMicro. Security experts at TrendMicro revealed to have detected the RARSTONE RAT studying targeted atta...

Read More

Malware Piggybacks on Automatic WordPress Updates

13 years ago 0

Most WordPress bloggers know the “Always keep your WordPress blog up-to-date” mantra. To make upgrades painless, WordPress developers introduced the “Automatic Update” features in version 2.7. A blog admin only needs to visit the “Update WordPress”...

Read More

What’s in your wp-head?

13 years ago 0

I first came across this attack in late May of 2012. It had quite a recognizable and frequently updated type of malicious JavaScript code injected in the  section of WordPress blogs and iframe URLs generated by this script always ended with t...

Read More