WordPress

23 Articles
A huge online fraud operation is hijacking WordPress sites to send out 1.4 billion ad requests per day
Tech

A huge online fraud operation is hijacking WordPress sites to send out 1.4 billion ad requests per day

Researchers found a huge ad fraud scheme called Scallyway The scheme monetizes pirated sites through a series of redirects At its peak, there...

WordPress plugin auth bypass exploited almost immediately after disclosure
Tech

WordPress plugin auth bypass exploited almost immediately after disclosure

A bug in OttoKit allows threat actors to create new admin accounts The bug can lead to full website takeover More than 100,000...

WordPress owner Automattic announces major layoffs
Tech

WordPress owner Automattic announces major layoffs

WordPress.com, Tumblr and WooCommerce owner Automattic is laying off 16% Automattic wants to become more agile and responsive Long-term financial viability and profitability...

A key WordPress feature has been hijacked to show malicious code, spam images
Tech

A key WordPress feature has been hijacked to show malicious code, spam images

Researchers from Sucuri found malicious code hiding in the mu-plugins directory The malware redirected visitors, served spam, and could even drop malware The...

Web hosting vs WordPress hosting: What’s the difference?
Tech

Web hosting vs WordPress hosting: What’s the difference?

There is no difference between web hosting and WordPress hosting. This is like asking transport vs cars what’s the difference? Transport is a...

This top WordPress plugin could be hiding a worrying security flaw, so be on your guard
Tech

This top WordPress plugin could be hiding a worrying security flaw, so be on your guard

WP Ghost, a popular security plugin, carried a 9.6-severity flaw It allows threat actors to execute malicious code, remotely The developers released a...

Over 20,000 WordPress sites hit by damaging malware campaign
Tech

Over 20,000 WordPress sites hit by damaging malware campaign

GoDaddy found a malicious campaign infecting 20,000 WordPress sites It is called DollyWay, and it is super persistent DollyWay redirects visitors to fake...

Thousands of WordPress sites targeted with malicious plugin backdoor attacks
Tech

Thousands of WordPress sites targeted with malicious plugin backdoor attacks

Security researchers found JavaScript code installing four backdoors to WP-powered sites They also found a vulnerable plugin enabling full website takeover There are...

Another serious WordPress plugin vulnerability could put 40,000 sites at risk of attack
Tech

Another serious WordPress plugin vulnerability could put 40,000 sites at risk of attack

Security researchers find high-severity flaw in popular WordPress plugin It allowed threat actors to run malicious code remotely A patch was released in...