Blog

  • Fake plugin affecting WordPress sites

    Bad actors are abusing leaked and compromised credentials to install core-stab fake plugin on WordPress sites.

  • WordPress VIP Adds WPScan to Codebase Manager

    WordPress VIP, Automattic’s managed WordPress hosting platform for enterprise and large‑scale websites, is excited to announce they have incorporated WPScan into the WordPress VIP Codebase Manager. WPScan’s market‑leading security technology brings enhanced, proactive protection and threat detection for WordPress VIP enterprise customers, including continuous monitoring of existing plugins and alerts for potential vulnerabilities. Improved security empowers customers…

  • Protecting your WordPress website against SQL injection attacks

    If you own a WordPress website, then chances are you’ve heard of SQL injections in WordPress. These malicious attacks can wreak havoc on your website and leave it vulnerable to hackers. Fortunately, there are steps you can take to protect your website from the threat of a WordPress SQL injection attack. Let’s explore what is…