Web Security
WP GDPR Compliance WordPress Plug-in Exploited

A WordPress plug-in known as the WP GDPR Compliance plug-in contains a dangerous privilege escalation vulnerability that attackers have been actively exploiting to compromise websites.

Read more
Vulnerability
WordPress 4.5.2 Security Release

WordPress 4.5.2 is now available. This is a security release for all previous versions and we strongly encourage you to update your sites immediately.

Read more
Web Security
WordPress Releases Security Update

WordPress 4.1.2 has been released to address multiple vulnerabilities, one of which could allow a site to be compromised by a remote attacker. WordPress 4.1.1 and earlier are affected by this vulnerability.

Read more
Web Security
WordPress 3.7 Released

WordPress 3.7, “Basie”, has just been released. It’s been named in honor of Count Basie. The WordPress 3.7 development cycle is the quickest turnaround between major versions with just 86 days from the time it launched WordPress 3.6 back in August 1. It has been stated version 3.8 is due out in December as it will continue this plugin-led development cycle.

Read more
General Security
WordPress 3.7 Beta 1

For WordPress 3.7 we decided to shorten the development cycle and focus on a few key improvements. We plan to release the final product in October, and then follow it in December with a jam-packed WordPress 3.8 release, which is already in development. Some of the best stuff in WordPress 3.7 is subtle — by design! So let’s walk through what we’d love for you to test, just in time for the weekend.

Read more
Hack
WordPress blogs and more under global attack - check your passwords now!

An posting  from naked security about word-press   If you have a web service that supports remote users, you will know that malevolent login attempts are an everyday occurrence. Even on my own home-hosted SSH server, listening unassumingly on an IP number on a DSL line, I've seen thousands of login attempts from dozens of different IP numbers […]

Read more