| Date | Title | Description |
| 03.09.2026 | WordPress Backup Plugin Flaw Turns Routine Backup Into Full Site Takeover | By Richard L. Wells
Published: Sep 03 2026, 10:18 AM EDT
Share on Facebook Share on Twitter Share on LinkedIn Share on Reddit Share on Flipboard |
| 03.09.2026 | WordPress Backup Plugin Flaw: 3.25 Million Sites Exposed, Exploit Code Active | By Kyle Belmonte
Published: Sep 03 2026, 8:25 AM EDT
Share on Facebook Share on Twitter Share on LinkedIn Share on Reddit Share on Flipboard |
| 27.08.2026 | WordPress Translation Plugin Leaks Admin Reset Tokens to Any Visitor: 400,000 Sites at Risk | By Joshua Mitchell
Published: Aug 27 2026, 1:05 PM EDT
Share on Facebook Share on Twitter Share on LinkedIn Share on Reddit Share on Flipboard |
| 25.08.2026 | Attackers Exploit WordPress SSO Plugin; Six Paid Editions Were Never in Any Vulnerability Database | By Joshua Mitchell
Published: Aug 25 2026, 11:45 AM EDT
Share on Facebook Share on Twitter Share on LinkedIn Share on Reddit Share on Flipboard |
| 21.06.2026 | WordPress Email Plugin Flaw Triggers 17 Million Attacks: Gravity SMTP Leaks Live API Keys | By Kyle Belmonte
Published: Jun 21 2026, 05:54 AM EDT
Share on Facebook Share on Twitter Share on LinkedIn Share on Reddit Share on Flipboard |
| 22.05.2026 | WordPress 7.0 Ships AI Agent Infrastructure: API Key Theft Risk Surfaces on Launch Day | By Richard L. Wells
Published: May 22 2026, 18:10 PM EDT
Share on Facebook Share on Twitter Share on LinkedIn Share on Reddit Share on Flipboard |
| 05.05.2026 | Parameter™ Launches Free WordPress Risk Score™ to Help Small Businesses Spot Operational Gaps | Parameter, a Miami-based WordPress operations firm, launched the free WordPress Risk Score™ today.
Free public-signal assessment grades a WordPress site's operational health in under 60 seconds. No signup required.
Small businesses on WordP... |
| 23.05.2025 | Patchstack Named World's Largest Vulnerability Coordinator and Among Top 100 Fastest-Growing Startups in DACH & CEE | The small cybersecurity company from Estonia has officially become the largest vulnerability coordinator, surpassing global tech giants, including Microsoft. PäRNU, ESTONIA, May 23, 2025 /EINPresswire.com/ -- Patchstack, the world’s leading... |
| 25.02.2025 | Record-breaking number of vulnerabilities predicted for 2025 | A new report predicts a record-breaking 41,000 to 50,000 new Common Vulnerabilities and Exposures (CVEs) this year, based on data from the National Vulnerability Database (NVD).
The forecast, from the Forum of Incident Response and Security... |
| 05.11.2024 | Топ-5 ИБ-событий недели по версии Jet CSIRT | Сегодня в ТОП-5 — новая 0-day уязвимость в Windows, разбор 0-day уязвимости в Opera, обнаружение искусственным интеллектом 0-day уязвимости в SQLite, устранение 0-day уязвимоcти в Hybrid Backup Sync, новая уязвимость в WordPress.
Новая 0-da... |
| 30.09.2024 | The WordPress Showdown: A Battle for the Future of Open Source | In the world of web development, WordPress stands as a titan. It powers nearly 40% of all websites, a digital colossus. But beneath its surface, a storm brews. A recent conflict between Automattic, the parent company of WordPress, and WP En... |
| 30.09.2024 | Месяц в WordPress: Сентябрь 2024 | Примечание: это русскоязычная версия новостей, оригинал на английском был опубликован в WPLake Learning Hub.1. Конфликт WordPress.org и WP Engine касательно товарного знака
21 сентября, во время WordCamp, Мэтт Мулленвег, генеральный директо... |
| 16.09.2024 | Estonian Patchstack raise $5M Series A for open-source cybersecurity tool | Estonian cybersecurity startup Patchstack have raised a new $5M funding round to further their mission of covering the entire lifecycle of open-source security to provide the fastest mitigation to the emerging security threats.
Patchstack’s... |
| 11.09.2024 | Топ опасных уязвимости августа: под угрозой Microsoft Windows и сайты на WordPress | Хабр, привет! Я Александр Леонов, ведущий эксперт лаборатории PT Expert Security Center. Мы с командой аналитиков Positive Technologies каждый месяц исследуем информацию об уязвимостях из баз и бюллетеней безопасности вендоров, социальных с... |
| 26.08.2024 | Топ-5 ИБ-событий недели по версии Jet CSIRT | Сегодня в ТОП-5 — вредоносный код для ОС Linux, ошибка кеша LiteSpeed, критическая уязвимость в Kanister, срочный патч для критической уязвимости брандмауэра (CVE-2024-40766), уязвимость в GitHub Enterprise Server, позволяющая злоумышленник... |
| 01.08.2024 | Patchstack WordPress Security Audit Validates the BigScoots Cache Plugin for Secure WordPress Hosting | BigScoots and Patchstack
Patchstack performed an independent WordPress security audit of the BigScoots Cache Plugin to ensure that it supports a secure WordPress hosting experience.
We acknowledge that the BigScoots team has implemented a s... |
| 26.04.2024 | Hackers try to exploit WordPress plugin vulnerability that’s as severe as it gets | Enlarge
Getty Images reader comments 22
Hackers are assailing websites using a prominent WordPress plugin with millions of attempts to exploit a high-severity vulnerability that allows complete takeover, researchers said.
The vulnerability ... |
| 04.03.2024 | ТОП-5 ИБ-событий недели по версии Jet CSIRT | Сегодня в ТОП-5 — эксплойт для повышения привилегий в драйвере AppLocker, новые риски пользователей IOS, масштабная фишинговая кампания SubdoMailing, новые уязвимости в плагинах WordPress и уязвимость популярного AI-сервиса Hugging Face к а... |
| 01.03.2024 | Топ самых интересных CVE за февраль 2024 года | ⚠ Внимание ⚠
Вся информация, представленная ниже, предназначена только для ознакомительных целей. Автор не несет ответственности за вред, который может быть причинен с помощью предоставленной им информации.
В этой подборке представлены самы... |
| 09.05.2023 | Vulnerable Plugin Puts Two Million WordPress Sites At Risk | The Advanced Custom Fields WordPress plugin has a vulnerability that is leaving more than 2 million websites vulnerable.
According to a report by Patchstack, both the free and pro versions of the Advanced Custom Fields plugin have a reflect... |
| 11.04.2023 | Прессуем WordPress | Аккумулируем базовые знания, методы атак и нюансы самой популярной open-source CMS в рамках одного доклада.
9 декабря 2022 года я выступил на митапе «Клуба неанонимных багхантеров» от BI.ZONE. Там я рассказал об экосистеме WordPress: затрон... |
| 31.03.2023 | Hackers exploit WordPress plugin flaw that gives full control of millions of sites | Enlarge
Getty Images reader comments 21 with
Share this story
Share on Facebook
Share on Twitter
Share on Reddit
Hackers are actively exploiting a critical vulnerability in a widely used WordPress plugin that gives them the ability to take ... |
| 27.01.2023 | ТОП-3 ИБ-событий недели по версии Jet CSIRT | Мошеннические сертификаты ставят под угрозу репутацию специалистов по информационной безопасности
Исследователи Cyble рассказали о росте числа случаев мошенничества с сертификатами кибербезопасности. На различных площадках даркнета продают ... |
| 16.05.2022 | 7 элементов продуманной стратегии развития ИИ: опыт Salesforce
Сегодня в бизнесе главное — это данные
Создание культуры данных
Этический ИИ создаёт доверие
Нацеленность на стратегию, а не ИИ ради ... | Искусственный интеллект перестал быть вотчиной исключительно крупных компаний. Он становится мейнстримом для бизнеса, однако, по словам президента и исполнительного директора Salesforce Брета Тейлора, успех способствует ему не всегда. Проду... |
| 13.05.2022 | A Bunch of WordPress Sites Have Been Injected with Malicious JavaScript | If you have a WordPress website, you might want to check on your security, as a new report found that thousands of pages from the popular website builder have been hacked to redirect visitors to scam sites.
There are plenty of scams online ... |
| 31.03.2022 | 10-Step Checklist To Ensure Your WordPress Website Is Secure | CEO of WPRiders. A WordPress programming for small to mid-sized businesses and startups. |
| 11.03.2022 | Study Reveals Huge WordPress Security Issues | WordPress may be one of the most popular website builders in the world, but a recent study found that it's plagued with a wide range of substantial security vulnerabilities that never get patched.
With security breaches, ransomware attacks,... |
| 02.02.2022 | WordPress admins urged to patch critical security bug | The developer of 'Essential Addons for Elementor' WordPress plugin has patched a critical remote code execution (RCE) bug in version 5.0.4 and older which could allow a malicious actor to execute a local file inclusion attack and run arbitr... |
| 08.09.2021 | Macquarie Group embraces 'secure by design' | Macquarie Group is set to embed a 'secure by design' ethos into its global development efforts, transforming part of its approach to cyber security in the process.
The Australian-headquartered financial services group is in the process of s... |
| - | Patchstack | “Detect vulnerabilities for free with the fastest vulnerability mitigation for WordPress. Protect sites with vPatching. Start for free!” |