Get a Pentest and security assessment of your IT network.

Cyber Security

WordPress Plugin Used by 300,000+ Sites Found Vulnerable to SQL Injection Attack

A vulnerability has been discovered in popular WP Statistics plugin, installed on over 300,000 websites. The vulnerability is caused by the lack of sanitization in user-provided data, researchers said. The plugin allows site administrators to get detailed information related to the number of users online on their sites, number of visits and visitors, and page statistics. A remote attacker, with at least a subscriber account, could steal sensitive information from the website’s database and possibly gain unauthorized access to the affected sites.

Source: https://thehackernews.com/2017/06/wordpress-hacking-sql-injection.html

Related posts
Cyber Security

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

Cyber Security

Art of Twitter account hacking

Cyber Security

Alexa Eavesdropping Flub Re-Sparks Voice Assistant Privacy Debate

Cyber Security

Dan Geer, Richard Thieme on specialization in security