Get a Pentest and security assessment of your IT network.

Cyber Security

WordPress plugin W3 Total Cache critical Vulnerability disclosed

A plugin misconfiguration leads to possible WordPress cms hack. Cache data is stored in public accessible directory, from where a malicious attack can can retrieve password hashes and other database information. The default location where this plugin stores data is /wp-content/w3tc/dbcache/” and if directory listing is enabled, attacker can browse and download it. This patch works for all hosting environments / types where PHP is properly configured, i.e..htaccess modifications (or other web server configuration changes) are *not* necessary.

Source: https://thehackernews.com/2012/12/wordpress-plugin-w3-total-cache_26.html

Related posts
Cyber Security

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

Cyber Security

Art of Twitter account hacking

Cyber Security

Alexa Eavesdropping Flub Re-Sparks Voice Assistant Privacy Debate

Cyber Security

Dan Geer, Richard Thieme on specialization in security