Get a Pentest and security assessment of your IT network.

News

New WordPress Flaw Lets Unauthenticated Remote Attackers Hack Sites

A researcher has discovered a new flaw in WordPress that could potentially lead to remote code execution attacks. The flaw stems from a cross-site request forgery (CSRF) issue in the comment section, one of its core components that comes enabled by default. The vulnerability affects all WordPress installations prior to version 5.1.1. It’s highly recommended to immediately upgrade your WordPress-based website before hackers could take advantage of a newly disclosed vulnerability to hack your website. Since WordPress automatically updates by default, you should already be running the latest version of the CMS software.

Source: https://thehackernews.com/2019/03/hack-wordpress-websites.html

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

1 day attack with DDoS booter costs $60 causing $720k in damageSecurity Affairs

News

NSA-linked Cisco exploit poses bigger threat than previously thought