Get a Pentest and security assessment of your IT network.

Cyber Security

Critical WordPress Bug Leaves 320,000 Sites Open to Attack

Two WordPress plugins, InfiniteWP Client and WP Time Capsule, suffer from the same critical authorization bypass bug that allows adversaries to access a site s backend with no password. Researchers from WebArx created proof-of-concept attacks to exploit the vulnerability. According to the plugin library, 300,000 websites are running a version of the vulnerable InfiniteWP client plugin. The vulnerabilities were first reported on Jan. 7, 2020, and the next day the developers released new versions of the plugins.

Source: https://threatpost.com/wordpress-bug-leaves-sites-open-to-attack/151911/

Related posts
Cyber Security

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

Cyber Security

Art of Twitter account hacking

Cyber Security

Alexa Eavesdropping Flub Re-Sparks Voice Assistant Privacy Debate

Cyber Security

Dan Geer, Richard Thieme on specialization in security