Security

WordPress security news and issues.

Cory Miller, Founder & CEO of iThemes

Photo of author
Brian Krogsgard
I had the opportunity recently to talk to Cory Miller, the founder of iThemes. Cory started iThemes in January 2008, so they are currently celebrating their 6th anniversary. Cory is a really thoughtful businessman and leader, and I really enjoyed…

Beware of a spam email disguised as if it’s from Yoast

Photo of author
Brian Krogsgard
An email spam campaign disguised as being from Yoast is making the rounds. If you get an email from Yoast linking to their latest post, be sure to verify the sender and the link before you click it. According to…

WordPress security tips for your website

Photo of author
Brian Krogsgard
Brad Williams and Brian Messenlehner are co-founders of WebDevStudios and last week they teamed up with SiteGround to do a security presentation. They offer some scary statistics on security, go over an example hack, cover ways to secure your website,…

Automattic to acquire unnamed service

Photo of author
Brian Krogsgard
Automattic is acquiring a security firm that has yet to be named or officially announced. The acquisition is said to be Automattic's largest yet. Matt Mullenweg spoke to TechWeekEurope about security within WordPress and a bit about this acquisition. Well,…

WordPress 3.6.1 security release is out

Photo of author
Brian Krogsgard
WordPress 3.6.1 is out as a security release. Three security fixes were made, plus an additional security hardening measure. The security fixes affect all previous versions of WordPress. Check out the release details, and go update your sites.

Flagged by Google in style(.css)

Photo of author
Brian Krogsgard
My apologies for the headline. I couldn't resist. Yesterday, Jeff at WP Tavern covered yet another new A/B testing service. With dreadful timing, the site was also flagged by Google as malware for some users. As a commenter points out…

Meet Philip Arthur Moore, Premium Theme Lead at Automattic

Photo of author
Brian Krogsgard
Philip Arthur Moore is the Premium Theme team lead at Automattic. I'm thrilled to have been able to ask Philip some questions about WordPress.com premium themes, their processes, and working at Automattic. His answers are thorough and very insightful, and…

All plugins are (not) created equal

Photo of author
Sarah Pressler
Plugins are the new black in WordPress site development, and picking out the perfect plugins for your site can quickly become overwhelming. The WordPress.org plugin repository hosts over 26,000 plugins and the plugin forum contains over 1.3 million posts. Check…

Dissecting a WordPress brute force attack

Photo of author
Brian Krogsgard
If you've ever wanted a tour through the internals of a WordPress brute force attack, this is the post for you. Tony Perez, of Sucuri, uses an example attack to teach about what happens during such an attack. Tony also…

How Lift is taking WordPress to the Emmy’s

Photo of author
Brian Krogsgard
Lift is a WordPress-powered product, design and consultancy business. I've been following Chris Wallace, a Partner at Lift, for a long time. I've always known they do a lot of work for television and other interactive media, and this morning…

Disturbing report On WordPress plugin security

Photo of author
Brian Krogsgard
Checkmarx, a company founded in 2006 that specializes in automated security code reviews has published a security vulnerability report on the top 50 plugins on the WordPress plugin repository. As WP Tavern's Jeff Chandler summarizes, more than 20% of the…

WordPress Core is Secure

Photo of author
Brian Krogsgard
Jason Cosper writes on the WP Engine blog that people need to stop saying WordPress is not secure, because it is. WordPress Core is rarely cause for security concerns, and hasn't been for some time. However, due to WordPress' massive…
A2 Hosting
Omnisend
WordPress.com