Robert Rowley

featured article

WordPress Business Roundup for the Week of November 14

Photo of author
Dan Knauss
Tom Willmot on the Challenges and Opportunities  Facing Enterprise WordPress • Tom Lach on the costs of rapid growth — It's not for everyone • The Future of GiveWP and the Block Editor • Evolving Edupack — and Sunsetting It • and more...
Latest articles

Naming is hard—but important

Photo of author
Dan Knauss
This is an important topic that came out of a Post Status Slack #security discussion involving Robert Rowley and John James Jacoby: WordPress Terminology Meta. It continued over at the WPwatercooler.

Post Status Excerpt (No. 68) — On the Road to WordCamp US

Photo of author
Dan Knauss
In this episode Dan and Ny are tired! — but excited about heading to their first WordCamp of any kind. They talk about the things they're looking forward to seeing and doing at WCUS and in San Diego. Lots of interesting speakers and talks! Contributor day! Karaoke. Food comes up — a lot.

When the Free Rider is Government

Photo of author
Dan Knauss
Chinmayi Sharma argues our digital infrastructure is built on open source, and it cannot provide adequate security so governments should help out.

Pentesting as Contributing

Photo of author
Dan Knauss
Robert Rowley at Patchstack explains what I believe is the first-ever reported vulnerability in Gutenberg (the plugin, not in WordPress core) to make the National Vulnerability Database. Robert has opened an issue for discussion in the Gutenberg GitHub repo that…

Nulled Themes and Plugins

Photo of author
Dan Knauss
My first experiences with "nulled" (or back in the day "cracked") software date back to the golden days of the Atari 8-bit and Commodore Amiga. Blank floppy disks were cheap, and like most kids, I did not have a lot…

Open Secrets: Forced Updates in WordPress

Photo of author
Dan Knauss
We've seen forced updates become increasingly common and less controversial over time. But who decides, and how is that decision made? Are there unofficial channels and processes, like a decision tree, for escalating to a forced update?

Recently a vulnerability affecting WordPress core…

Photo of author
Brian Krogsgard

Recently a vulnerability affecting WordPress core and the password reset functionality came to light. Robert Rowley over at Pagely explains: Under three specific conditions the "forgot password?" functionality can be manipulated into sending the URL to reset a WordPress user’s…

Robert Rowley has been monitoring insecure…

Photo of author
Brian Krogsgard
Robert Rowley has been monitoring insecure WordPress plugins which exposed PHP objects to potential injection on Pagely servers -- and shares how they addressed the issue. There are several interesting takeaways, but I especially liked his note about communicating with…
A2 Hosting
WordPress.com