Live data from Hacker News

Top WordPress sites vulnerable 6 weeks after caching plugin fixed

hackertarget.com

11–12 of 12 posts

Re: Top WordPress sites vulnerable 6 weeks after caching plugin fixed

#12
post #7

I had an attached comment with this information but want to break it out as it will likely be useful to people without lots of time dealing with the various ways Wordpress can/will (mostly will) get attacked. First: Double-check your folder and file permissions. A lot of plugins like and love very open folder permissions so they can write stuff everywhere. Be very careful with changing permission on core Wordpress st…

> WPScan

We are also working hard to keep an updated internal database of all vulnerable plugins and themes, so update it often ;)

Post reply on HN