ShieldNOTES
ShieldNOTES Ep#23: Numerous High Risk Vulnerabilities, and a closer look at SQL Injection 💉 Attacks
Super-critical vulnerabilities discovered in several popular plugins.
Continue Reading →ShieldNOTES Ep#22: Recurring Vulnerabilities & No Fixes Available; & silentCAPTCHA
Multiple plugins identified with recurring vulnerabilities including some no fixes. We also introduce our silentCAPTCHA technology.
Continue Reading →ShieldNOTES Ep#21: New Supply Chain Attack; Elementor Addon & WP Google Map Vulnerabilities; Hacker Security Guide
There's another supply chain attack with WP.org plugins affected.
Continue Reading →ShieldNOTES Ep#20: WP.org Supply Chain Attack; ACF & CF7 Vulnerabilities; Password Security
Last week saw a serious supply chain attack on the WordPress.org plugin repository. All plugin committer accounts have had a forced password reset and all new plugin releases were paused.
Continue Reading →ShieldNOTES Ep#19: Recurring Vulnerability + Severely Critical + Monitor WP Activity
This week, 1 plugin stands out due to its recurring vulnerability, alongside plugins with high severity issues that may need attention.
Continue Reading →ShieldNOTES Ep#18: Critical XSS for WooCommerce; WCEU24&25
The biggest vulnerability by install size this week is definitely WooCommerce, but there are some other serious vulnerabilities out there, too.
Continue Reading →ShieldNOTES Ep#17: Critical Vulnerabilities; More+ Elementor vulnerabilities; WP 2FA; and WCEU 2024
Lots of Elementor related vulnerabilities again this week, alongside some really severe discoveries and some that haven't even been patched, yet.
Continue Reading →ShieldNOTES Ep#16: Lots of Elementor Vulnerabilities; htaccess; and TicketMaster
There are quite a few Elementor-related vulnerabilities published in the last week. 1 is particularly severe. We also share an article from our blog that you'll find interesting, and there's a big TicketMaster breach to be aware of.
Continue Reading →ShieldNOTES Ep#15: Fluent Forms & Memberpress Vulnerabilities; All about XML-RPC; Google Recommends WP 6.5
Many vulnerabilities were published in the last week, with Fluent Forms having the most severe. We wrote a blog article about securing XML-RPC.
Continue Reading →ShieldNOTES Ep#14: ACF & JetPack Vulnerabilities, Japanese Keyword Hack from our Blog, & SSH Security
There are many new vulnerabilities out there this week, including JetPack and Advanced Custom Fields.
Continue Reading →