website security
17 stories on website security, newest first, from 17 briefings. Each is a plain-language summary written here for Australian business, with a link to the original reporting.
- Elementor Plugin Bug Lets Attackers Hijack WordPress Sites With a Single Click
- CISA Warns of Actively Exploited WordPress Vulnerability
- LAPSUS$ Briefly Hijacks Elsevier's Academic Platform with Redirect Attack
- Latvian Police Arrest Suspect Behind Extortion Hack on Electronics Repair Firm
- WordPress Patches Critical Flaw Allowing Unauthenticated Code Execution on Some Sites
- WordPress Fixes 'Comment2Shell' Flaw That Let Anonymous Comments Hijack Admin Sessions
- WordPress Patches 'Click2Shell' Flaw That Could Let Attackers Hijack Admin Sessions
- Old CDN Domain Resold: Thousands of Sites Still Loading Code From a Stranger
- Critical Flaw in Popular WordPress Migration Plugin Puts 3 Million Sites at Risk
- Critical WordPress Plugin and Theme Bugs Put Sites at Risk of Takeover
- Unpatched Flaws in Popular Video Player Software Could Let Hackers Steal Files and Run Code
- Critical Login Bypass Flaws Found in Popular WordPress SSO Plugin
- Critical Elementor Pro Flaw Lets Hackers Take Over WordPress Sites Without Logging In
- Nearly 2,000 Hacked WordPress Sites Turned Into Malware Distribution Network
- WordPress Form Plugin Flaw Puts 300,000 Sites at Risk of Takeover
- WordPress Patch Fixes Serious Remote Code Execution Flaw
- Critical WordPress Flaw Could Let Hackers Take Over Your Website — Update Now