Tag
Security
-

Jetpack Acquires WordPress Vulnerability Database WPScan
Jetpack is acquiring WPScan, a WordPress vulnerability database. WPScan is used across the WordPress ecosystem to learn about new vulnerabilities to WordPress core, themes, and plugins. WPScan started as a simple Ruby script in 2011 to help identify vulnerabilities in self-hosted WordPress websites. The simple script matured into a large software project and gained popularity…
-

Security Issues Patched in Smash Balloon Social Post Feed Plugin
During an internal audit of the Smash Balloon Social Post Feed plugin (also known as Custom Facebook Feed), we discovered several sensitive AJAX endpoints were accessible to any users with an account on the vulnerable site, like subscribers. Some of these endpoints could enable Stored Cross-Site Scripting (XSS) attacks to occur.
-

Multiple vulnerabilities in WP Fastest Cache plugin
We uncovered multiple vulnerabilities during an internal audit of the WP Fastest Cache plugin. We strongly recommend that you update to the latest version of the plugin and have an established security solution on your site, such as Jetpack Security.
-

10 Steps for a Safe & Secure WooCommerce Checkout Process
Keeping your WooCommerce store secure not only protects your customers, but your business, too! See the 10 essential security steps from WordPress experts.
-

What to Do if Infected With SEO Spam on WordPress
At Jetpack, dealing with different types of web threats and attacks is part of our routine. Most of the time, it ranges from collecting a malicious file and finding the attack vector, to providing assistance on restoring a website from the latest backup. But sometimes we enter a different dimension of really creative attacks, a…
-

What Is Comment Spam? How to Detect & Block Spammers
Can you spot a pretender? Fake comments can be dangerous for visitors & ruin your reputation. See six ways to tell the difference between real & fake comments.
-

Should You Use Jetpack for WordPress Security?
WordPress site security without dozens of plugins — is Jetpack’s all-in-one solution the answer? Review its features, cost, & support to decide for yourself.
-

Meet Jetpack: Behind the Scenes with a WordPress Security Expert
Cybercrime is a threat to anyone who runs a website, even on WordPress. Behind the scenes in the fight to protect the community with one of Automattic’s own.
-

Vulnerabilities Found in Patreon WordPress plugin
During an internal audit of the Patreon plugin for WordPress, the Jetpack Scan team found several weak points that would allow someone to take over a website.
-

WooCommerce Security: 15 Step Checklist to Secure Your Store
Would you be able to recognize a hack on your WooCommerce store? Learn how to quickly recover from security breaches and how to prevent them before they start.