20 Unpatched WordPress Plugins Have Security Flaws

  The blog link below tested 1000 wordpress plugins and found 103 vulnerable plugins. and some of those have not been patched (I am listing the 20 NOT PATCHED plugins below). http://blog.cinu.pl/2015/11/php-static-code-analysis-vs-top-1000-wordpress-plugins.html I have alphabetized the listing – and started doing some manual checks on versions at wordpress.org plugin listings. I cant find the first … Read more

Are You Afraid Of Malware Ads?

Maybe you should be: https://blog.malwarebytes.org/exploits-2/2015/11/magnitude-exploit-kit-activity-increases-via-malvertising-attacks/ Also the .pw domain should be blocked – (Palau Pacific Island). The malware tries to insert itself into your computer while you are watching an ad. This is what should happen – where your anti-virus /anti-malware software protects you from these unseen attacks. Guess what is in the malware? Did … Read more

Protect WordPress From Constant Hacker Attacks

It is a good idea to constantly improve – including in the WordPress plugin space. I have recently added WordFence  Plugin: https://www.wordfence.com/   And in the last two weeks Wordfence blocked the following ip addresses which have been attacking this site (trying to gain access)    coming from the following countries LV = Latvia, BY = Belarus, … Read more

Website Files Ransomed – Not Just Personal Files

This image explains (from PCWorld Article)  The Ransomware image that can occupy your computer if you had the misfortune of downloading the wrong item (malware – virus, etc). Or if your computer was already Pwned (taken over somehow by criminal hackers) and then the criminal sold your computer access to the Ransomware criminal. That is … Read more

NTP Attack Can Cause Encryption and DNS Problems

Aanchal Malhotra, Isaac E. Cohen, Erik Brakke, and Sharon Goldberg wrote a paper (out of Boston University) http://www.cs.bu.edu/~goldbe/papers/NTPattack.pdf “Attacking the Networking Time Protocol”   Apparently if your servers and clients (which all have NTP) have their time changed can affect various processes. To Attack …     Change time by … TLS Certs     … Read more