A recent vulnerability in the Really Simple Security WordPress plugin affected specific versions (9.0.0 to 9.1.1.1). This vulnerability allowed unauthenticated attackers to gain administrative access within certain sites. It permitted malicious actors to hijack WordPress sites and use them for criminal purposes. The plugin has been installed on over 4 million sites. However, a patch was released (version 9.1.2) with WordPress enforcing automatic updates to prevent exploitation.

Full Story

Current Computer Science Major @ Fordham University. Working in IT Security and Assurance as a Risk Assistant.

Exit mobile version