30 WordPress Plugins Hacked
カートのアイテムが多すぎます
ご購入は五十タイトルがカートに入っている場合のみです。
カートに追加できませんでした。
しばらく経ってから再度お試しください。
ウィッシュリストに追加できませんでした。
しばらく経ってから再度お試しください。
ほしい物リストの削除に失敗しました。
しばらく経ってから再度お試しください。
ポッドキャストのフォローに失敗しました
ポッドキャストのフォロー解除に失敗しました
-
ナレーター:
-
著者:
A bundle of WordPress tools known as the “Essential Plugin” suite—covering features like countdown timers, popup builders, and testimonial widgets—was sold on the marketplace Flippa to a buyer identified only as “Kris.”
He bought the suite, and eight months later he used the backdoors he created to compromise thousands of sites.
Full story here.
School of Podcasting Expert TalksOur first expert talk is with Rox Codes co-founder of Flightcast (with Steven Bartlett of Diary of a CEO). He will be demoing the first ever video first media host and answering questions. This is open to members of the School of Podcasting (there is a free version).
LINKSTry Podpage
Managewp Backup
Siteground WordPress Hosting
School of Podcasting
Key Takeaways
- A total of 31 WordPress plugins were quietly compromised after being sold to a malicious buyer. The injected malware stayed inactive for eight months before spreading across thousands of websites.
- Well-known podcasting plugins like PowerPress, Yoast SEO, and Seriously Simple Podcasting were not impacted. The affected plugins were mostly general-purpose utility tools.
- If your site uses anything from the “Essential Plugin” suite, it’s important to review it immediately and check for signs of compromise.
- Every plugin you install introduces third-party code to your site. The more plugins you rely on, the more ongoing attention your site needs to remain secure.
- Regardless of this incident, the best defense is simple: keep all plugins updated and remove anything you’re not actively using.
This podcast uses the following third-party services for analysis:
OP3 - https://op3.dev/privacy
adbl_web_anon_alc_button_suppression_t1
まだレビューはありません