Security Haiku: OptionsBleed Memory Leaking over OPTIONS requests sent. This patch stops the leak. The vuln-du-jour is called OptionsBleed and affects Apache2 web servers. […] September 21, 2017September 21, 2017 Robert Rowley
Security Haiku: WordPress 4.8.2 Within this release, Nine security patches. Sites are now secure This week brings a security update to WordPress core. The […] September 19, 2017September 20, 2017 Robert Rowley
Security Haiku: Malicious Code in Display Widgets We coined a new term: “plugin identity theft”. Let it not catch on. A popular plugin in the WordPress.org repository […] September 13, 2017September 13, 2017 Robert Rowley
Reboot-Be-Gone with KernelCare & Pagely Long gone are the days of reboots on Pagely servers due to security related kernel updates. Pagely has been working […] August 23, 2017 Robert Rowley
WordCamp Kyoto 2017 I had the honor of presenting this past weekend at WordCamp Kyoto. It wasn’t my first time addressing WordCamp crowds […] June 27, 2017August 30, 2017 Robert Rowley
PHP Object Injection and Insecure Unserialize I wrote about an influx of PHP Object Injection attacks previously, warning about a trend of attacks targeting a known but […] May 22, 2017August 30, 2017 Robert Rowley
Security Haiku: WordPress 4.7.5 Release Patchy patchy patch I love patches for WordPress Here come the patches Pagely customer sites are being updated to address […] May 17, 2017August 30, 2017 Robert Rowley
Exploring the ExploitBox Unauthorized Password Reset Vulnerability In the past week there has been a lot of concern about a vulnerability released affecting WordPress core and the […] May 10, 2017August 30, 2017 Robert Rowley
Security Haiku: ExploitBox’s CVE-2017-8295 Return to sender sending to the wrong domain read from HOST header. There was a recently released authentication bypass vulnerability […] May 5, 2017August 30, 2017 Robert Rowley
Security Haiku: WordPress 4.7.3 Security Release XSS and more bugs get patched in this release. The update is done Customer sites are being updated to address […] March 6, 2017August 30, 2017 Robert Rowley
Recent Comments