Update – WordPress Author Security
We are happy to announce that our WP Author Security Plugin is now available in the official WordPress Plugin Store.
It makes the application even easier to use, as the plugin can be installed directly via the WordPress administration without manual intervention.
Would you like to learn more about how it works? You can find more information in this article:
The plugin is still available as open source software and you have the possibility to view the source code or extend it by yourself. You can find the project at:
Are you unsure whether your WordPress instance is secure? Please feel free to contact us!
#1 – New Can I Trust Test Case – Browser returns secret out of pre-cached response in a CORS-Request
How can you actively prevent usernames from being enumerated on WordPress author pages?
In our Big Application Security Penetration Test FAQ for clients we answer everything you should know before, during and after the commissioning of an Application Security Penetration Test.
In focus today: Questions #18 and #19 – How are vulnerabilities found evaluated? And what is the CVSS?
CSRF Countermeasures #2: Another way to protect against CSRF – stateless – is the Double Submit Cookie method.
The NinjaDVA is our comfortable and flexible training environment.