Update – WordPress Author Security
We are happy to announce that our WP Author Security Plugin is now available in the official WordPress Plugin Store.

It makes the application even easier to use, as the plugin can be installed directly via the WordPress administration without manual intervention.
Would you like to learn more about how it works? You can find more information in this article:
https://www.mgm-sp.com/en/news/wp-author-security-en
The plugin is still available as open source software and you have the possibility to view the source code or extend it by yourself. You can find the project at:
https://github.com/mgm-sp/wp-author-security
Are you unsure whether your WordPress instance is secure? Please feel free to contact us!
Recent posts
New Can I Trust Test Case: Browser returns secret out of pre-cached response in a CORS-Request
#1 – New Can I Trust Test Case – Browser returns secret out of pre-cached response in a CORS-Request
WordPress Author Security
How can you actively prevent usernames from being enumerated on WordPress author pages?
Pentest FAQ – #18 and #19 – How are vulnerabilities found evaluated? And what is the CVSS?
In our Big Application Security Penetration Test FAQ for clients we answer everything you should know before, during and after the commissioning of an Application Security Penetration Test.
In focus today: Questions #18 and #19 – How are vulnerabilities found evaluated? And what is the CVSS?
Attack Afternoon – CSRF Countermeasures #2
CSRF Countermeasures #2: Another way to protect against CSRF – stateless – is the Double Submit Cookie method.
NinjaDVA – Our Training Environment
The NinjaDVA is our comfortable and flexible training environment.