Hacking WordPress 4.7.0 – step-by-step

The guys from sucuri have recently published a blog post with details of a WordPress vulnerability which allows an unauthenticated attacker to easily edit any blog post of their liking by abusing a bug in the WordPress REST API. I am not going to write ab…

Similar

WordPress 4.7.2 post mortem

A few weeks ago, WordPress released version 4.7.2 to address several security vulnerabilities, including one critical one. This vulnerability allowed a remote, unauthorised attack to update web pages via the REST API. Since then, hundreds of thousands of ... (more…)

Read more »

WordPress as Static Site Generator

This is the second part of ‘a comprehensive guide to being really annoying on the internet’, an attempt to explain how this blog works. This is mainly just a technical explanation so I’d recommend reading the first part before getting mad at how boring th... (more…)

Read more »