Wordfence Research and News

Blog icon

Gravityscan Introduces Free Daily Security Monitoring With Trust Badge

Today our team is launching a very exciting program at Gravityscan: a free trust badge program for your website that comes with daily security monitoring.

Wordfence Scan Gets Faster and Smarter

Wordfence is highly effective at securing your website in part because it is tightly integrated with the WordPress API.

The WPSetup Attack: New Campaign Targets Fresh WordPress Installs

At Wordfence, we track millions of attacks from a wide variety of sources every day.

NGINX and PHP Malware Used in Petya/Nyetya Ransomware Attack

Author’s note: This is a technical blog post which I’m hoping server administrators and web hosting providers will find helpful.

Vulnerability Roundup: 3 Vulnerable WP Plugins and Update Your Joomla

It’s been a tough week for the WP Statistics plugin. Last Friday, Sucuri (now owned by GoDaddy) discovered a SQL injection vulnerability in the WP Statistics plugin version 12.0.7 and older.

PSA: Petya Ransomware Affecting Critical Systems Globally: Here’s What to Do.

Updated 3:19PM Pacific Time: A method to ‘vaccinate’ yourself against this ransomware variant has been found.

The 2017 WordPress Security Half-Time Report

2017 has been a remarkable year so far for Wordfence and our customers.

PSA: OneLogin Breached. Here’s What You Need to Do.

This is a public service announcement from Wordfence. We are sending this notice to the WordPress community due to the widespread nature and potential severity of this security issue.

Wordfence Launches WordPress Security Audit Service

This morning I am very excited to announce that Wordfence is officially launching a WordPress Security Audit service.

WordPress 4.7.5 Security Release – Immediate Update Recommended

A few hours ago WordPress abruptly released 4.7.5 which is a security release.