this post was submitted on 04 Sep 2026
17 points (94.7% liked)

Cybersecurity

10531 readers
46 users here now

c/cybersecurity is a community centered on the cybersecurity and information security profession. You can come here to discuss news, post something interesting, or just chat with others.

THE RULES

Instance Rules

Community Rules

If you ask someone to hack your "friends" socials you're just going to get banned so don't do that.

Learn about hacking

Hack the Box

Try Hack Me

Pico Capture the flag

Other security-related communities !databreaches@lemmy.zip !netsec@lemmy.world !securitynews@infosec.pub !cybersecurity@infosec.pub !pulse_of_truth@infosec.pub

Notable mention to !cybersecuritymemes@lemmy.world

founded 3 years ago
MODERATORS
top 1 comments
sorted by: hot top controversial new old
[–] ohshit604@lemmy.halstead.host 1 points 1 day ago* (last edited 1 day ago)

A high-severity vulnerability in the All-in-One WP Migration and Backup WordPress plugin exposes over 3 million websites to remote code execution (RCE) attacks

Probably a dumb question, but couldn’t they just use this exploit to remotely patch itself?

Edit; after a quick thought, I suppose Wordpress instances don’t phone home so Defiant has no idea who has a Wordpress instance running and who doesn’t.