Remote
I like trains, weather, classic rock music, comedy, and being WYSIWYG. I am the engineer of http://wpmainline.com where I write and talk about WordPress.
0
Followers
0
Following
6
Posts
Joined January 26, 2023
Posts
This vulnerability is OMGWTFBBQ level of seriousness. wp2shell is a pre-authentication RCE in WordPress Core. No login, no plugins, no preconditions. An anonymous attacker can hit a stock install and take over the site. The worst WP security vulnerability in a long time. Update!
Open post
It's Friday. What better way to celebrate than making sure your WordPress sites are updated to 7.0.2 to implement some major security fixes https://wordpress.org/news/2026/07/wordpress-7-0-2-release/
0
1
0
0
Open post
WP Beacon tracks every plugin on wordpress dot org — its authors, committers, and releases — to flag ownership transfers, dormant-then-activated takeovers, and release patterns that match known attacks. https://wpbeacon.io/
4
0
6
0
Open post
Wellp, we used up our last lifeline today. After this, if I don't find stable employment soon, we'll likely lose the house, or I'll need to file for bankruptcy.
So if you have any WordPress work, see any gigs I might be good for, inside or OUTSIDE of WordPress, send em my way
0
0
0
0
Open post
Replying to
@shawnhooper@fosstodon.org
@shawnhooper@fosstodon.org @stevegrunwell@phpc.social I miss you too or two lol
1
0
0
0
Remote instance
wptoots.social
Open on original server