Disable XML-RPC to prevent your site from attacks
I pretty sure that you all have seen the file name xmlrpc.php in the root folder of WordPress source pack. XML-RPC is a script that was set in active as default since WordPress version 3.5. It
I pretty sure that you all have seen the file name xmlrpc.php in the root folder of WordPress source pack. XML-RPC is a script that was set in active as default since WordPress version 3.5. It
Everybody know, Apache server is most popular server type because its simple and it was supported by a very motivate community. But, there is another web server type that has better efficiency and quite stable
I bet you were announced about 0-day bug in WordPress 4.7.4 (CVE-2017-8295) – that may allow hacker take over administrator’s password – by reset admin’s password without email access permission.
For more details about this vulnerable,
You’re running a WordPress site and you think your site is clean and unhackable. Maybe, but unhackable site doesn’t exist. You someday may found that your site – somehow – has been infected by malware