WordPress and Annotum for Education, Science,Journal Publishing
4.7K views | +0 today
WordPress and Annotum for Education, Science,Journal Publishing
WordPress and Annotum for Education, Science,Professional Journal Publishing with multiple authors and peer-reviews as also Knol to WP Migration...
Curated by Gust MEES
Your new post is loading...
Your new post is loading...
Scooped by Gust MEES
Scoop.it!

'Critical' zero-day bug found in three popular WordPress plugins | #Update asap!!! | #CyberSecurity #Blogs

'Critical' zero-day bug found in three popular WordPress plugins | #Update asap!!! | #CyberSecurity #Blogs | WordPress and Annotum for Education, Science,Journal Publishing | Scoop.it
Outdated versions of three popular WordPress plugins suffer from a "critical" zero-day vulnerability that enables an attacker to take over a website.

The bug is a PHP object injection flaw that affects the following plugins: Appointments (versions prior to 2.2.2), Flickr Gallery (versions prior to 1.5.3), and RegistrationMagic-Custom Registration Forms (versions prior to 3.7.9.3).

Together, those plugins have a combined user base of over 21,000 WordPress customers. All three have already received a fix for the security issue, which is rated "Critical" with a CVSS rating of 9.8.

 

 Learn more / En savoir plus / Mehr erfahren:

 

http://www.scoop.it/t/wordpress-annotum-for-education-science-journal-publishing/?&tag=Cybersecurity

 

 

Gust MEES's insight:
Outdated versions of three popular WordPress plugins suffer from a "critical" zero-day vulnerability that enables an attacker to take over a website.

The bug is a PHP object injection flaw that affects the following plugins: Appointments (versions prior to 2.2.2), Flickr Gallery (versions prior to 1.5.3), and RegistrationMagic-Custom Registration Forms (versions prior to 3.7.9.3).

Together, those plugins have a combined user base of over 21,000 WordPress customers. All three have already received a fix for the security issue, which is rated "Critical" with a CVSS rating of 9.8.

 

 Learn more / En savoir plus / Mehr erfahren:

 

http://www.scoop.it/t/wordpress-annotum-for-education-science-journal-publishing/?&tag=Cybersecurity

 

 

No comment yet.
Scooped by Gust MEES
Scoop.it!

Over a million websites could be at risk from critical WordPress gallery plugin flaw | #CyberSecurity

Over a million websites could be at risk from critical WordPress gallery plugin flaw | #CyberSecurity | WordPress and Annotum for Education, Science,Journal Publishing | Scoop.it
NextGEN Gallery is an extraordinarily popular plugin for self-hosted WordPress websites, having been downloaded over 16.5 million times.

The software’s widespread popularity (it claims to have been “the industry’s standard WordPress gallery plugin” since 2007) makes it an seemingly obvious choice for website owners looking to add image galleries to their sites.

Researchers at Sucuri uncovered a severe SQL injection vulnerability in NextGEN Gallery’s code which could be used by a malicious attacker to steal sensitive information such as hashed passwords and WordPress secret keys:

 

Learn more / En savoir plus / Mehr erfahren:

 

http://www.scoop.it/t/wordpress-annotum-for-education-science-journal-publishing/?&tag=Cybersecurity

 

Gust MEES's insight:
NextGEN Gallery is an extraordinarily popular plugin for self-hosted WordPress websites, having been downloaded over 16.5 million times.

The software’s widespread popularity (it claims to have been “the industry’s standard WordPress gallery plugin” since 2007) makes it an seemingly obvious choice for website owners looking to add image galleries to their sites.

Researchers at Sucuri uncovered a severe SQL injection vulnerability in NextGEN Gallery’s code which could be used by a malicious attacker to steal sensitive information such as hashed passwords and WordPress secret keys:

 

Learn more / En savoir plus / Mehr erfahren:

 

http://www.scoop.it/t/wordpress-annotum-for-education-science-journal-publishing/?&tag=Cybersecurity

 

No comment yet.
Scooped by Gust MEES
Scoop.it!

Run WordPress SEO by Yoast on your website? You need to update it | CyberSecurity

Run WordPress SEO by Yoast on your website? You need to update it | CyberSecurity | WordPress and Annotum for Education, Science,Journal Publishing | Scoop.it
A serious vulnerability was found in one of the most popular WordPress plugins, and guess what? It got fixed really quickly. :) All that remains is for you to apply the update on your web server.
Gust MEES's insight:

A serious vulnerability was found in one of the most popular WordPress plugins, and guess what? It got fixed really quickly. :) All that remains is for you to apply the update on your web server.


No comment yet.
Scooped by Gust MEES
Scoop.it!

Five plugins that add essential WordPress features

Five plugins that add essential WordPress features | WordPress and Annotum for Education, Science,Journal Publishing | Scoop.it

WordPress is the most popular blogging tool available. And blogging isn't just for personal use now. It has turned into a great marketing tool that can help spread the word about your product or service. Naturally, if you decide to take on a blog for your company, you'll want to make sure it has as much in the way of features and flexibility as you can get. WordPress offers just that in the way of plugins.

 

Thousands of plugins are available, and "essential" is in the eye of the blogger. But I've rounded up five that I think are highly useful no matter what kind of blog you maintain.

 

Read more:

http://www.techrepublic.com/photos/five-plugins-that-add-essential-wordpress-features/6372566?tag=nl.e101

 

No comment yet.
Scooped by Gust MEES
Scoop.it!

Gefaktes Sicherheits-Plugin für WordPress im Umlauf | #CyberSecurity #Blogs #blogging 

Gefaktes Sicherheits-Plugin für WordPress im Umlauf | #CyberSecurity #Blogs #blogging  | WordPress and Annotum for Education, Science,Journal Publishing | Scoop.it
Von wegen Sicherheit: Unter dem Deckmantel eines legitimen WordPress-Plugin richtet X-WP-SPAM-SHIELD-PRO eine Backdoor auf Webseiten ein.

Wer auf seiner WordPress-Webseite das Plugin X-WP-SPAM-SHIELD-PRO installiert hat, sollte dieses schleunigst deinstallieren: Das Fake-Sicherheits-Plugin ist Malware und richtet unter anderem einen Fernzugriff für die Drahtzieher des Zusatzmoduls ein, warnen Sicherheitsforscher von Sucuri.

Die Betrüger missbrauchen dabei den Namen des legitimen Sicherheits-Plugins WP-SpamShield Anti-Spam, welches Spam von WordPress-Seiten fernhalten soll. X-WP-SPAM-SHIELD-PRO ist nicht im offiziellen Plugin-Bereich von WordPress zu finden. Es stammt aus einer von den Sicherheitsforschern nicht näher beschriebenen Quelle. Aus Sicherheitsgründen ist es ratsam, nur Plugins aus der offiziellen Quelle zu installieren.

 

Learn more / En savoir plus / Mehr erfahren:

 

http://www.scoop.it/t/wordpress-annotum-for-education-science-journal-publishing/?&tag=Cybersecurity

 

Gust MEES's insight:
Von wegen Sicherheit: Unter dem Deckmantel eines legitimen WordPress-Plugin richtet X-WP-SPAM-SHIELD-PRO eine Backdoor auf Webseiten ein.

Wer auf seiner WordPress-Webseite das Plugin X-WP-SPAM-SHIELD-PRO installiert hat, sollte dieses schleunigst deinstallieren: Das Fake-Sicherheits-Plugin ist Malware und richtet unter anderem einen Fernzugriff für die Drahtzieher des Zusatzmoduls ein, warnen Sicherheitsforscher von Sucuri.

Die Betrüger missbrauchen dabei den Namen des legitimen Sicherheits-Plugins WP-SpamShield Anti-Spam, welches Spam von WordPress-Seiten fernhalten soll. X-WP-SPAM-SHIELD-PRO ist nicht im offiziellen Plugin-Bereich von WordPress zu finden. Es stammt aus einer von den Sicherheitsforschern nicht näher beschriebenen Quelle. Aus Sicherheitsgründen ist es ratsam, nur Plugins aus der offiziellen Quelle zu installieren.

 

Learn more / En savoir plus / Mehr erfahren:

 

http://www.scoop.it/t/wordpress-annotum-for-education-science-journal-publishing/?&tag=Cybersecurity

 

No comment yet.
Scooped by Gust MEES
Scoop.it!

Popular WordPress plugins found vulnerable to XSS attacks | UPDATE asap!!!

Popular WordPress plugins found vulnerable to XSS attacks | UPDATE asap!!! | WordPress and Annotum for Education, Science,Journal Publishing | Scoop.it

Vulnerable websites can be exploited via XSS to steal user accounts, change settings or phish passwords from unsuspecting users.

In fact, XSS flaws are one of the most commonly encountered security flaws found on websites.


Patching is obviously sensible and should be undertaken at the earliest opportunity, but never forget that additional layers of protection can go beyond patches – and perhaps be proactive in defending your systems from abuse during the time when no official fixes are available.

Gust MEES's insight:

Vulnerable websites can be exploited via XSS to steal user accounts, change settings or phish passwords from unsuspecting users.

In fact, XSS flaws are one of the most commonly encountered security flaws found on websites.


Patching is obviously sensible and should be undertaken at the earliest opportunity, but never forget that additional layers of protection can go beyond patches – and perhaps be proactive in defending your systems from abuse during the time when no official fixes are available.


No comment yet.
Scooped by Gust MEES
Scoop.it!

WordPress Plugins

WordPress Plugins | WordPress and Annotum for Education, Science,Journal Publishing | Scoop.it

Plugins can extend WordPress to do almost anything you can imagine. In the directory you can find, download, rate, and comment on all the best plugins the WordPress community has to offer.

 

21,235 PLUGINS, 345,801,245 DOWNLOADS, AND COUNTING

 

Read more:

http://wordpress.org/extend/plugins/

 

No comment yet.
Rescooped by Gust MEES from Content Curation World
Scoop.it!

Curate Your Content From Within WordPress: PageOne Curator

Robin Good: PageOne Curator is a new plugin software for WordPress which allows anyone to easily integrate images, video, news and other content coming from other sources.

 

PageOne Curator provides funciotnalities to easily tap into selected RSS feeds and to search directly the major content and multimedia search engines out there.

 

Pulling in content is as simple as clicking a button, or if you want to have full control over what you excerpt as simple as as selecting and copying and pasting what you need.

 

The new software is in beta and is accessible for now by invitations only. 

 

You can sign-up for a spot or get more info: http://www.pageonecurator.com/ 


Via Robin Good
Marcello Cosa's comment, March 31, 2012 7:26 AM
Grande Robin! Me lo consigli per il mio futuro sito, visto che lo vorrei realizzare su Wordpress?