poutine_hero's profile picture. Lead developer of Wordfence. Thoughts are my own.

Matthew Barry

@poutine_hero

Lead developer of Wordfence. Thoughts are my own.

Matthew Barry repostou

Rapidly transitioning to online learning has been challenging for schools. I’m excited to announce today that the ⁦@wordfence⁩ team is, effective immediately, offering free site cleaning & site security audits for K-12 Public Schools using WordPress. wordfence.com/blog/2021/01/a…


Matthew Barry repostou

WordPress developers should always escape output when developing for #WordPress. It is best practice & offers better & more secure code. WP has built in escaping functions for developers to use out of the box. In this thread lets take a look at some of these and how to use them.


Matthew Barry repostou

How do hackers exploit vulnerabilities in plugins? On Office Hours today, we'll show you how, and we'll demo a vulnerability not disclosed anywhere... yet. Join us live for the inside scoop! hubs.ly/H0tgPys0

wordfence's tweet card. Wordfence Office Hours: Exploiting Vulnerable Plugins

youtube.com

YouTube

Wordfence Office Hours: Exploiting Vulnerable Plugins


Matthew Barry repostou

So, @infosecchloe tried to live hack @wfScottMiller's WordPress blog on Tuesday during Wordfence Office Hours, and she got an unexpected surprise. Check it out here: youtu.be/lP4bqGgrGKE #WP #WordPress #infosec #cybersecurity #hacking #security #PHP #CSRF #exploits

wordfence's tweet card. Chloe gets a surprise while hacking WordPress

youtube.com

YouTube

Chloe gets a surprise while hacking WordPress


Matthew Barry repostou

Huge story from @infosecchloe via @wordfence. Vulnerability in Google's Site Kit gives any user on your site full access to Google Search Console, bypassing site ownership verification. wordfence.com/blog/2020/05/v…


Matthew Barry repostou

Check out @tcan1337 @kathyzant and @wfScottMiller doing a Wordfence Q&A and office hours right now at: us02web.zoom.us/webinar/regist…


Matthew Barry repostou

We're hiring for senior PHP developer & QA roles. Defiant is entirely remote, but looking for US-based applicants for these fast-paced & rewarding positions. Requirements & benefits listed on the job descriptions. Will we hear from you? hubs.ly/H0pQgSh0

wordfence's tweet image. We're hiring for senior PHP developer & QA roles. Defiant is entirely remote, but looking for US-based applicants for these fast-paced & rewarding positions. Requirements & benefits listed on the job descriptions. Will we hear from you? hubs.ly/H0pQgSh0

Matthew Barry repostou

Found another thing a while back.

Unpatched High-Severity Vulnerability in Widget Settings Importer/Exporter Plugin buff.ly/2K3Ew2G



Matthew Barry repostou

Vulnerability Patched in Import Export WordPress Users buff.ly/3aNAabn


Matthew Barry repostou

Site Takeover Campaign Exploits Multiple Zero-Day Vulnerabilities buff.ly/3977HwO


Matthew Barry repostou

Improper Access Controls in GDPR Cookie Consent Plugin buff.ly/31LxveU


Matthew Barry repostou

Periodic Reminder: When debugging, you must first accept that something you believe is true is not true. If everything you believed about this system were true, it would work. It doesn't, so you're wrong about something. This is a surprisingly common stumbling block for devs.


Matthew Barry repostou

Another week, another plugin with vulnerabilities responsibly disclosed and patched! Thanks to @infosecchloe and @poutine_hero for doing the work that you do! This one is big; 100,000+ installations.


Matthew Barry repostou

Sometimes the hardest part of programming is figuring out easiest way to do it


Matthew Barry repostou

Kudos to @poutine_hero for being an incredible developer, amazing co-worker, and for totally going over the top with this donation to OHSU in Alex Mills' name. You can read more about Alex at alex.blog You can learn more about the OHSU at ohsu.edu/foundation

ohsufoundation.org

OHSU Foundation: Helping Create a Healthier World

At the OHSU Foundation, we advance OHSU’s mission by igniting the power of philanthropy. Your generosity will change the people's lives.

After Matt Barry found a vulnerability in the SyntaxHighlighter Evolved plugin & responsibly disclosed it to @automattic, he was awarded a bug bounty. That bounty was donated to OHSU in memory of Alex Mills. Ethical hacking at its best; proud to work with @poutine_hero.



Matthew Barry repostou

Wow. @poutine_hero (Matt Barry) discovered a vuln in a plugin developed by the late Alex Mills, is awarded a bounty by Automattic and donated it to OHSU who treated Alex. Proud to work alongside people like Matt. Such a great guy! wordfence.com/blog/2019/10/s…


Matthew Barry repostou

After Matt Barry found a vulnerability in the SyntaxHighlighter Evolved plugin & responsibly disclosed it to @automattic, he was awarded a bug bounty. That bounty was donated to OHSU in memory of Alex Mills. Ethical hacking at its best; proud to work with @poutine_hero.

Stored XSS Patched in SyntaxHighlighter Evolved Plugin buff.ly/2pHGFtY



Loading...

Something went wrong.


Something went wrong.