#wordpress

[ follow ]
Information security
fromTechRepublic
23 hours ago

Malicious WordPress Plugins with Backdoors Compromise Thousands of Websites

Malicious WordPress plugins with backdoors compromised thousands of websites, demonstrating a supply-chain attack and leading to their permanent removal.
#cybersecurity
fromTNW | Apps
2 days ago
Information security

30+ WordPress plugins bought on Flippa and backdoored in supply chain attack

fromTechzine Global
10 months ago
Marketing tech

DNS analysis reveals links between VexTrio and WordPress hackers

WordPress hackers are collaborating with VexTrio, indicating a coordinated approach among cybercriminals.
DNS telemetry analysis reveals a complex network of criminal collaboration affecting cybersecurity.
fromThe Hacker News
10 months ago
Web development

Over 100,000 WordPress Sites at Risk from Critical CVSS 10.0 Vulnerability in Wishlist Plugin

A critical unpatched vulnerability in the TI WooCommerce Wishlist plugin allows unauthenticated attackers to upload arbitrary files.
Information security
fromTNW | Apps
2 days ago

30+ WordPress plugins bought on Flippa and backdoored in supply chain attack

A significant WordPress plugin compromise involved a backdoor planted in over 30 plugins, exposing a critical vulnerability in plugin ownership transfer and update mechanisms.
Web development
fromThe Hacker News
10 months ago

Over 100,000 WordPress Sites at Risk from Critical CVSS 10.0 Vulnerability in Wishlist Plugin

A critical unpatched vulnerability in the TI WooCommerce Wishlist plugin allows unauthenticated attackers to upload arbitrary files.
#plugins
Information security
fromTechCrunch
2 days ago

Someone planted backdoors in dozens of WordPress plugins used in thousands of websites | TechCrunch

Dozens of WordPress plugins were compromised by a backdoor, distributing malicious code after a change in ownership of the plugin maker.
Information security
fromTechCrunch
2 days ago

Someone planted backdoors in dozens of WordPress plugins used in thousands of websites | TechCrunch

Dozens of WordPress plugins were compromised by a backdoor, distributing malicious code after a change in ownership of the plugin maker.
Web development
fromBootstrap Creative
4 days ago

WordPress to HubSpot Migration Cost Calculator & Checklist - Bootstrap Creative

Understanding costs and technical steps is crucial for a successful WordPress to HubSpot migration to protect SEO rankings.
#emdash
fromInfoQ
1 week ago
Web frameworks

Cloudflare Introduces EmDash: TypeScript CMS Positioned as WordPress Successor

Web design
fromThe Verge
1 week ago

Cloudflare made a WordPress for AI agents

EmDash aims to address core issues in WordPress by enabling AI control over websites, sparking controversy within the WordPress community.
Web frameworks
fromInfoQ
1 week ago

Cloudflare Introduces EmDash: TypeScript CMS Positioned as WordPress Successor

EmDash is a new open-source CMS by Cloudflare, designed to enhance security and scalability compared to WordPress.
Information security
fromThe Hacker News
1 week ago

Backdoored Smart Slider 3 Pro Update Distributed via Compromised Nextend Servers

Unknown threat actors hijacked the Smart Slider 3 Pro plugin update system to distribute a backdoored version affecting WordPress and Joomla users.
#freelancing
fromSpeckyboy Design Magazine
1 week ago
Online Community Development

How WordPress Agencies Can Give Back to the Community - Speckyboy

WordPress offers freelancers and agencies a sustainable career path while fostering community engagement and growth opportunities.
fromSpeckyboy Design Magazine
10 months ago
Web design

Tips for Hosting Your Client's WordPress Website - Speckyboy

Freelancers can gain recurring revenue by providing web hosting services, but it comes with significant responsibilities.
Information security
fromSecurityWeek
1 week ago

Hackers Targeting Ninja Forms Vulnerability That Exposes WordPress Sites to Takeover

A critical vulnerability in Ninja Forms allows file uploads that could lead to remote code execution on affected websites.
fromInfoWorld
1 week ago

The winners and losers of AI coding

Legacy software, often described as 'big balls of mud,' has accumulated over decades, becoming difficult to maintain and understand. These systems rely on extensive teams to function, despite their outdated technology.
Software development
Web development
fromSpeckyboy Design Magazine
1 week ago

How to Use Remote Data Blocks to Display Google Sheets Data in WordPress - Speckyboy

Remote Data Blocks plugin simplifies fetching and displaying external data in WordPress from services like Google Sheets and Airtable.
fromSpeckyboy Design Magazine
1 week ago

How To Protect Media Files Uploaded to WordPress - Speckyboy

The predictable file structure of the content management system makes it easy to guess where a file is stored, leading to potential leaks, as demonstrated by a journalist accessing a leaked UK budget document.
Privacy technologies
Web development
fromComputerworld
2 weeks ago

Cloudflare's new CMS is not a WordPress killer, it's a WordPress alternative

Cloudflare's EmDash is positioned as a secure, flexible alternative to WordPress for modern website building.
#ai
fromTechCrunch
3 weeks ago
Web development

WordPress.com now lets AI agents write and publish posts, and more | TechCrunch

WordPress.com now allows AI agents to draft, edit, and manage content on websites, potentially transforming web content creation.
Web development
fromTechCrunch
3 weeks ago

WordPress.com now lets AI agents write and publish posts, and more | TechCrunch

WordPress.com now allows AI agents to draft, edit, and manage content on websites, potentially transforming web content creation.
#ai-assistant
fromThe Verge
1 month ago
Artificial intelligence

WordPress's new AI assistant will let users edit their sites with prompts

fromTechCrunch
1 month ago
Artificial intelligence

WordPress.com adds an AI Assistant that can edit, adjust styles, create images, and more | TechCrunch

fromThe Verge
1 month ago
Artificial intelligence

WordPress's new AI assistant will let users edit their sites with prompts

fromTechCrunch
1 month ago
Artificial intelligence

WordPress.com adds an AI Assistant that can edit, adjust styles, create images, and more | TechCrunch

Web development
fromEngadget
1 month ago

WordPress adds an AI assistant

WordPress.com added a persistent AI assistant for site editing, media creation, and writing assistance, integrated into the editor and media library; available on paid plans.
fromSpeckyboy Design Magazine
1 month ago

Why the Personal Touch Matters to WordPress Agencies of All Sizes - Speckyboy

WordPress plays a key role in this strategy. The content management system (CMS) and its ecosystem are vehicles for helping us adapt to what's next. Features like connecting to third-party APIs and implementing artificial intelligence (AI) come to mind. It all adds up to an exciting time to build websites and related applications. However, it's possible to go a little too far with technology - particularly when it comes to customer service.
Web development
fromSitePoint Forums | Web Development & Design Community
2 months ago

How to connect GTM and lat,lon within WordPress

As I understand, we have GTM credentials and connects website using the default scripts. When I try to connect the API and GTM, how to put credentials into WordPress to show weather conditions? <script> ! function(e, t, a, n) { e[n] = e[n] || [], e[n].push({ "gtm.start": (new Date).getTime(), event: "gtm.js" }), n = t.getElementsByTagName(a)[0], (a = t.createElement(a)).async = !0, a.src = "https://www.googletagmanager.com/gtm.js?id=GTM-XYZ", n.parentNode.insertBefore(a, n) }(window, document, "script", "dataLayer"); </script>
Web development
Artificial intelligence
fromTechCrunch
2 months ago

It just got easier for Claude to check in on your WordPress site | TechCrunch

WordPress' new Claude connector lets site owners grant read-only access to back-end data for Anthropic's chatbot, with user-controlled permissions and revocable access.
Web development
fromTech Times
2 months ago

Build Website Profits: Complete Website Monetization Guide to Passive Income

Building a properly targeted, well-hosted website on the right platform can produce passive income through ads, affiliates, product sales, services, or subscriptions.
#css
fromThedrum
2 months ago

Aston Darby: Improving site speed through development optimisations

Speed is critical to the way users interact with websites. Google research shows that bounce rate increases dramatically the longer a site takes to load on mobile. Those that have a 3-second delay risk an increase of 32%, while those that take up to 10 seconds can expect to see it increase by 123%. When we were hired by investment firm Aston Darby to help with their digital marketing, the slowness of their site was one of the first issues we identified. When we first started with them, the site took around seven seconds to load. By the time we'd implemented our optimisations, that figure dropped to just three seconds.
fromSitePoint Forums | Web Development & Design Community
2 months ago

WP_Query Pagination Breaking on Custom Loops

Hi all, I'm building a WordPress site for live football streaming schedules and highlight posts similar in style to futemaxhd.co, and I'm having trouble with pagination on custom query loops. When I use WP_Query for custom post types, the pagination breaks (404 on page 2). I've checked permalinks and rewrite rules but nothing seems to fix it. Any tips on getting pagination to work correctly with custom loops in WordPress?
Web development
fromVue.js Jobs
2 months ago

Front-End Website Developer at Scale Army Careers - VueJobs

Remote Front-End Developer role requires building responsive, high-performance VueJS, TailwindCSS, WordPress and jQuery websites while working U.S. business hours.
#laravel
Information security
fromThe Hacker News
3 months ago

Critical WordPress Modular DS Plugin Flaw Actively Exploited to Gain Admin Access

Unauthenticated privilege escalation in Modular DS (CVE-2026-23550) allows attackers to obtain administrator access and potentially fully compromise WordPress sites prior to version 2.5.2.
Software development
fromZDNET
3 months ago

How I used ChatGPT's $20 Plus plan to fix a nightmare bug - fast

A $20 ChatGPT Plus subscription plus Codex can diagnose and fix real-world WordPress plugin bugs and help draft support responses, saving developer time.
#multisite
Software development
fromSpeckyboy Design Magazine
3 months ago

The 6 Best Developer Friendly WordPress Plugins for Performance & Diagnostics - Speckyboy

WordPress developer plugins provide debugging, performance monitoring, temporary utilities, and tools to prevent accidental emails, aiding developers in troubleshooting and site optimization.
fromForbes
3 months ago

Small Business Technology News: WordPress Launches Plugin To Help Improve SEO For AI Searching

A new WordPress plugin called LovedByAIhas launched to help small businesses get found in the growing world of AI-powered search. As AI "answer engines" like ChatGPT and Gemini surpass 700 million weekly users, traditional SEO alone isn't enough for visibility in AI responses. LovedByAI is designed to help small businesses with gap analysis to find where site content isn't structured for AI.
Marketing tech
Web development
fromSitePoint Forums | Web Development & Design Community
3 months ago

How to show only a user's own questions, replies, and bio-without global content or sidebars-on a dedicated user profile page

Fully isolate the /askit/@username/ route by intercepting requests early (rewrite/query_var), forcing a custom template via template_include or template_redirect, preventing further theme rendering, clearing/adjusting global query flags, and removing or bypassing any theme/plugin output hooks that append the global Q&A layout.
Information security
fromThe Hacker News
4 months ago

Sneeit WordPress RCE Exploited in the Wild While ICTBroadcast Bug Fuels Frost Botnet Attacks

A critical RCE (CVE-2025-6389) in Sneeit Framework WordPress plugin (≤8.3) is actively exploited; update to 8.4 to mitigate.
fromSpeckyboy Design Magazine
4 months ago

Do Built-From-Scratch WordPress Themes Still Make Sense? - Speckyboy

WordPress boasts an unrivaled flexibility. There's an opportunity to customize every component of your website. That certainly applies to themes. For years, some developers opted to build custom themes from (or near) scratch. Whether starting from a blank screen or a starter framework like Underscores (rest in peace), the goal is to craft a theme that suits your project. This approach predates the Block Editor, which was introduced way back in WordPress 5.0.
Web development
#telex
fromTechCrunch
4 months ago
Web development

WordPress's vibe-coding experiment, Telex, has already been put to real-world use | TechCrunch

fromTechCrunch
4 months ago
Web development

WordPress's vibe-coding experiment, Telex, has already been put to real-world use | TechCrunch

fromThe Hacker News
4 months ago

WordPress King Addons Flaw Under Active Attack Lets Hackers Make Admin Accounts

A critical security flaw impacting a WordPress plugin known as King Addons for Elementor has come under active exploitation in the wild. The vulnerability, CVE-2025-8489 (CVSS score: 9.8), is a case of privilege escalation that allows unauthenticated attackers to grant themselves administrative privileges by simply specifying the administrator user role during registration. It affects versions from 24.12.92 through 51.1.14. It was patched by the maintainers in version 51.1.35 released on September 25, 2025. Security researcher Peter Thaleikis has been credited with discovering and reporting the flaw. The plugin has over 10,000 active installs.
Information security
UK politics
fromTheregister
4 months ago

UK budget leak blamed on misconfigured WordPress plugin

Misconfigured WordPress plugin and server settings caused premature public access to OBR's unpublished budget, exposing documents and prompting an investigation.
fromeLearning
4 months ago

Using a Presentation Clicker with Captivate Classic SCORM File - eLearning

I've imported a powerpoint into Captivate Classic in order to create a clickable 'chapter menu' for people to be able to jump to different sections of the training material. The SCORM File is then embedded into a webpage (WordPress) for people to be able to go to and present directly from the webpage. At the moment I have a click box overlay on each slide to progress to the next slide,
Online learning
fromSpeckyboy Design Magazine
4 months ago

The 7 Best WordPress Plugins for Blocking Spam in 2025 - Speckyboy

It seems like everyone has a spam story or two to tell. And we're not talking about in a lifetime. No, spam is an everyday nuisance and something we live with. The problem impacts every corner of the web. Sure, it litters social networks and enterprise applications. But even the smallest websites are bombarded with phony comments, form submissions, user registrations, and e-commerce orders. This hurts the user experience and makes life miserable for site owners.
Information security
fromNew Relic
4 months ago

Unleashing the Power of Monitoring: Master Your WordPress with New Relic

WordPress powers countless websites across various domains, offering incredible versatility. This Content Management System (CMS) is the undisputed leader in the CMS market, powering an impressive 43.6% of all websites globally, according to these statistics. With over 810 million websites built on the platform and hundreds more launching daily (500+), its adoption continues to surge. This widespread use gives WordPress a massive 62% CMS market share, significantly outpacing its rivals.
DevOps
#web-hosting
fromZDNET
9 months ago
Web development

BlueHost review: An easy way to get started with web hosting, but mixed performance

fromZDNET
9 months ago
Web development

BlueHost review: An easy way to get started with web hosting, but mixed performance

E-Commerce
fromSpeckyboy Design Magazine
5 months ago

Should Your Agency Focus on WooCommerce Projects? - Speckyboy

Focusing a WordPress agency on WooCommerce offers extensive e-commerce flexibility, growing extensions and AI potential, strong revenue opportunities, and specific scaling and support challenges.
fromSpeckyboy Design Magazine
5 months ago

Use AI to Enhance - Not Replace - Your WordPress Expertise - Speckyboy

It's amazing to see how quickly web developers have adopted artificial intelligence (AI) apps. Many have added this technology to their workflow and haven't looked back. There are pros and cons to this seismic industry shift. On the bright side, AI speeds up the development process. We don't have to spend hours poring over WordPress documentation. Instead, we explain our coding needs in plain language. AI helps us build new things from scratch and troubleshoot existing code.
Web development
fromTechzine Global
5 months ago

Hackers exploit vulnerability in JobMonster WordPress theme

Hackers are actively exploiting a serious security vulnerability in the popular JobMonster WordPress theme. The vulnerability allows attackers to take over administrator accounts under specific circumstances, giving them complete control over affected websites. The vulnerability, registered as CVE-2025-5397, received a risk score of 9.8 out of 10. The problem is present in all versions of the theme up to and including 4.8.1.
Information security
fromSearch Engine Roundtable
5 months ago

Google's John Mueller On Best Content Management Systems For SEO

What part of SEO would be different from any of these CMSs vs WP? They make HTML, it's crawlable. CMSs have evolved a lot since the early days; it's no longer 2018 where some of these used JS or Flash (though those kinds of sites were interesting in their own ways too :-)). There's also managed WP hosting. Anyway, from my POV for the average content-y site, there's no fundamental SEO difference between mainstream CMSs, even static hosting with modern frameworks is fine.
Online marketing
Web development
fromSpeckyboy Design Magazine
5 months ago

How to Resolve Pain Points in Your Client's WordPress Workflow - Speckyboy

Design and development choices in WordPress significantly affect client workflows, so prioritize streamlined backend workflows and integrated plugins to reduce friction.
Information security
fromTheregister
5 months ago

Xubuntu website downloads section gets malware

Xubuntu.org downloads briefly hosted a compromised zip containing a Windows executable designed to steal cryptocurrency, with no confirmed thefts reported so far.
Web design
fromBusiness Matters
6 months ago

The Hidden Power of Expert WordPress Website Design

A professionally designed, performance-focused WordPress website converts first impressions into customers by improving design, responsiveness, SEO, and brand-aligned user experience.
Information security
fromThe Hacker News
6 months ago

Hackers Exploit WordPress Sites to Power Next-Gen ClickFix Phishing Attacks

Attackers inject malicious JavaScript into WordPress theme files to load external scripts that redirect visitors via a traffic-distribution system while mimicking Cloudflare assets.
Writing
frombeehiiv Blog
6 months ago

The Best Website Builder for Authors in 2025

Authorship requires claiming and sharing work via a reliable platform; beehiiv simplifies audience growth, monetization, and site maintenance for authors.
fromeLearning Industry
7 months ago

LearnDash LMS Pricing Plans And Costs In 2025: Which Plan Is Right For You?

Due to its complexity, any eLearning website requires a comprehensive management system for seamless operations. Since there are many tasks involved, from managing new and existing learners to hosting online courses, keeping up with everything can become time-consuming and nearly impossible. So, you will need a robust Learning Management System (LMS) to effectively manage and create courses. LearnDash is a top-tier LMS specifically designed for WordPress websites, aimed at enhancing learning programs for anyone looking to offer them, whether for entrepreneurs or universities.
Online learning
#website-builder
Web development
fromTechRadar
8 months ago

Wix vs WordPress: Which website builder is better for small business?

Wix excels in usability and built-in features, while WordPress.com offers deeper customization through plugins.
Privacy technologies
fromZDNET
9 months ago

How I used ChatGPT to analyze, debug, and rewrite a broken plugin from scratch - in an hour

Website security is crucial, and vulnerabilities in plugins pose significant risks.
Privacy technologies
fromZDNET
9 months ago

How I used ChatGPT to quickly fix a critical open-source plugin - without touching a line of code

Disabling a security plugin due to vulnerabilities led to a significant risk of registration spam on the website.
#tumblr
fromSpeckyboy Design Magazine
9 months ago

10 Best Free Landing Page Themes for WordPress in 2025 - Speckyboy

Landing pages are key tools for marketers, designed to introduce products and boost conversions, while the right WordPress theme simplifies the building process.
Web design
Web development
fromSitepoint
9 months ago

Droip Review: Why You Should Choose Droip Over Traditional WordPress Page Builders in 2025 - SitePoint

Traditional WordPress page builders are restrictive and outdated, lacking modern design flexibility and functionality needed for innovative website creation.
fromTechRadar
9 months ago

What Is WordPress? Everything a beginner needs to know

WordPress is a popular and free content management system with a page builder that lets you build and manage websites with zero coding experience.
Web design
Web design
fromSpeckyboy Design Magazine
10 months ago

Learn How to Build a WordPress Block Theme Style Variation - Speckyboy

WordPress block themes empower users with coding-free design flexibility.
Creating custom style variations is a quick and straightforward process in the Site Editor.
fromFast Company
10 months ago

WordPress veterans launch FAIR project to tackle security and control concerns

In October, when Automattic took over the slug of WP Engine's product within the ecosystem, we received phone calls from the chief legal counsels of some of our clients... saying, 'this is a supply chain security issue.'
Online Community Development
Web design
fromSpeckyboy Design Magazine
10 months ago

How to Add Custom Style Variations to WordPress Blocks - Speckyboy

Custom styles for WordPress blocks allow personalized design and uniformity across websites.
Creating custom block styles is user-friendly and highly extensible in WordPress.
Marketing tech
fromTechCrunch
10 months ago

Automattic says it will start contributing to WordPress again after pause | TechCrunch

Automattic resumes contributions to the WordPress project after a temporary pause, reaffirming its commitment to democratizing publishing.
#ai-development
Artificial intelligence
fromTechzine Global
10 months ago

WordPress introduces AI Team for open source innovation

WordPress has formed a new AI Team to centralize AI development within its open source community.
The team will focus on a plugin-first strategy to accelerate AI projects.
UX design
fromMedium
10 months ago

CSS Grid with Galaxy layout: now available in Figma

CSS Grid transforms web design by enabling complex layouts easily, enhancing flexibility and responsiveness for varied screen sizes.
[ Load more ]