Artwork

内容由Jason Tucker, Sé Reed, and Jason Cosper提供。所有播客内容(包括剧集、图形和播客描述)均由 Jason Tucker, Sé Reed, and Jason Cosper 或其播客平台合作伙伴直接上传和提供。如果您认为有人在未经您许可的情况下使用您的受版权保护的作品,您可以按照此处概述的流程进行操作https://zh.player.fm/legal
Player FM -播客应用
使用Player FM应用程序离线!

EP27 – WordPressing with Abandon(ware)

45:34
 
分享
 

已归档的系列专辑 ("不活跃的收取点" status)

When? This feed was archived on January 03, 2025 18:05 (3M ago). Last successful fetch was on November 28, 2024 11:13 (4M ago)

Why? 不活跃的收取点 status. 我们的伺服器已尝试了一段时间,但仍然无法截取有效的播客收取点

What now? You might be able to find a more up-to-date version using the search function. This series will no longer be checked for updates. If you believe this to be in error, please check if the publisher's feed link below is valid and contact support to request the feed be restored or if you have any other concerns about this.

Manage episode 362578167 series 2794575
内容由Jason Tucker, Sé Reed, and Jason Cosper提供。所有播客内容(包括剧集、图形和播客描述)均由 Jason Tucker, Sé Reed, and Jason Cosper 或其播客平台合作伙伴直接上传和提供。如果您认为有人在未经您许可的情况下使用您的受版权保护的作品,您可以按照此处概述的流程进行操作https://zh.player.fm/legal

In this episode of WPwatercooler’s Dev Branch, we’ll be joined by Robert Rowley, a Security Expert, to discuss a critical aspect of building sites with WordPress — plugins. Specifically, we’ll delve into the topic of abandoned plugins and the risks that they can pose to website security.

We will spend some time exploring what happens to WordPress plugins that are no longer maintained by their developers and how they can be leveraged by attackers. We’ll also get into how some of these plugins can be used to add backdoors that can help attackers gain unauthorized access and compromise a site’s integrity.

Finally, we’ll go over the options available to site developers when they find themselves face to face with an abandoned plugin on their site. One option is to adopt the plugin and update it to ensure its continued functionality and security. Another is to fork the plugin, update it, and add new features, building of off the original code and making it your own.

Join us for this important conversation about orphaned WordPress plugins learn and how to keep your website safe from potential security threats.

Links

Chapters:

00:02:46 Abandoned WordPress plugins. 00:06:57 Abandoned plugin exploitation. 00:10:46 Abandoned plugins spike monitoring. 00:12:23 Plugin monitoring for improvements. 00:16:05 Cutting off outdated plugins. 00:19:20 Plugin review team struggles. 00:23:50 Moving towards GitHub. 00:27:33 Open source psycho pumps. 00:29:41 WordPress communication issues. 00:33:19 Plugin dependencies and updates. 00:38:51 Plugin adoption and abandonment. 00:40:24 Plugin security and monitoring. 00:44:10 Old email addresses and AI.

Show Notes:

https://wpwatercooler.com/devbranch/ep27-wordpressing-with-abandonware/

  continue reading

35集单集

Artwork
icon分享
 

已归档的系列专辑 ("不活跃的收取点" status)

When? This feed was archived on January 03, 2025 18:05 (3M ago). Last successful fetch was on November 28, 2024 11:13 (4M ago)

Why? 不活跃的收取点 status. 我们的伺服器已尝试了一段时间,但仍然无法截取有效的播客收取点

What now? You might be able to find a more up-to-date version using the search function. This series will no longer be checked for updates. If you believe this to be in error, please check if the publisher's feed link below is valid and contact support to request the feed be restored or if you have any other concerns about this.

Manage episode 362578167 series 2794575
内容由Jason Tucker, Sé Reed, and Jason Cosper提供。所有播客内容(包括剧集、图形和播客描述)均由 Jason Tucker, Sé Reed, and Jason Cosper 或其播客平台合作伙伴直接上传和提供。如果您认为有人在未经您许可的情况下使用您的受版权保护的作品,您可以按照此处概述的流程进行操作https://zh.player.fm/legal

In this episode of WPwatercooler’s Dev Branch, we’ll be joined by Robert Rowley, a Security Expert, to discuss a critical aspect of building sites with WordPress — plugins. Specifically, we’ll delve into the topic of abandoned plugins and the risks that they can pose to website security.

We will spend some time exploring what happens to WordPress plugins that are no longer maintained by their developers and how they can be leveraged by attackers. We’ll also get into how some of these plugins can be used to add backdoors that can help attackers gain unauthorized access and compromise a site’s integrity.

Finally, we’ll go over the options available to site developers when they find themselves face to face with an abandoned plugin on their site. One option is to adopt the plugin and update it to ensure its continued functionality and security. Another is to fork the plugin, update it, and add new features, building of off the original code and making it your own.

Join us for this important conversation about orphaned WordPress plugins learn and how to keep your website safe from potential security threats.

Links

Chapters:

00:02:46 Abandoned WordPress plugins. 00:06:57 Abandoned plugin exploitation. 00:10:46 Abandoned plugins spike monitoring. 00:12:23 Plugin monitoring for improvements. 00:16:05 Cutting off outdated plugins. 00:19:20 Plugin review team struggles. 00:23:50 Moving towards GitHub. 00:27:33 Open source psycho pumps. 00:29:41 WordPress communication issues. 00:33:19 Plugin dependencies and updates. 00:38:51 Plugin adoption and abandonment. 00:40:24 Plugin security and monitoring. 00:44:10 Old email addresses and AI.

Show Notes:

https://wpwatercooler.com/devbranch/ep27-wordpressing-with-abandonware/

  continue reading

35集单集

所有剧集

×
 
Loading …

欢迎使用Player FM

Player FM正在网上搜索高质量的播客,以便您现在享受。它是最好的播客应用程序,适用于安卓、iPhone和网络。注册以跨设备同步订阅。

 

快速参考指南

边探索边听这个节目
播放