Vladimir Smitka: WordPress through the bad guys’ glassed

Continue the discussion

Published

December 30, 2019

Vladimír will give a 10-minute preview of common but not often-mentioned mistakes he saw during security scans of WordPress sites, specifically: Username and email leaking, full path disclosures, accessible backups, open .git repositories and DoS capable endpoints. He will also provide tips on how to reduce risks, where it is worth restricting access, how to enable Bcrypt password hashing and 2FA, and what configuration directives you need to check.

Rate this:

Event

WordCamp Europe 2019 41

Speakers

Vladimír Smitka 7

Tags

Security 302

Language

English 10531

Download
MP4: Low, Med, High, Original
OGG: Low
Subtitles
Subtitle this video →
Producer