A few weeks ago there was a lot of drama around the WordPress Theme Review team’s decision to require all themes in the WordPress.org theme repository to use the customizer for theme options. Personally I think this is great, and I’ve actually been looking forward to it since last year, when the idea was first presented. It’s a great example of how the leadership in the WordPress project have used their influential positions to help improve the platform. WordPress.org fills a lot of roles, one of the biggest is distributing code in the form of plugins, themes, and even WordPress itself. Any change […]
Getting My Feet Soaked with a Mass WordPress Infection
Have you ever wondered what a mass WordPress infection looks like? All at once, a hundred thousand websites get blacklisted due to the swift, automated attacks from evil malware authors. This leaves a great number of business owners, developers, and system admins scrambling for solutions. Meanwhile, the companies that provide professional hack cleanup services are inundated with new requests for emergency assistance, all at once. These massive infections are impossible to plan for, especially if it’s your first day on the job. Come on in, the Water’s Fine It is Monday morning, December 15, 2014; the day I start my dream […]
Proposed Password Changes for WordPress 4.3
On Monday, Mark Jaquith confirmed that WordPress 4.3 will see an overhaul in the way passwords are generated. The changes will encourage WordPress users to strengthen their login credentials, making their websites more secure. A stronger password will also make your website less vulnerable to brute force attacks. The proposed updates focus on the way passwords are chosen, as well as changing some important default settings in the UI. Let’s take a quick look at the four main points coming out of the proposal: WordPress will generate strong passwords by default. You can override this setting and create your own password, […]
Ultimate Guide to WordPress eCommerce: Adding Products
Welcome to the big finale in our series on WordPress eCommerce. If you’ve been with us from the beginning, you have learned about the different types of eCommerce, some of the different shopping cart plugins available, and you’ve walked through all of the settings involved in launching an online store. In this final post we are going to learn all about how to add products to your online store. After all, what good is a store with no products? Types of products When it comes to eCommerce products, there’s thousands of different types of products, but when you look at it from a high level, […]
This Week In WordPress: 05/11/2015
Have a news tip or upcoming WordPress event you’d like to share? Write us at [email protected]. News Highlights: LoopConf Videos: Couldn’t make it to last week’s LoopConf? Great news, all 21 hours of talks are freely available online! The Trojan Emoji: Speaking of LoopConf, Andrew Nacin gave a fun and in-depth talk titled “Anatomy of a Critical Security Bug” in which he discusses a vulnerability fix that was added under the “guise of Emoji support.” DOM-Based XSS Vulnerability: Sucuri recently published info on a DOM-based Cross-Site Scripting (XSS) vulnerability that could affect any theme or plugin that uses an example.html file, including the Jetpack plugin and WordPress’s TwentyFifteen […]

8 Comments