{"id":4089,"date":"2017-02-10T17:28:14","date_gmt":"2017-02-10T17:28:14","guid":{"rendered":"https:\/\/www.register365.com\/blog\/?p=4089"},"modified":"2019-11-14T15:24:37","modified_gmt":"2019-11-14T15:24:37","slug":"wordpress-vulnerability-leads-compromised-sites","status":"publish","type":"post","link":"https:\/\/www.register365.com\/blog\/wordpress-vulnerability-leads-compromised-sites\/","title":{"rendered":"WordPress vulnerability leads to compromised sites"},"content":{"rendered":"<p>WordPress recently confirmed a security flaw has existed in its WordPress blogging software since the end of 2016.<\/p>\n<p>The bug has affected tens of thousands of websites, specifically WordPress blogs and news of the vulnerability continues to spread via popular sites such as <a href=\"http:\/\/www.bbc.co.uk\/news\/technology-38930428\" target=\"_blank\" rel=\"noopener noreferrer\">BBC News<\/a> and many tech websites too.<\/p>\n<p>Not only does this mean WordPress sites can be compromised, but it also means the vulnerability can potentially be used as an entry point to take over the whole WordPress website. To date the most common type of compromise has been defacing the most recent blog post.<\/p>\n<h3>What should you do if you&#8217;re concerned about your own WordPress website?<\/h3>\n<p>WordPress has since patched the vulnerability, which was released on 26th January 2017, however many site owners do not log in to their WordPress website frequently and therefore usually become aware of their WordPress website having become compromised before they learn about the newest\/preventative version of WordPress &#8211; version 4.7.2.<\/p>\n<h3>Am I effected by this if my WordPress blog is on wordpress.com?<\/h3>\n<p>No, you&#8217;re not. As WordPress provide and maintain the WordPress blogging platform and servers they are responsible for securing the version of WordPress you use, you need only take action if you have your own hosting package and have installed WordPress on servers outside of wordpress.com.<\/p>\n<h3><strong>How do I update WordPress on my website?<\/strong><\/h3>\n<ul>\n<li>You&#8217;ll need to log in to your WordPress dashboard, the login page for this can almost always be found at http:\/\/example.com\/wp-admin where example.com is replaced by your own websites domain name, once here login using your WordPress username and password.<img loading=\"lazy\" decoding=\"async\" class=\"size-full wp-image-11761 aligncenter\" src=\"https:\/\/blog.names.co.uk\/wp-content\/uploads\/2017\/02\/Screen-Shot-2017-02-10-at-15.37.44.png\" alt=\"WordPress Login Screen\" width=\"442\" height=\"449\"><\/li>\n<\/ul>\n<p>&nbsp;<\/p>\n<ul>\n<li>Once logged in, the WordPress software displays a notification of any new versions of WordPress in the top left of the dashboard:<\/li>\n<\/ul>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"size-full wp-image-11759 aligncenter\" src=\"https:\/\/blog.names.co.uk\/wp-content\/uploads\/2017\/02\/Screen-Shot-2017-02-10-at-15.45.58.png\" alt=\"WordPress Update Notification in the dashboard\" width=\"556\" height=\"123\"><\/p>\n<ul>\n<li>It&#8217;s always recommended that you back up your website files and download your WordPress database too, for advice on this please contact our Support team by opening a support ticket, the instructions to do this can be found here &#8211; <a href=\"https:\/\/www.names.co.uk\/support\/support_centre\/my_account_billing\/822-how_to_open_a_support_enquiry.html\" target=\"_blank\" rel=\"noopener noreferrer\">open a support enquiry<\/a>.<\/li>\n<li>Click the Please update now link and WordPress will commence to install the latest version of WordPress, version 4.7.2 patches the vulnerability detailed in this article.<\/li>\n<\/ul>\n","protected":false},"excerpt":{"rendered":"<p>WordPress recently confirmed a security flaw has existed in its WordPress blogging software since the end of 2016. The bug has affected tens of thousands of websites, specifically WordPress blogs&#8230; <a class=\"more-link\" href=\"https:\/\/www.register365.com\/blog\/wordpress-vulnerability-leads-compromised-sites\/\">Read more &rarr;<\/a><\/p>\n","protected":false},"author":22,"featured_media":4677,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[18],"tags":[],"class_list":["post-4089","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-security"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v25.5 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>WordPress vulnerability leads to compromised sites - Register365 Blog<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.register365.com\/blog\/2017\/02\/wordpress-vulnerability-leads-compromised-sites\/\" \/>\n<meta property=\"og:locale\" content=\"en_GB\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"WordPress vulnerability leads to compromised sites - Register365 Blog\" \/>\n<meta property=\"og:description\" content=\"WordPress recently confirmed a security flaw has existed in its WordPress blogging software since the end of 2016. The bug has affected tens of thousands of websites, specifically WordPress blogs... Read more &rarr;\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.register365.com\/blog\/2017\/02\/wordpress-vulnerability-leads-compromised-sites\/\" \/>\n<meta property=\"og:site_name\" content=\"Register365 Blog\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/register365\" \/>\n<meta property=\"article:published_time\" content=\"2017-02-10T17:28:14+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2019-11-14T15:24:37+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.register365.com\/blog\/wp-content\/uploads\/2011\/12\/wordpress.gif\" \/>\n\t<meta property=\"og:image:width\" content=\"1000\" \/>\n\t<meta property=\"og:image:height\" content=\"450\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/gif\" \/>\n<meta name=\"author\" content=\"Nathan\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Nathan\" \/>\n\t<meta name=\"twitter:label2\" content=\"Estimated reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"2 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/www.register365.com\/blog\/2017\/02\/wordpress-vulnerability-leads-compromised-sites\/\",\"url\":\"https:\/\/www.register365.com\/blog\/2017\/02\/wordpress-vulnerability-leads-compromised-sites\/\",\"name\":\"WordPress vulnerability leads to compromised sites - Register365 Blog\",\"isPartOf\":{\"@id\":\"https:\/\/www.register365.com\/blog\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/www.register365.com\/blog\/2017\/02\/wordpress-vulnerability-leads-compromised-sites\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/www.register365.com\/blog\/2017\/02\/wordpress-vulnerability-leads-compromised-sites\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/www.register365.com\/blog\/wp-content\/uploads\/2011\/12\/wordpress.gif\",\"datePublished\":\"2017-02-10T17:28:14+00:00\",\"dateModified\":\"2019-11-14T15:24:37+00:00\",\"author\":{\"@id\":\"https:\/\/www.register365.com\/blog\/#\/schema\/person\/b8684be81b9b651f59d97f7bac864748\"},\"breadcrumb\":{\"@id\":\"https:\/\/www.register365.com\/blog\/2017\/02\/wordpress-vulnerability-leads-compromised-sites\/#breadcrumb\"},\"inLanguage\":\"en-GB\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/www.register365.com\/blog\/2017\/02\/wordpress-vulnerability-leads-compromised-sites\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-GB\",\"@id\":\"https:\/\/www.register365.com\/blog\/2017\/02\/wordpress-vulnerability-leads-compromised-sites\/#primaryimage\",\"url\":\"https:\/\/www.register365.com\/blog\/wp-content\/uploads\/2011\/12\/wordpress.gif\",\"contentUrl\":\"https:\/\/www.register365.com\/blog\/wp-content\/uploads\/2011\/12\/wordpress.gif\",\"width\":1000,\"height\":450},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/www.register365.com\/blog\/2017\/02\/wordpress-vulnerability-leads-compromised-sites\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Register365\",\"item\":\"\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Blog\",\"item\":\"https:\/\/www.register365.com\/blog\/\"},{\"@type\":\"ListItem\",\"position\":3,\"name\":\"Security\",\"item\":\"https:\/\/www.register365.com\/blog\/category\/security\/\"},{\"@type\":\"ListItem\",\"position\":4,\"name\":\"WordPress vulnerability leads to compromised sites\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/www.register365.com\/blog\/#website\",\"url\":\"https:\/\/www.register365.com\/blog\/\",\"name\":\"Register365 Blog\",\"description\":\"Welcome to the Register365 blog! Keep up to date with our latest news and product updates, find out more about our Free Online Business Training, and share your comments with us!\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/www.register365.com\/blog\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-GB\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/www.register365.com\/blog\/#\/schema\/person\/b8684be81b9b651f59d97f7bac864748\",\"name\":\"Nathan\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-GB\",\"@id\":\"https:\/\/www.register365.com\/blog\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/b849f2ae94026a2583ec808f66065701dbebe5ca9a87e51fab1269f2853c4a71?s=96&d=identicon&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/b849f2ae94026a2583ec808f66065701dbebe5ca9a87e51fab1269f2853c4a71?s=96&d=identicon&r=g\",\"caption\":\"Nathan\"},\"description\":\"Nathan has been with team.blue since 2005 and has a background in Technical Support. He is passionate about helping customers find the best product for them and use it to its full potential. In his free time you'll find him on a train travelling through some beautiful countryside, or curled up on a sofa with his head in a book.\",\"url\":\"https:\/\/www.register365.com\/blog\/author\/nathan\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"WordPress vulnerability leads to compromised sites - Register365 Blog","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.register365.com\/blog\/2017\/02\/wordpress-vulnerability-leads-compromised-sites\/","og_locale":"en_GB","og_type":"article","og_title":"WordPress vulnerability leads to compromised sites - Register365 Blog","og_description":"WordPress recently confirmed a security flaw has existed in its WordPress blogging software since the end of 2016. The bug has affected tens of thousands of websites, specifically WordPress blogs... Read more &rarr;","og_url":"https:\/\/www.register365.com\/blog\/2017\/02\/wordpress-vulnerability-leads-compromised-sites\/","og_site_name":"Register365 Blog","article_publisher":"https:\/\/www.facebook.com\/register365","article_published_time":"2017-02-10T17:28:14+00:00","article_modified_time":"2019-11-14T15:24:37+00:00","og_image":[{"width":1000,"height":450,"url":"https:\/\/www.register365.com\/blog\/wp-content\/uploads\/2011\/12\/wordpress.gif","type":"image\/gif"}],"author":"Nathan","twitter_misc":{"Written by":"Nathan","Estimated reading time":"2 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/www.register365.com\/blog\/2017\/02\/wordpress-vulnerability-leads-compromised-sites\/","url":"https:\/\/www.register365.com\/blog\/2017\/02\/wordpress-vulnerability-leads-compromised-sites\/","name":"WordPress vulnerability leads to compromised sites - Register365 Blog","isPartOf":{"@id":"https:\/\/www.register365.com\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.register365.com\/blog\/2017\/02\/wordpress-vulnerability-leads-compromised-sites\/#primaryimage"},"image":{"@id":"https:\/\/www.register365.com\/blog\/2017\/02\/wordpress-vulnerability-leads-compromised-sites\/#primaryimage"},"thumbnailUrl":"https:\/\/www.register365.com\/blog\/wp-content\/uploads\/2011\/12\/wordpress.gif","datePublished":"2017-02-10T17:28:14+00:00","dateModified":"2019-11-14T15:24:37+00:00","author":{"@id":"https:\/\/www.register365.com\/blog\/#\/schema\/person\/b8684be81b9b651f59d97f7bac864748"},"breadcrumb":{"@id":"https:\/\/www.register365.com\/blog\/2017\/02\/wordpress-vulnerability-leads-compromised-sites\/#breadcrumb"},"inLanguage":"en-GB","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.register365.com\/blog\/2017\/02\/wordpress-vulnerability-leads-compromised-sites\/"]}]},{"@type":"ImageObject","inLanguage":"en-GB","@id":"https:\/\/www.register365.com\/blog\/2017\/02\/wordpress-vulnerability-leads-compromised-sites\/#primaryimage","url":"https:\/\/www.register365.com\/blog\/wp-content\/uploads\/2011\/12\/wordpress.gif","contentUrl":"https:\/\/www.register365.com\/blog\/wp-content\/uploads\/2011\/12\/wordpress.gif","width":1000,"height":450},{"@type":"BreadcrumbList","@id":"https:\/\/www.register365.com\/blog\/2017\/02\/wordpress-vulnerability-leads-compromised-sites\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Register365","item":"\/"},{"@type":"ListItem","position":2,"name":"Blog","item":"https:\/\/www.register365.com\/blog\/"},{"@type":"ListItem","position":3,"name":"Security","item":"https:\/\/www.register365.com\/blog\/category\/security\/"},{"@type":"ListItem","position":4,"name":"WordPress vulnerability leads to compromised sites"}]},{"@type":"WebSite","@id":"https:\/\/www.register365.com\/blog\/#website","url":"https:\/\/www.register365.com\/blog\/","name":"Register365 Blog","description":"Welcome to the Register365 blog! Keep up to date with our latest news and product updates, find out more about our Free Online Business Training, and share your comments with us!","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.register365.com\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-GB"},{"@type":"Person","@id":"https:\/\/www.register365.com\/blog\/#\/schema\/person\/b8684be81b9b651f59d97f7bac864748","name":"Nathan","image":{"@type":"ImageObject","inLanguage":"en-GB","@id":"https:\/\/www.register365.com\/blog\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/b849f2ae94026a2583ec808f66065701dbebe5ca9a87e51fab1269f2853c4a71?s=96&d=identicon&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/b849f2ae94026a2583ec808f66065701dbebe5ca9a87e51fab1269f2853c4a71?s=96&d=identicon&r=g","caption":"Nathan"},"description":"Nathan has been with team.blue since 2005 and has a background in Technical Support. He is passionate about helping customers find the best product for them and use it to its full potential. In his free time you'll find him on a train travelling through some beautiful countryside, or curled up on a sofa with his head in a book.","url":"https:\/\/www.register365.com\/blog\/author\/nathan\/"}]}},"_links":{"self":[{"href":"https:\/\/www.register365.com\/blog\/wp-json\/wp\/v2\/posts\/4089","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.register365.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.register365.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.register365.com\/blog\/wp-json\/wp\/v2\/users\/22"}],"replies":[{"embeddable":true,"href":"https:\/\/www.register365.com\/blog\/wp-json\/wp\/v2\/comments?post=4089"}],"version-history":[{"count":3,"href":"https:\/\/www.register365.com\/blog\/wp-json\/wp\/v2\/posts\/4089\/revisions"}],"predecessor-version":[{"id":5614,"href":"https:\/\/www.register365.com\/blog\/wp-json\/wp\/v2\/posts\/4089\/revisions\/5614"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.register365.com\/blog\/wp-json\/wp\/v2\/media\/4677"}],"wp:attachment":[{"href":"https:\/\/www.register365.com\/blog\/wp-json\/wp\/v2\/media?parent=4089"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.register365.com\/blog\/wp-json\/wp\/v2\/categories?post=4089"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.register365.com\/blog\/wp-json\/wp\/v2\/tags?post=4089"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}