Announcements

Security vunerability in WordPress 4.5.2 or older

  • 22nd June 2016
A vulnerability has been discovered in WordPress' password protected posts allowing users to bypass this protection. WordPress version 4.5.3 has been released as a security and maintenance upgrade which addresses the above vunerability. If you are running an older version of WordPress, update immediately to version 4.5.3. See ...
Continue reading

Critical vulnerability in the WordPress EWWW Image Optimizer plugin

  • 10th June 2016
A critical remote code execution vulnerability has been discovered in the EWWW Image Optimizer plugin. The author has released a fix this morning. If you are running this plugin, update immediately to version 2.8.5 or later. See https://www.wordfence.com/blog/2016/06/vulnerability-ewww-image-optimizer for additional information. We may have ...
Continue reading

Scam email - domain expiry

  • 25th May 2016
There is currently a scam targeting .com domains. The email notification suggests that the domain is about to expire and urgent payment is required; a link to make payment is included. The fine print talks about "domain seo registration". Do not make payment via this link. If you are unsure contact Create Hosting (or whoever you registered your ...
Continue reading

Magento Security - SQL injection vulnerability

  • 3rd May 2016
Continue reading