In 2024, researchers from the University of Illinois found that GPT-4, when provided with a common vulnerabilities and exposures (CVE) description, could autonomously exploit 87% of a curated 15-vulne [...]
There's been another turn in Automattic and WordPress co-founder Matt Mullenweg’s ongoing legal battle with WordPress provider WP Engine. In a counterclaim Automattic filed as part of WP Engine [...]
There's been another turn in WordPress creator Automattic's ongoing legal battle with WordPress provider WP Engine. In a counterclaim Automattic filed as part of WP Engine's lawsuit aga [...]
A security researcher, working with colleagues at Johns Hopkins University, opened a GitHub pull request, typed a malicious instruction into the PR title, and watched Anthropic’s Claude Code Securit [...]
An attacker bought 30+ WordPress plugins (Essential Plugin portfolio) on Flippa for six figures, planted a PHP deserialization backdoor in August 2025, then activated it eight months later to serve cl [...]
Attackers are actively exploiting a vulnerability in the Gravity SMTP WordPress plugin that exposes API keys, OAuth tokens, and detailed system configuration data to anyone who sends a single unauthen [...]