Hacker News new | past | comments | ask | show | jobs | submit login
Unsafe cookies leave WordPress accounts open to hijacking, 2-factor bypass (arstechnica.com)
3 points by wrongc0ntinent on May 26, 2014 | hide | past | favorite | 1 comment



I think the real problem is that Wordpress appeals to a lot of casual users who are understandably not security experts and the default settings are not secure. Getting a Wordpress server started and working isn't too hard but actually setting one up correctly is almost a full-time job.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: