WordPress Sites Under Attack from Newly Found Linux Trojan

This page summarizes the projects mentioned and recommended in the original post on news.ycombinator.com

Our great sponsors
  • WorkOS - The modern identity platform for B2B SaaS
  • InfluxDB - Power Real-Time Data Analytics at Scale
  • SaaSHub - Software Alternatives and Reviews
  • malware-iocs

  • In the "network indicators of an attack" [1] what's the significance of some periods being in square brackets and others not?

    1. https://github.com/DoctorWebLtd/malware-iocs/tree/master/Lin...

  • ProcessWire

    ProcessWire 3.x is a friendly and powerful open source CMS with a strong API.

  • The idea of tons of 3rd-party plugins, with WordPress and also Drupal, is just disastrous for security.

    Anyone with any ability to write a little PHP would be far far better off building their site in a CMS like ProcessWire [1], which has a very small core, but a extremely powerful content (PHP) API [2], which means you can replicate pretty much everything you have in Wordpress and Drupal with a few API calls in your templates.

    This means you build your listing and presentation-logic custom made with the minimal amount of code needed, and the attack vector shrinks to pretty much nothing, as long as you don't voluntarily do something stupid.

    [1] https://processwire.com/

    [2] https://cheatsheet.processwire.com/

  • WorkOS

    The modern identity platform for B2B SaaS. The APIs are flexible and easy-to-use, supporting authentication, user identity, and complex enterprise features like SSO and SCIM provisioning.

    WorkOS logo
NOTE: The number of mentions on this list indicates mentions on common posts plus user suggested alternatives. Hence, a higher number means a more popular project.

Suggest a related project

Related posts