My first CVE
natkr.com·4w·

Back when I was a kid, there was a lot of talk about website defacement.

Y’know, when someone would break into some high-profile site and replace it with some message about how “xXwhateverXx Waz Hear”.

Now, this was in the golden age of Wordpress1, so the only thing really keeping anyone out was...2

A WordPress login screen, asking the user for their username and password. So close to doom! (For certain definitions of doom, at least.) Now, there are ways to harden this.3

  • Rate-limiting.
  • Better password hashes.
  • Longer, more complex passwords.
  • Something about correctly reminiscing about horses and battery staples.
  • [Password managers…

Similar Posts

Loading similar posts...