Skip to content

C2P Blog

    • About Me
  • The Security of Uploaded Images in WordPress: Sensitive EXIF Data and Default Image Compression

    The Security of Uploaded Images in WordPress: Sensitive EXIF Data and Default Image Compression

    Oct 21, 2024

    —

    by

    David
    in Images, Security, WordPress

    Images are an integral part of any website, including WordPress-powered sites. However, many users may not be aware that the photos they upload often contain sensitive information in the form of EXIF metadata. On the other hand, WordPress has a default image compression feature, which reduces image quality in the pursuit of better performance. In…

  • Why WordPress.org Blocked the Advanced Custom Fields Plugin by WP Engine?

    Oct 15, 2024

    —

    by

    David
    in OpenSource, Security, WordPress

    Recently, the WordPress community was surprised to learn that Advanced Custom Fields (ACF), one of the most popular plugins for managing custom fields, was temporarily blocked from the official WordPress.org repository. This move sparked discussions and concerns among developers and users who have relied on ACF for years. What exactly went wrong, and why did…

  • Why relying on complex subdomain names won’t stop bots from finding your site

    Oct 8, 2024

    —

    by

    David
    in Security

    Many website owners may believe that creating complex, obscure subdomain names will help hide sensitive parts of their web infrastructure from bots and malicious actors. This practice, often referred to as “security through obscurity,” assumes that the more intricate and hard-to-guess a subdomain name is, the less likely it will be discovered. However, in reality,…

←Previous Page