- This topic has 1 reply, 2 voices, and was last updated 13 years, 5 months ago by .
Viewing 2 posts - 1 through 2 (of 2 total)
Viewing 2 posts - 1 through 2 (of 2 total)
- You must be logged in to reply to this topic.
Support site for Tips and Tricks HQ premium products
by
Tips and Tricks HQ Support Portal › Forums › General Stuff › Security Advisory Regarding W3 TOTAL CACHE Plugin
Tagged: security, W3 Total Cache
W3 Total Cache is a popular plugin for Tips And Tricks HQ customers. The following announcement was recently posted to the WordPress.org news blog.
http://wordpress.org/news/2011/06/passwords-reset/
“Earlier today the WordPress team noticed suspicious commits to several popular plugins (AddThis, WPtouch, and W3 Total Cache) containing cleverly disguised backdoors. We determined the commits were not from the authors, rolled them back, pushed updates to the plugins, and shut down access to the plugin repository while we looked for anything else unsavory…
…if you use AddThis, WPtouch, or W3 Total Cache and there’s a possibility you could have updated in the past day, make sure to visit your updates page and upgrade each to the latest version.”
This is a shocker… I hope too many people did not upgrade to this fake version of W3 Total Cache (it is a good idea to wait a few days after an upgrade is available before actually upgrading on your live site)