On-demand
How to secure and protect WordPress.
A working playbook for the CMS that runs 30% of the web, and the plugin ecosystem that keeps inviting attackers in.
30 Sep 202060 min


Presented by
About this talk
Prithiv Kumaravel, Security Consultant at SecureLayer7, walked teams through the WordPress attack surface that powers a third of the web. This is the recording.
WordPress runs more than 30% of websites globally and roughly 60% of all open-source CMS deployments. That reach is exactly what makes its plugin ecosystem, theme code, and admin endpoints a steady source of exploit-grade vulnerabilities.
The session covers how to identify weak plugins and themes before they ship, the attack patterns that turn a single compromised site into a pivot onto the hosting server, the role of security plugins, and a working hardening and backup checklist for production WordPress.