Comment on Is it normal to not have any malicious login attempts?
catloaf@lemm.ee 1 week ago
Check the web server access logs. I’m sure you’ll see exploit attempts, but for software you’re not running. WordPress is what I see most often. Those probably won’t generate emails.
irmadlad@lemmy.world 1 week ago
What is it about Wordpress? I’ve never used it, but it seems that every other day there is a new Wordpress exploit, and that’s been going on for years.
clb92@feddit.dk 1 week ago
It’s a huuuugely popular CMS used on around 40% of all websites on the internet, and it has around 70,000 plugins available of varying quality. Most exploits are from badly written plugins.
slazer2au@lemmy.world 6 days ago
I think of it like Bethesda games.
It’s passable for what you want, but the real value is the plugins that can fix what problems you have.
But all those plugins also have security vulnerabilities that need to be managed.
Just don’t look behind the curtain to see what the CEO is up to.
excess0680@lemmy.world 5 days ago
Incredible yet accurate analogy
irmadlad@lemmy.world 6 days ago
Had to go look it up. What a cluster. Anyways, I don’t blog mainly because I don’t have anything to say that people would be interested in. Maybe farming. LOL I’ve just wondered down through the years why someone didn’t fix all the attack surfaces Wordpress seems to have. Plus it drives a substantial share of websites, so I guess it’s a good target to go after.