{"id":1747,"date":"2013-08-16T11:05:06","date_gmt":"2013-08-16T17:05:06","guid":{"rendered":"http:\/\/www.whitefirdesign.com\/blog\/?p=1747"},"modified":"2013-08-16T11:05:06","modified_gmt":"2013-08-16T17:05:06","slug":"outbrain-website-running-outdated-and-insecure-version-of-wordpress","status":"publish","type":"post","link":"https:\/\/www.whitefirdesign.com\/blog\/2013\/08\/16\/outbrain-website-running-outdated-and-insecure-version-of-wordpress\/","title":{"rendered":"Outbrain Website Running Outdated and Insecure Version of WordPress"},"content":{"rendered":"<p>Yesterday a number of <a href=\"http:\/\/money.cnn.com\/2013\/08\/15\/technology\/security\/outbrain-hack\/\"> major news websites were attacked due to a breach at Outbrain<\/a>, a provider of widgets that display content recommendations. While the breach of Outbrain <a href=\"http:\/\/www.outbrain.com\/blog\/2013\/08\/additional-details-on-outbrain-security-breach.html\">utilized social engineering<\/a>, it is clear that Outbrain isn&#8217;t properly handling security of their systems, as they don&#8217;t even take <a href=\"http:\/\/www.whitefirdesign.com\/resources\/secure-your-website-from-hackers.html\">basic security measures<\/a> with their own website. One of the basic security measures is keeping software running a website up to date, which Outbrain hasn&#8217;t been doing:<\/p>\n<p><a href=\"http:\/\/www.whitefirdesign.com\/meta-generator-version-check\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-full wp-image-1748\" alt=\"Outbrain is Running WordPress 3.3.2\" src=\"https:\/\/www.whitefirdesign.com\/blog\/wp-content\/uploads\/2013\/08\/outbrain-website-wordpress-version.png\" width=\"500\" height=\"150\" srcset=\"https:\/\/www.whitefirdesign.com\/blog\/wp-content\/uploads\/2013\/08\/outbrain-website-wordpress-version.png 500w, https:\/\/www.whitefirdesign.com\/blog\/wp-content\/uploads\/2013\/08\/outbrain-website-wordpress-version-300x90.png 300w\" sizes=\"auto, (max-width: 500px) 85vw, 500px\" \/><\/a><\/p>\n<p>Not only is that version over a year out of date, but they have failed to apply four updates that included security fixes (<a href=\"http:\/\/wordpress.org\/news\/2012\/06\/wordpress-3-4-1\/\">3.4.1<\/a>, <a href=\"http:\/\/wordpress.org\/news\/2012\/09\/wordpress-3-4-2\/\">3.4.2<\/a>, <a href=\"http:\/\/wordpress.org\/news\/2013\/01\/wordpress-3-5-1\/\">3.5.1<\/a>, and <a href=\"http:\/\/wordpress.org\/news\/2013\/06\/wordpress-3-5-2\/\">3.5.2<\/a>). The <a href=\"http:\/\/wordpress.org\/news\/2013\/06\/wordpress-3-5-2\/\">release announcement<\/a> for 3.5.2 included the warning:<\/p>\n<blockquote><p><strong>This is a security release for all previous versions and we strongly encourage you to update your sites immediately.<\/strong><\/p><\/blockquote>\n<p>Considering how easy it is to update WordPress, their customers should be worrying about what other things they are also failing to do.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Yesterday a number of major news websites were attacked due to a breach at Outbrain, a provider of widgets that display content recommendations. While the breach of Outbrain utilized social engineering, it is clear that Outbrain isn&#8217;t properly handling security of their systems, as they don&#8217;t even take basic security measures with their own website. &hellip; <a href=\"https:\/\/www.whitefirdesign.com\/blog\/2013\/08\/16\/outbrain-website-running-outdated-and-insecure-version-of-wordpress\/\" class=\"more-link\">Continue reading<span class=\"screen-reader-text\"> &#8220;Outbrain Website Running Outdated and Insecure Version of WordPress&#8221;<\/span><\/a><\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[25,35],"tags":[],"class_list":["post-1747","post","type-post","status-publish","format-standard","hentry","category-bad-security","category-outdated-web-software"],"_links":{"self":[{"href":"https:\/\/www.whitefirdesign.com\/blog\/wp-json\/wp\/v2\/posts\/1747","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.whitefirdesign.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.whitefirdesign.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.whitefirdesign.com\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.whitefirdesign.com\/blog\/wp-json\/wp\/v2\/comments?post=1747"}],"version-history":[{"count":3,"href":"https:\/\/www.whitefirdesign.com\/blog\/wp-json\/wp\/v2\/posts\/1747\/revisions"}],"predecessor-version":[{"id":1751,"href":"https:\/\/www.whitefirdesign.com\/blog\/wp-json\/wp\/v2\/posts\/1747\/revisions\/1751"}],"wp:attachment":[{"href":"https:\/\/www.whitefirdesign.com\/blog\/wp-json\/wp\/v2\/media?parent=1747"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.whitefirdesign.com\/blog\/wp-json\/wp\/v2\/categories?post=1747"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.whitefirdesign.com\/blog\/wp-json\/wp\/v2\/tags?post=1747"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}