File Differences Missed in Scan
-
We are a WordPress hosting and security agency that uses Wordfence on all of our sites. We found evidence this morning that Wordfence failed to flag an extra file for a plugin from the WP repository. It was inserted in a deactivated plugin on one of our sites and contains malicious code.
There is no other malicious code, and this particular plugin was not active, so we are not sure why Wordfence didn’t find it. If we can’t be certain that Wordfence is flagging all instances of these file differences, or if a way has been found to circumvent that check, then we are going to need to explore different options for site security monitoring.
Please let us know what can be done here.
Viewing 3 replies - 1 through 3 (of 3 total)
Viewing 3 replies - 1 through 3 (of 3 total)
- The topic ‘File Differences Missed in Scan’ is closed to new replies.