Security Feed
  1. Archives

Aug 24 2026 Hackers target WordPress sites in miniOrange auth bypass attacks

Source

Hackers are attempting to exploit two critical authentication bypass vulnerabilities in the miniOrange SAML 2.0 Single Sign On plugin for WordPress that can be used to forge SAML responses and log in as administrators. [...]

Posted by Bill Toulas on Mon 24 August 2026 in BleepingComputer.

Tags: Security.

Categories

  1. Ars Technica
  2. AWS Security
  3. BleepingComputer
  4. Brian Krebs
  5. Bruce Schneier
  6. GCP Security
  7. Google Project Zero
  8. The Daily Swig
  9. The Guardian
  10. The Register
  11. Threatpost

Tag cloud

  • Security
  • Uncategorized
  • Security, Identity, & Compliance
  • Security Blog
  • Microsoft
  • Biz & IT
  • AI
  • Security & Identity
  • Artificial Intelligence
  • Announcements
  • cryptocurrency
  • Google
  • Foundational (100)
  • Legal
  • privacy
  • A Little Sunshine
  • Apple
  • Intermediate (200)
  • squid
  • hacking
  • LLM
  • Mobile
  • Technical How-to
  • Advanced (300)
  • vulnerabilities

Security Feed. Powered by Pelican and m.css. Code is available on GitLab.