ZeroHour
Schneier on Securitypublished ()ingested Bruce Schneier

The Insecurity of WordPress and Apache Struts

criticalExploit / PoC exploited in the wildimportance 60
Full article104 words · extracted from schneier.com · click to collapse

Interesting data:

A study that analyzed all the vulnerability disclosures between 2010 and 2019 found that around 55% of all the security bugs that have been weaponized and exploited in the wild were for two major application frameworks, namely WordPress and Apache Struts.

The Drupal content management system ranked third, followed by Ruby on Rails and Laravel, according to a report published this week by risk analysis firm RiskSense.

The full report is here.

Tags: Apache, reports, security engineering, vulnerabilities

Posted on March 18, 2020 at 7:45 AM18 Comments

Sidebar photo of Bruce Schneier by Joe MacInnis.

Text extracted automatically; images, tables and formatting may be missing. Original: https://www.schneier.com/blog/archives/2020/03/the_insecurity_.html