<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>WP Notdienst — Resources</title><description>Source-based articles on WordPress security and incident response.</description><link>https://www.wp-notdienst.de/</link><language>en-US</language><item><title>AI-enabled hacking and WordPress: real risks, limits and practical protection</title><link>https://www.wp-notdienst.de/en/resources/ai-hacking-wordpress-risks-protection/</link><guid isPermaLink="true">https://www.wp-notdienst.de/en/resources/ai-hacking-wordpress-risks-protection/</guid><description>How attackers use AI for phishing, vulnerability research and automation, what that changes for WordPress, and which security controls matter now.</description><pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate></item><item><title>WordPress WAF plugins compared: benefits, limits and suitable use cases</title><link>https://www.wp-notdienst.de/en/resources/wordpress-waf-firewall-plugins-comparison/</link><guid isPermaLink="true">https://www.wp-notdienst.de/en/resources/wordpress-waf-firewall-plugins-comparison/</guid><description>Compare Wordfence, NinjaFirewall, Sucuri, MalCare, Patchstack, AIOS, Shield Security and BBQ Firewall by architecture, strengths and limitations.</description><pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate></item><item><title>Can data exfiltration be established after a WordPress hack?</title><link>https://www.wp-notdienst.de/en/resources/assess-data-exfiltration-after-wordpress-hack/</link><guid isPermaLink="true">https://www.wp-notdienst.de/en/resources/assess-data-exfiltration-after-wordpress-hack/</guid><description>Which technical traces may support or challenge a data-exfiltration hypothesis, and why missing logs cannot provide absolute reassurance.</description><pubDate>Sun, 26 Jul 2026 00:00:00 GMT</pubDate></item><item><title>Why deleting an infected WordPress plugin is not enough</title><link>https://www.wp-notdienst.de/en/resources/deleting-infected-wordpress-plugin-not-enough/</link><guid isPermaLink="true">https://www.wp-notdienst.de/en/resources/deleting-infected-wordpress-plugin-not-enough/</guid><description>Why a compromised plugin may be only the entry point or one finding, and which persistence areas still require review.</description><pubDate>Sun, 26 Jul 2026 00:00:00 GMT</pubDate></item><item><title>Which logs to preserve after a WordPress incident</title><link>https://www.wp-notdienst.de/en/resources/logs-to-preserve-after-wordpress-incident/</link><guid isPermaLink="true">https://www.wp-notdienst.de/en/resources/logs-to-preserve-after-wordpress-incident/</guid><description>Prioritized log sources, safe preservation, and reconstruction limits after a WordPress security incident.</description><pubDate>Sun, 26 Jul 2026 00:00:00 GMT</pubDate></item><item><title>Malware scan versus forensic investigation</title><link>https://www.wp-notdienst.de/en/resources/malware-scan-versus-forensic-investigation/</link><guid isPermaLink="true">https://www.wp-notdienst.de/en/resources/malware-scan-versus-forensic-investigation/</guid><description>What malware scanning can provide, when incident analysis must go deeper, and where formal forensics begins.</description><pubDate>Sun, 26 Jul 2026 00:00:00 GMT</pubDate></item><item><title>Why an old WordPress backup may already be compromised</title><link>https://www.wp-notdienst.de/en/resources/old-wordpress-backups-may-be-compromised/</link><guid isPermaLink="true">https://www.wp-notdienst.de/en/resources/old-wordpress-backups-may-be-compromised/</guid><description>How to assess backup timelines and contents before using a backup as a recovery source.</description><pubDate>Sun, 26 Jul 2026 00:00:00 GMT</pubDate></item><item><title>Rotating WordPress secrets, salts, sessions, and API credentials</title><link>https://www.wp-notdienst.de/en/resources/rotate-wordpress-secrets-salts-sessions-api-credentials/</link><guid isPermaLink="true">https://www.wp-notdienst.de/en/resources/rotate-wordpress-secrets-salts-sessions-api-credentials/</guid><description>A controlled order for passwords, sessions, salts, application passwords, and external API secrets.</description><pubDate>Sun, 26 Jul 2026 00:00:00 GMT</pubDate></item><item><title>Investigating unknown WordPress administrators and application passwords</title><link>https://www.wp-notdienst.de/en/resources/unknown-wordpress-admins-application-passwords/</link><guid isPermaLink="true">https://www.wp-notdienst.de/en/resources/unknown-wordpress-admins-application-passwords/</guid><description>How to preserve, assess, and revoke unknown accounts, sessions, and application passwords.</description><pubDate>Sun, 26 Jul 2026 00:00:00 GMT</pubDate></item><item><title>WordPress checksums: what they prove and what they do not</title><link>https://www.wp-notdienst.de/en/resources/wordpress-checksums-what-they-prove/</link><guid isPermaLink="true">https://www.wp-notdienst.de/en/resources/wordpress-checksums-what-they-prove/</guid><description>How WordPress core checksums are used and why a successful comparison does not cover the database, uploads, or accounts.</description><pubDate>Sun, 26 Jul 2026 00:00:00 GMT</pubDate></item><item><title>Hacked WordPress site: safe first steps in the first 60 minutes</title><link>https://www.wp-notdienst.de/en/resources/wordpress-first-hour-after-a-hack/</link><guid isPermaLink="true">https://www.wp-notdienst.de/en/resources/wordpress-first-hour-after-a-hack/</guid><description>What actually helps in the first 60 minutes after a WordPress hack — and what puts evidence and recovery at risk.</description><pubDate>Sun, 26 Jul 2026 00:00:00 GMT</pubDate></item><item><title>WordPress hardening checklist after a security incident</title><link>https://www.wp-notdienst.de/en/resources/wordpress-hardening-checklist/</link><guid isPermaLink="true">https://www.wp-notdienst.de/en/resources/wordpress-hardening-checklist/</guid><description>Prioritized hardening for WordPress, hosting, accounts, backups, and monitoring after controlled remediation.</description><pubDate>Sun, 26 Jul 2026 00:00:00 GMT</pubDate></item><item><title>Finding malware in WordPress uploads, cache, and backups</title><link>https://www.wp-notdienst.de/en/resources/wordpress-malware-uploads-cache-backups/</link><guid isPermaLink="true">https://www.wp-notdienst.de/en/resources/wordpress-malware-uploads-cache-backups/</guid><description>Why writable directories need special attention and how executable malware is distinguished from legitimate files.</description><pubDate>Sun, 26 Jul 2026 00:00:00 GMT</pubDate></item><item><title>Webshells, backdoors, and SEO spam: understanding WordPress persistence</title><link>https://www.wp-notdienst.de/en/resources/wordpress-webshell-backdoor-seo-spam-persistence/</link><guid isPermaLink="true">https://www.wp-notdienst.de/en/resources/wordpress-webshell-backdoor-seo-spam-persistence/</guid><description>How webshells, backdoors, SEO spam, and persistence differ, and why one detected file rarely explains the entire incident.</description><pubDate>Sun, 26 Jul 2026 00:00:00 GMT</pubDate></item></channel></rss>