<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>RuntimeRebel — #WordPress Security</title><description>Cybersecurity articles tagged #WordPress Security on RuntimeRebel.</description><link>https://runtimerebel.com</link><item><title>Operation Endgame Disrupts SocGholish: WordPress Site Remediation</title><link>https://runtimerebel.com/blog/operation-endgame-disrupts-socgholish-wordpress-site-remediation</link><guid isPermaLink="true">https://runtimerebel.com/blog/operation-endgame-disrupts-socgholish-wordpress-site-remediation</guid><description>Operation Endgame targets SocGholish infrastructure, cleaning 14,971 WordPress sites. Understand the impact and crucial remediation steps for web administrators.</description><pubDate>Fri, 19 Jun 2026 16:54:01 GMT</pubDate><category>SocGholish</category><category>Operation Endgame</category><category>WordPress Security</category><category>Malware Disruption</category><category>Web Infection</category></item><item><title>CVE-2026-3300: Critical RCE in Everest Forms Pro — Patch Now</title><link>https://runtimerebel.com/blog/cve-2026-3300-critical-rce-in-everest-forms-pro-patch-now</link><guid isPermaLink="true">https://runtimerebel.com/blog/cve-2026-3300-critical-rce-in-everest-forms-pro-patch-now</guid><description>Attackers are exploiting CVE-2026-3300 in Everest Forms Pro up to 1.9.12 to achieve RCE. Learn how to protect your WordPress site from full compromise.</description><pubDate>Fri, 05 Jun 2026 09:15:46 GMT</pubDate><category>CVE-2026-3300</category><category>Everest Forms Pro</category><category>WordPress Security</category><category>RCE</category></item><item><title>DriveSurge Campaigns: Detecting ClickFix and FakeUpdate Overlays</title><link>https://runtimerebel.com/blog/drivesurge-campaigns-detecting-clickfix-and-fakeupdate-overlays</link><guid isPermaLink="true">https://runtimerebel.com/blog/drivesurge-campaigns-detecting-clickfix-and-fakeupdate-overlays</guid><description>DriveSurge threat actors have hijacked thousands of sites to deploy ClickFix and FakeUpdate overlays, delivering info-stealers via deceptive browser alerts.</description><pubDate>Tue, 02 Jun 2026 01:03:09 GMT</pubDate><category>DriveSurge</category><category>ClickFix</category><category>Fake Updates</category><category>SocGholish</category><category>WordPress Security</category><category>Lumma Stealer</category><category>AsyncRAT</category></item><item><title>WP Maps Pro Flaw Exploited for Admin Account Creation — Patch Now</title><link>https://runtimerebel.com/blog/wp-maps-pro-flaw-exploited-for-admin-account-creation-patch-now</link><guid isPermaLink="true">https://runtimerebel.com/blog/wp-maps-pro-flaw-exploited-for-admin-account-creation-patch-now</guid><description>Attackers are actively exploiting a critical vulnerability in the WP Maps Pro WordPress plugin to create unauthorized administrator accounts on affected sites.</description><pubDate>Mon, 01 Jun 2026 09:57:24 GMT</pubDate><category>WP Maps Pro</category><category>WordPress Security</category><category>Unauthorized Access</category><category>Account Takeover</category><category>Plugin Vulnerability</category></item><item><title>CVE-2024-2123 &amp; CVE-2024-2510: Avada Builder Patch Guidance</title><link>https://runtimerebel.com/blog/cve-2024-2123-cve-2024-2510-avada-builder-patch-guidance</link><guid isPermaLink="true">https://runtimerebel.com/blog/cve-2024-2123-cve-2024-2510-avada-builder-patch-guidance</guid><description>Critical flaws in Avada Builder WordPress plugin (CVE-2024-2123, CVE-2024-2510) allow for credential theft and LFI. Immediate update to version 3.11.7 required.</description><pubDate>Fri, 15 May 2026 16:41:00 GMT</pubDate><category>CVE-2024-2123</category><category>CVE-2024-2510</category><category>Avada Builder</category><category>WordPress Security</category><category>SQL Injection</category></item><item><title>Google Ads Phishing Campaign Targets GoDaddy ManageWP Users</title><link>https://runtimerebel.com/blog/google-ads-phishing-campaign-targets-godaddy-managewp-users</link><guid isPermaLink="true">https://runtimerebel.com/blog/google-ads-phishing-campaign-targets-godaddy-managewp-users</guid><description>A persistent phishing campaign leverages malicious Google Ads to steal GoDaddy ManageWP credentials, risking extensive WordPress site compromises.</description><pubDate>Thu, 07 May 2026 00:50:41 GMT</pubDate><category>ManageWP</category><category>GoDaddy</category><category>Phishing</category><category>Google Ads</category><category>Credential Theft</category><category>WordPress Security</category></item><item><title>Smart Slider 3 Pro 3.5.1.35 Backdoor via Supply Chain Attack</title><link>https://runtimerebel.com/blog/smart-slider-3-pro-3-5-1-35-backdoor-via-supply-chain-attack</link><guid isPermaLink="true">https://runtimerebel.com/blog/smart-slider-3-pro-3-5-1-35-backdoor-via-supply-chain-attack</guid><description>Nextend&apos;s Smart Slider 3 Pro version 3.5.1.35 was compromised via a supply chain attack. Learn how to identify and remediate the backdoor today.</description><pubDate>Fri, 10 Apr 2026 08:37:51 GMT</pubDate><category>Smart Slider 3 Pro</category><category>WordPress Security</category><category>Nextend</category><category>Backdoor</category><category>Supply Chain Attack</category></item><item><title>CVE-2023-3800: RCE Vulnerability in Ninja Forms File Uploads Extension</title><link>https://runtimerebel.com/blog/cve-2023-3800-rce-vulnerability-in-ninja-forms-file-uploads-extension</link><guid isPermaLink="true">https://runtimerebel.com/blog/cve-2023-3800-rce-vulnerability-in-ninja-forms-file-uploads-extension</guid><description>Attackers are exploiting a critical unauthenticated file upload flaw in Ninja Forms File Uploads. Secure your WordPress site and mitigate RCE risks immediately.</description><pubDate>Wed, 08 Apr 2026 00:40:52 GMT</pubDate><category>CVE-2023-3800</category><category>Ninja Forms</category><category>WordPress Security</category><category>RCE</category><category>Arbitrary File Upload</category></item></channel></rss>