Wordfence is a organization tracked across 3 threat clusters and 2 intelligence report mentions on ThreatCluster. First observed November 4, 2025; most recent activity May 15, 2026.
Wordfence is a leading cybersecurity company focused on WordPress security, best known for its Wordfence Security plugin that provides firewall, malware scanning, login protection, and threat intelligence. It is significant because WordPress powers a large portion of the web, making plugin vulnerabilities a major attack surface; Wordfence actively tracks, advises on, and mitigates WordPress security threats, including plugin exploits.
Two vulnerabilities in the Avada Builder plugin for WordPress, affecting approximately one million installations, allow unauthorized access to sensitive data. The first vulnerability enables hackers to read arbitrary…
A security vulnerability in the Post SMTP plugin, used in over 400,000 WordPress installations, has been discovered that enables unauthenticated attackers to take control of administrator accounts and entire WordPress…
A critical vulnerability in the Post SMTP plugin, used by over 400,000 WordPress sites, has been discovered, allowing unauthenticated attackers to hijack administrator accounts. The flaw enables attackers to access…