28 Sep 2022

Kaspersky Looks to Have Shuttered the Threatpost, the Security News Outlet They Secretly Own

When it comes to try to better understand the security risks that WordPress websites face, one big problem is that security companies and security journalists are often spreading inaccurate and far too often outright false information related to that. In one recent example, news outlets were baselessly claiming, among other things, that hundreds of thousands of WordPress websites had been hacked.

One of the outlets that was a frequent source of that inaccurate information has been the Threatpost. That they would provide misinformation, while being a news outlet, isn’t all that surprising consider they were not even honest about who owned them. As for years they have hidden that they were owned by the major Russian security company Kaspersky. Here is how the About page of their website currently reads: [Read more]

2 Nov 2018

With a Source Like This It is No Wonder Security Journalism Is Making WordPress Websites Less Secure

Recently an instance of security journalism received a significant spotlight and significant pushback. Bloomberg claimed that a malicious chip had been found in servers used by Apple and Amazon, which both Apple and Amazon categorically denied. Either there is a significant cover up or Bloomberg got things very wrong. The latter possibility wouldn’t surprise us since from what we have seen over the years security journalism is filled with inaccurate and outright false claims, much of that coming from people in the security industry that either don’t know what they are talking about or are intentionally spreading false information. Security journalists seem to not be interested in avoiding that.

Last week we discussed a situation where security journalists were spreading false information due in part to relying on a single source that didn’t really know what he was talking about. Since then, we had an interaction with that source that made it clear that they are not a source that should be relied on alone (or maybe at all) as these journalists had done and that seems to be a good example of why security journalism is in such bad shape, which in turn is actually making WordPress websites (and websites in general) less secure. [Read more]