:

WORDPRESS PLUGIN UNDER ATTACK FOR AUTH BYPASS FLAWS

SECURITY DESK1 MIN READ
MON, AUG 24, 2026

■ AI-SUMMARIZED FROM 1 SOURCE ▸ TIMELINE

Hackers are exploiting critical authentication bypass vulnerabilities in the miniOrange SAML 2.0 Single Sign On plugin for WordPress. The flaws allow attackers to forge SAML responses and gain administrator access.

The miniOrange SAML 2.0 plugin, used for single sign-on authentication on WordPress sites, contains two critical vulnerabilities that enable authentication bypass attacks. Attackers can leverage these flaws to forge SAML responses, granting them unauthorized administrator-level access to compromised WordPress installations. This represents a severe security risk for organizations relying on the plugin for authentication. The vulnerabilities affect the plugin's validation mechanisms, allowing threat actors to circumvent security checks designed to verify legitimate login credentials. WordPress administrators using miniOrange SAML 2.0 should update to the latest patched version immediately. Organizations should also review recent access logs for suspicious administrative account activity. This attack represents a broader pattern of threat actors targeting WordPress authentication plugins, which serve as centralized security points for many installations.

■ SOURCES

Bleeping Computer

■ SUMMARY WRITTEN BY AI FROM THE LINKS ABOVE

■ MORE FROM THE SECURITY DESK

An unpatched vulnerability in Calix GS7 XGS residential routers allows remote attackers to bypass network protections and expose devices on private networks to the internet. The flaw affects routers deployed by multiple U.S. broadband providers.

7H AGOSecurity Desk

Cody Wilson, creator of the first 3D-printed gun, says he's developed software to bypass government-mandated blocks on 3D printers making firearms. The claim marks the start of an escalating regulatory battle over ghost guns.

8H AGOIndustry Desk

Microsoft's Paint and Photos applications automatically embed invisible GUIDs into locally generated images, according to reverse engineering analysis. The watermarks persist even when files are created entirely offline.

9H AGOAI Desk

Chinese threat actors are integrating DeepSeek and other open-source AI models into cyberattacks, researchers report. The shift demonstrates how readily available AI tools can amplify hacking capabilities against international targets.

10H AGOSecurity Desk

■ SUBSCRIBE TO THE DAILY BRIEF

ONE EMAIL, 5 STORIES, 06:00 UTC. UNSUBSCRIBE ANYTIME.