Botnet blasts WordPress sites with configuration download attacks

Security researchers at WordFence, a company that’s focused on securing WordPress, have reported a burst of old-school attacks that are after your WordPress configuration data. In a default installation of WordPress, whether you’ve installed it yourself or are using a hosted service, the configuration file should be off limits to outsiders.

Read full article on Naked Security