WordPress tightens security with two-factor authentication

Share this article:

WordPress.com will now offer two-factor authentication as an opt-in capability for its millions of users to defend against account compromises.

Gary Pendergast, a developer at Automattic, the parent company of the popular web publishing platform, announced in a blog post late last week that users can now be prompted to enter “secret” codes upon logging into their accounts. These codes can be accessed either through the Google Authenticator app, which generates one-time login codes, or via SMS messages delivered to mobile phones.

WordPress.com sites have faced security issues in the past and are known to be a target for cyber criminals who leverage vulnerabilities to spread malware, such as the Flashback trojan, which infected Mac OS X systems.

The new feature comes on the heels of Apple's recent addition of “two-step verification,” which further protects its online account users through a similar process.
Share this article:

Sign up to our newsletters

More in News

Study shows how attackers make use of websites existing for less than 24 hours

Study shows how attackers make use of websites ...

Looking at the top 50 of parent domains that produced websites existing for less than 24 hours, researchers with Blue Coat Security Labs observed that 22 percent were malicious.

Phishing campaign lures victims with models' photos

Two nude models' photos reeled in unsuspecting victims who handed over their Facebook logins to gain access to adult material.

IBM projects 2014 bug disclosures may hit three-year low

IBM projects 2014 bug disclosures may hit three-year ...

The number of disclosed vulnerabilities is on track to fall below 8,000 this year, a first since 2011.