"I think that there is a bigger picture to look at here. The Joomla CMS is just another example of a 3rd party application being vulnerable due to lack of security ownership.
We have been looking deeply into CMS systems such as WordPress, Joomla and others lately. There is a clear appetite for hackers to look into vulnerabilities in CMS software, and more important – custom plug-ins. There have already been several studies showing both the consumer growth of the CMS deployment, but also the vulnerable stage of it. This extends to more than just CMS systems, but to every piece a of 3rd party application that one might implement in their organization. And while bringing the organization forward in technology, all of a sudden you lack patch control. You have to rely on the vendor to execute security best practices. Unfortunately we live in a world where security is yet to be something you outsource completely.
- BARRY SHTEIMAN, SENIOR SECURITY STRATEGIST, IMPERVA
- Talking Point
- Posted On