Automattic security Account

  • Unknown's avatar

    Hello,
    Today a email was sent from my website by the Wordfence plugin at Friday 25th of May 2018 at 10:48:02 AM (Paris Time) : A user deactivated Wordfence on my WordPress site.
    The IP of the user is a Automattic IP : 192.0.117.240
    I have read this : ‘there has been no security breach for user accounts at WordPress.com. But if someone else has your WordPress.com account credentials, they could log in and modify your site.’
    My Automattic password was strong, I don’t share it with someone else and I used this password only on Automattic’s Website
    With the New RGPD law : I must declare all the security breaches to the competent authorities Automattic is one of them. But how contact them officially?

  • Unknown's avatar

    I will type modlook into the sidebar tags on this thread for a Staff follow-up. How do I get a Moderator/Staff reply for my question? https://en.support.wordpress.com/getting-help-in-the-forums/#how-do-i-get-a-moderatorstaff-reply-for-my-question

  • Hi there,

    I want to reassure you that there has been no security breach for user accounts at WordPress.com. But if someone else has your WordPress.com account credentials, they could log in and modify your site.

    WordFence notified us of a malicious plugin being installed on some accounts, so we are investigating and will be in touch with those account owners. We’ll also take steps to ensure that none of our users accidentally install that plugin.

    In the meantime, we encourage all users to pick a strong password and use 2FA. https://en.support.wordpress.com/selecting-a-strong-password/

  • The topic ‘Automattic security Account’ is closed to new replies.