[WordPress Security] Wordfence Launches Free Vulnerability Database For Commercial Use – And Launches Security Portal

From: Wordfence <list_at_wordfence.com>
Date: Wed, 14 Dec 2022 11:42:45 -0800

The Wordfence team have launched a vulnerability database free for commercial use, and a security portal.

Wordfence-Logo.png (https://email.wordfence.com/e3t/Ctc/GC+113/cwG7R04/VVSz8J8XXtCqW3TsyLV67CHv8W8Ny6Rt4TzcxdN6N1vYk3pdqSV1-WJV7CgYlXW1X6-wm7XrQ-rW4YF1Kg7JR2X-W1TT-Dg8nrtlyW32blSY7NZhx6W95rQw-7kd-6qW4HMHh_8Yq3FsVtC_QH62JvzQW82dHs42tC9cpW23dKm820FmdbW5yJxX17L7xHgW3RFcWl2QPxDRW7wVc0D4Fy9WzW3kwgKM5874yTW5x8W3S4z0D2FW5-9gDC80y8f_W8rX_R88-nL1NW58Cdk67ZkTvfW2t0-D070LkSLW4c1pCd12-kxNW2vGcSn6Sgrrc3mrc1 )

Wordfence-Intelligence-Community-Edition-2 (https://email.wordfence.com/e3t/Ctc/GC+113/cwG7R04/VVSz8J8XXtCqW3TsyLV67CHv8W8Ny6Rt4TzcxdN6N1vZc3pdrLV1-WJV7CgXv1W7bPl9S80s2JcW1FF-6Z4-_YXVW8RlB9L6VZp_pW4w82tm5kDH2zW2vMjpH21vC6RW1bqLsN5PSvY2N4L6YXK3xn3kW556WfH1_Fp6ZW38nMWw76DKhPW4zTPc04CFWfHW1lWnCJ4cd37PW6DgLjh4_9p1sW5twhsB8XhHsWW3zrGy62Mw_DRW7zghFx8Zbyb6W8HX9lb8Vpl4XV9bvlS3YyfXrW4mMWYH1R-0ZjW8NyKJ-94dDq1W7qLv1k196BBXW8LR26d80gzddW5xhHsc5yr8Z2W6thHJ81XKjy1VSY9y99f6GPzW86GzZn3kFl8KV-rx6T3Z7t4X3qnR1 )

Today we are incredibly excited to announce that Wordfence is launching an entirely free vulnerability database API and web interface, available for commercial use (https://email.wordfence.com/e3t/Ctc/GC+113/cwG7R04/VVSz8J8XXtCqW3TsyLV67CHv8W8Ny6Rt4TzcxdN6N1vZc3pdrLV1-WJV7CgXv1W7bPl9S80s2JcW1FF-6Z4-_YXVW8RlB9L6VZp_pW4w82tm5kDH2zW2vMjpH21vC6RW1bqLsN5PSvY2N4L6YXK3xn3kW556WfH1_Fp6ZW38nMWw76DKhPW4zTPc04CFWfHW1lWnCJ4cd37PW6DgLjh4_9p1sW5twhsB8XhHsWW3zrGy62Mw_DRW7zghFx8Zbyb6W8HX9lb8Vpl4XV9bvlS3YyfXrW4mMWYH1R-0ZjW8NyKJ-94dDq1W7qLv1k196BBXW8LR26d80gzddW5xhHsc5yr8Z2W6thHJ81XKjy1VSY9y99f6GPzW86GzZn3kFl8KV-rx6T3Z7t4X3qnR1 ) by hosting companies, security organizations, threat analysts, security researchers, and the WordPress user community. This is part of a larger project known as Wordfence Intelligence Community Edition (https://email.wordfence.com/e3t/Ctc/GC+113/cwG7R04/VVSz8J8XXtCqW3TsyLV67CHv8W8Ny6Rt4TzcxdN6N1vYD3pdr7V1-WJV7Cg--gN4LXW53xPkBMW2Z8vyg7rWFmWW4zpqQG3-krclW2mx7kF1hrPcKW36Jpck9dqlx3W4681Zs75Bcm9W9gY3KB7nCN_fW75fdLF9dJfkVW16FbwQ60ck42W4wCSfc4w8MyqW2RjPxC5zPFPLW6mdZJW28TpHdW3xPkXl4Y27-kW27McWR28bYhQW3pf1mf3Mp9x4W6Bm3FW2kswk8Vvftsn8bzLHyW6pchNW6TQgy2Mn9YDll-spvW8_X_6Y2ZF3SfVZGsy81qD644VHm1Gx6dyCTQ33XW1 ) , which we are launching today.

Note that this launch does not affect our plugin free and paid customers in any way. This launch is the announcement of a set of security tools and data for security analysts, businesses and developers who would like access to vulnerability data to build their own products and secure their own customers. If you are a plugin customer, we are sending this to you for informational purposes only.

This year at BlackHat in Las Vegas, Wordfence launched Wordfence Intelligence (https://email.wordfence.com/e3t/Ctc/GC+113/cwG7R04/VVSz8J8XXtCqW3TsyLV67CHv8W8Ny6Rt4TzcxdN6N1vXL5mNXrV3Zsc37CgJH7W46djnv3FxkKwW3qP-V34sfyjqW2yg8593NsRGmW8HPPcW4bv_nyN246J5dkbh7_W8SqT5K7vfy2RW6HyPsG8Q29HjW51c9_z5SvtrfW4zZXfG7Y-dJsVfL7VY4FtMTdW4NTpjh1ZdWVFW2dJJlC92f2GVW7wB4HQ7jGcYTW6b0SQl5CLl_8W95z9rn2Pdg90VY5BT32f84HLW5C-tfs3HCGlTW6NhJwx4xXxJzN8-4y3D75ymTW6yTZ4s6lhxS-W2Cgx7v6mzB_XW8cRwQY1wlYS0N29NVN9yVpcfW8VVpmz8nKMWnW6pY7Xx1cRNxNN6_KST5fjd8BW28hx7g95V5B8W84Jk5J4skYQNN3vsjWrtVkpfW2BVQc98B8v7fW41h32H5bnMwNW4gwPMy6N8M_N3lWB1 ) , an enterprise product providing organizations with data feeds derived from the attack telemetry we receive from Wordfence users. We did this with one goal in mind: to further secure the Web by enabling enterprises and network defenders with the ability to implement our threat intelligence in a way that will better secure their infrastructure and customers. Wordfence Intelligence includes malware signatures, IP threat feeds and a malware hash feed to enable enterprises to deploy our data at the network and server level.

Wordfence Intelligence Community Edition is a set of data available free for the community to use, and it includes an enterprise quality vulnerability database (https://email.wordfence.com/e3t/Ctc/GC+113/cwG7R04/VVSz8J8XXtCqW3TsyLV67CHv8W8Ny6Rt4TzcxdN6N1vYX3pdrrV1-WJV7CgVDSN7VDhXL5-7mwW3tJxqS5bVpcwW7_hB1M4-YnkpW4P7p5F5RGGzfW9fVfVb7xccfWN7VhmszR8ZrJW5ZqlRj37V1ZsW6Bq5_95Dhj8cW6cSgtY49Q8mPW5BWPFH23P6C-W4bnNzM1-wGfXW1v8x4R8zXtWsW57qR0L3H_QMPM5vN_mGKg3tVgvCp07KXKtLW2f9Fhz3w7wb7W7ZzThW8TjYxZW7Cy0K53DL9BhW7p-2FM2FSk2zN9lFPzmqNqdtW49VlpM3tS2hBN3BvXYSd6XTkW7DnFXw14W1c-W3JQ6hB6q-N6n3gjC1 ) , and an API that provides a full up-to-date download in JSON format (https://email.wordfence.com/e3t/Ctc/GC+113/cwG7R04/VVSz8J8XXtCqW3TsyLV67CHv8W8Ny6Rt4TzcxdN6N1vZQ3pdskV1-WJV7CgCpBW1s8CXC21pZVNW962lHg2tryHkW3c8PPd6JKYxwW7zYChQ6NtcfsW6MlnNP3sFpsQW3H9mfy941NxhW62xZrP2JJmw5MnZ6gMKNB2sV70g0w5ct6gKW4dGbRS2d_kRTW2-nRgq56xnKPN7MY87c4l0mkW19xSxn2-1MKQN1Q2fjP1zLsVW4Mg_qG8k7hlzW3Xm-9K5XG71lF29Q4z7scLpV30BSC6CyqFHW1499QQ36Xv-1W5ls5XY3x1bpzW5KwF4z6ZY8lcW5ntRvw2-Y6R8W7sV0Xd1wntJtW3LL4pc3vWVsHW5F0WGN4fkW3TW3Ttzfl8cccpVW59fs207bMjMqW7drx0v5bMc4hN90gWRp4HrQRW8mfVv_4nVHly22v1 ) , completely free with no registration required. We are investing heavily in this database by growing the team, maintaining and curating the existing data, and adding new vulnerabilities as soon as they are discovered.

There is no delay on how quickly we add vulnerabilities to this free database. As soon as a vulnerability is disclosed, we add it. There is also no limitation on the use of this data, other than an attribution requirement for vulnerabilities sourced from MITRE, and an attribution requirement for our own vulnerabilities. Each vulnerability record includes the data you need to provide this attribution on your user interface.

Our hope is that hosting companies, software developers and security providers will turn this data into free and commercial security products that will improve the security of the WordPress community. By giving the data away for free, and allowing commercial use, we are acting as a catalyst for innovation in the vulnerability scanning space. Individual developers no longer have an expensive barrier to entry if they want to implement a new kind of vulnerability scanning software for the community. It is our hope that this database will foster innovation in the WordPress security space and improve the security of the WordPress community as a whole.

Wordfence Intelligence Community Edition has the stated goal of uplifting the research community and raising the profile of talented security researchers who make valuable contributions to our community, and who make us all safer. To this end, we are launching with security researcher profile pages, a security researcher leaderboard (https://email.wordfence.com/e3t/Ctc/GC+113/cwG7R04/VVSz8J8XXtCqW3TsyLV67CHv8W8Ny6Rt4TzcxdN6N1vZc3pdrLV1-WJV7CgDcYN2429NJlcr76W7pWY949f0FbGW1JRnGy7h858KW8zgMwz54MdTXW71r2cH3dRPdtW4-wPg11q_SPHW1GgzTW69WjGKV6Fz-b7SMsKSW1Ndpwj1gKvbpW6L-Gv-71KplnW63g3mL2wggP8W3Mfrx76SdzWBN4j7T7Y2GtwPN8c660hM8j9YW60w_J279RwP_W4vYMxd96lzJVW84b4Qs67V70JW8npCpm2kypQBW6w8wC32X0cnTV-gJVR4MG9wCVDqQjR1MkvVqW5XLwtJ8KYD7gW6sGLkv49VRlsW4TCLRF9f933rF10r5mCT3XWN7x4G_9xr8Mn3dgt1 ) , and each vulnerability will link to the relevant researcher who discovered the vulnerability. We will also be adding the ability for researchers to edit their own profile page so that they can add links to their resume or personal website. Expect this in the coming weeks.

We will be launching web hooks in the coming weeks that will proactively and programmatically alert users and applications to the release of a new vulnerability. This provides real-time awareness of a new vulnerability, and makes the time between announcement and mitigation of a new vulnerability approach zero.

Defiant Inc and the Wordfence team are investing heavily in this vulnerability database. We are actively recruiting talented security analysts to triage inbound vulnerabilities, and we are recruiting researchers to discover new vulnerabilities in WordPress core, plugins and themes.

Yesterday evening I sat down with Chloe Chamberland, head of product for Wordfence Intelligence, in our studio in Centennial, Colorado, to chat about this exciting product that her and her team are launching today.

You can find that conversation, and a much more in-depth announcement published a few minutes ago on the official Wordfence blog... (https://email.wordfence.com/e3t/Ctc/GC+113/cwG7R04/VVSz8J8XXtCqW3TsyLV67CHv8W8Ny6Rt4TzcxdN6N1vZc3pdrLV1-WJV7CgXv1W7bPl9S80s2JcW1FF-6Z4-_YXVW8RlB9L6VZp_pW4w82tm5kDH2zW2vMjpH21vC6RW1bqLsN5PSvY2N4L6YXK3xn3kW556WfH1_Fp6ZW38nMWw76DKhPW4zTPc04CFWfHW1lWnCJ4cd37PW6DgLjh4_9p1sW5twhsB8XhHsWW3zrGy62Mw_DRW7zghFx8Zbyb6W8HX9lb8Vpl4XV9bvlS3YyfXrW4mMWYH1R-0ZjW8NyKJ-94dDq1W7qLv1k196BBXW8LR26d80gzddW5xhHsc5yr8Z2W6thHJ81XKjy1VSY9y99f6GPzW86GzZn3kFl8KV-rx6T3Z7t4X3qnR1 )

The Full Product Lineup:

wf-stacked-free-1 (https://email.wordfence.com/e3t/Ctc/GC+113/cwG7R04/VVSz8J8XXtCqW3TsyLV67CHv8W8Ny6Rt4TzcxdN6N1vYD3pdr7V1-WJV7CgVkHN1486VP_B4mDW6VyBVC8MYTkYN5fZT52zc58PM5vDJnN7R-WW5kfWv335LZTHW4YR_RS6BK80vW39QR0v7VbXQwW8vN98T7-f213N24L7QXx_yyQN5JXlRTXM7WlN4D65jNSs_gzW2jST818FNm-hVCy0TZ6QMKB3W5Wc_2r2L-BhyW7r27j95sZp-jW1St2Fx4KtWsvW23hxv_76wL_0W5XT5Gq8zZj-5W57P21p2wrjY5W5M0r6f8LwLDyV_MKJN62qgr-W36TCQM87Fg8D35pZ1 )

wf-stacked-premium-1 (https://email.wordfence.com/e3t/Ctc/GC+113/cwG7R04/VVSz8J8XXtCqW3TsyLV67CHv8W8Ny6Rt4TzcxdN6N1vYX3pdrrV1-WJV7CgFlbW6F9B6p2zcpC6VTWF5s53cJM_W83DqVl7G79DZW7Wkl8-4PJgGSW9k7Ndq5655P3W6gs_Ll3RNctCVJhMJs1kHCV8VYYnC44qtMb_W11bB7Y7b2ZJdW6klKvg1kM0skW6Dz97G4TbVMyW2r22vm7FphhMW2m3DNM3_kNY9W88_5Wg75vJKHW7QdFFW8Sg6RpW5hdRTF6nBDSlW2m0n2N6WgHTYW1LkP3r7nlXpCW4zZ8465h12rFW7CSc0d3YmrpQW4YtZN32fv5n-W6Rj1KW2f58J7W8L8P7l1vp738W7DdFyw19XqGX121 )

wf-stacked-care-3 (https://email.wordfence.com/e3t/Ctc/GC+113/cwG7R04/VVSz8J8XXtCqW3TsyLV67CHv8W8Ny6Rt4TzcxdN6N1vYD3pdr7V1-WJV7CgPDtW7JNWpt6qlF9wW5jn6-T4sb1CRW59pn5j498NqTW51XTQR3cxDZtN1Llk1QnLpzXW5mwqP78zfH15W5JqLrj5qPLxNW5MBqS3622hSzVMY9lv93lbkwVRbr5R1b4tdJW5cg8mp3grwmSW7lsj1M7x1W1-W8kkJyk4XbxJBW2lqSQT7d8bK0W7p1jtV4g0bQtN536jxpQX9gkW8920nz27H0X0W6bQ0B56xBddmW7ln7xt74RPp9N664707Sf0xPW1_DYZQ7x_R5fW3Kfg_H1MBQ9P3kqB1 )

wf-stacked-response-2 (https://email.wordfence.com/e3t/Ctc/GC+113/cwG7R04/VVSz8J8XXtCqW3TsyLV67CHv8W8Ny6Rt4TzcxdN6N1vYX3pdrrV1-WJV7CgQPQW3LTK012LSl82VdQbSP8WV1_7VWSJ6t16dWl3W50vm9H93sX3ZW1dHgFy4pZs7bW6J5n3k3p-P67W7Jc3B_3y82lHW2hWl7q5fPMrsN66P5vwjGpHcW69zpwK7RyFJwW4n6jT37sw5WgW5S2f441mHNM_W2CQ9Wc43G7sxW1GW6PC85lqj_W2rdnSB6XJtw9W2wsmbX8-rcwPW20T3vy9bWYYLVVvcnR7JcJ5jW26K6Bv3QcFyPW4Zljkn25SWVvW8v84WM6ng-3CW1sWY2062Xp6MW6zjC2y6v-GsRW2r60pS4Z1CS439781 )

wf-stacked-intelligence (https://email.wordfence.com/e3t/Ctc/GC+113/cwG7R04/VVSz8J8XXtCqW3TsyLV67CHv8W8Ny6Rt4TzcxdN6N1vYX3pdrrV1-WJV7CgZLjVNKt_n5ZyDLxVhxYfw90rckYW683st23TDwCGW81dvFz6VbHlRW1TFqRQ1JFKWFW4LX5r65MZ4r_VN45TK3v1RPnVRJ3lx9ld4LvW10LdZJ3vJsK-W63MbWd99R2MZW4SdV5H8cMLGHN33GqvCx1BQhN12T4QMYKhXQVB9hld5JcYJXW3-MNtn6l0tqTW1m1p4m4gXfcsW6KVFQk20V7N0W2cPpz82cP1KVW1x4WrH5n8vzjW7DWq289g-ZPXW2XBzDm8Yqkg7W4x_V4N83skY7W1gVJXg8NgVLGW7gwB_111WlTK3lRG1 )

logo-defiant (https://email.wordfence.com/e3t/Ctc/GC+113/cwG7R04/VVSz8J8XXtCqW3TsyLV67CHv8W8Ny6Rt4TzcxdN6N1vYk3pdqSV1-WJV7CgRpNW5VDmFT1Nv176W7r4WVp6JY5p6W6JPf302FkcdZW7TGQ8T6bJP0tW9hJv753GNjsDW3dzT3f6m-VKRW72ShPS5QtkjhW3BvH6F5rMTB7N8rxrGZp_yXpW8W7fz52b1TQFN85_HkH-3w7yW97946M24rZN7W82DFC13wBPfwW3FxdHG8XXJwpN5S70bGkCt8tW3-dL7D7Hr-3HW3G2rpp71GxYXN7V-QXZ9-gS6TFVdz8rVGCmW2M_GD96R90-W3gTn1 )

Defiant, Inc., 1700 Westlake Ave N STE 200, Seattle, WA 98109, United States

Unsubscribe (https://email.wordfence.com/hs/manage-preferences/unsubscribe-all?languagePreference=en&d=Vn8Pp4892TtnVsxx1M3JN_XyW41Rcn-4h29fmN6J4V3WmWcPsW51HLC_6G5gWKV25BCj8SqngvW6lTD7b6PMZ05N7FMbBL1yf0NN31GX-bxJPJ4MZ_Xt8sFQmcn1l3KYq433&v=3&_hsenc=p2ANqtz---IkhdAe-uvx7Ns4eqfBd64QHvIKpO2d8Gctrsun_NQMV0_zGoaMJ8wKsUL8wF1J3Tc0Ar9kIxBCGG0FHsyai7ZuAkAg&_hsmi=237954366 )

Manage preferences (https://email.wordfence.com/hs/manage-preferences/unsubscribe?languagePreference=en&d=Vn8Pp4892TtnVsxx1M3JN_XyW41Rcn-4h29fmN6J4V3WmWcPsW51HLC_6G5gWKV25BCj8SqngvW6lTD7b6PMZ05N7FMbBL1yf0NN31GX-bxJPJ4MZ_Xt8sFQmcn1l3KYq433&v=3&_hsenc=p2ANqtz---IkhdAe-uvx7Ns4eqfBd64QHvIKpO2d8Gctrsun_NQMV0_zGoaMJ8wKsUL8wF1J3Tc0Ar9kIxBCGG0FHsyai7ZuAkAg&_hsmi=237954366 )

You're receiving this email because you signed up to the Wordfence WordPress security mailing list.
Received on Wed Dec 14 2022 - 20:42:48 CET

This archive was generated by hypermail 2.3.0 : Wed Dec 14 2022 - 20:52:28 CET