The WP Minute

Gravitas of Gravatar


Listen Later

Was Gravatar hacked or not? It depends on what you have read or what your definition of “hacked” is I suppose. The password breach monitoring service HaveIBeenPwned alerted users to a large-scale data leak by Gravatar, an add-on service for user profiles owned by Automattic.
In October 2020, a security researcher published a technique for scraping large volumes of data from Gravatar, the service for providing “globally unique avatars," HaveIBeenPwned warned. This technique allowed the details of just under 114 million users to get into hackers' hands.
Sarah Gooding over at WPTavern wrote that Automattic said they were not hacked. The Gravatar service gives you control over what you want to share online through their API.  So this information can be made public and somebody can scrape that data and use it nefariously. 
Jeff Chandler pointed out that this has been an issue since 2009 and shared the information from developer.it. Security researchers and privacy advocates have warned about privacy attacks on Gravatar for years.
Gravatar did not send out notices about the breach and left it to the user to accept the risk or use something other than Gravatar.
WordPress updates
There is a new directory for FSE block themes. Over on make.WordPress.org during the run-up to the release of 5.9 developers should note that the directory names for templates and template parts are being changed.  With the release of 5.9 these will instead be:
templates
parts
It's pretty straightforward.
Events
Ellen Bauer will be sharing a twitter space with Justin Mahinyala discussing #Freelance opportunities for developers, designers, writers, and marketers in the #WordPress ecosystem. They will share advice and tips on how to get started. DM any questions you want them to talk about.
...more
View all episodesView all episodes
Download on the App Store

The WP MinuteBy Matt Report & Matt Medeiros

  • 5
  • 5
  • 5
  • 5
  • 5

5

1 ratings


More shows like The WP Minute

View all
Planet Money by NPR

Planet Money

30,662 Listeners

The Joe Rogan Experience by Joe Rogan

The Joe Rogan Experience

225,684 Listeners

WP Tavern by WordPress Tavern

WP Tavern

72 Listeners

Podcast – Kitchen Sink WordPress by Adam Silver

Podcast – Kitchen Sink WordPress

25 Listeners

WP-Tonic | WordPress | SaaS  | Bootstrap SaaS | Startups by Jonathan Denwood & Kurt von Ahnen

WP-Tonic | WordPress | SaaS | Bootstrap SaaS | Startups

78 Listeners

The Ben Shapiro Show by The Daily Wire

The Ben Shapiro Show

153,399 Listeners

WP Builds by Nathan Wrigley

WP Builds

31 Listeners

The Daily by The New York Times

The Daily

110,602 Listeners

Syntax - Tasty Web Development Treats by Wes Bos & Scott Tolinski - Full Stack JavaScript Web Developers

Syntax - Tasty Web Development Treats

986 Listeners

The Diary Of A CEO with Steven Bartlett by DOAC

The Diary Of A CEO with Steven Bartlett

7,094 Listeners

Web Design Business with Josh Hall by Josh Hall

Web Design Business with Josh Hall

104 Listeners

The WP Minute+ by Matt Medeiros

The WP Minute+

1 Listeners

Simple Marketing & SEO | Online Marketing Tips for Website Traffic, Leads, and Sales by Rachel Lindteigen | SEO and Marketing Expert: Business Growth Coach

Simple Marketing & SEO | Online Marketing Tips for Website Traffic, Leads, and Sales

17 Listeners

Within WordPress by Within WordPress with Remkus de Vries

Within WordPress

0 Listeners

Breakdown - A Gravity Forms Podcast by Gravity Forms

Breakdown - A Gravity Forms Podcast

1 Listeners