Saturday, March 3
Eric Mann, founder of Displace Technologies, LLC has today has launched a great plugin called DGXPCO. It stands for Digital Guarantees for eXplicitly Permitted Core Operations.
This plugin is available at the plugin directory of WordPress.
Once you install this plugin and activate, it integrates with the main updater and this plugin requires that every core updater must have digital valid signature before it is installed. This signature provides the proof that developer has signed it before providing it to you.
If there is no digital signature provided in your core updater, you must be aware that someone has spammed your updater. Thus, digital signature in such themes and plugins helps to protect 27% of total websites.
The signatures are created using Ed25519 public/private keypair and libsodium to sign file contents.
Mann admits that the solution is not full proof and is working towards improving it.
Check our website for WordPress News and Tutorials.
Read more on WordPress Planet
Check out other WordPress News here.