
Allegations that the popular WPForms Lite plugin added a backdoor to WordPress sites triggered widespread panic among business owners. Independent testing debunked the claims, but the situation offers crucial lessons on software security and modern AI search visibility.

A maximum-severity 9.8 security vulnerability in the WooCommerce Social Login WordPress plugin allows unauthenticated attackers to gain full administrator access to e-commerce stores. Exploiting a flaw in the Apple login authentication process, hackers can bypass passwords using just an email address. Immediate updates are required to protect store data, customer trust, and AI search engine visibility.

Cloudflare's PACT (Private Access Control Tokens) is a new protocol designed to separate human users from automated agents, replacing traditional CAPTCHAs and improving online security. Although PACT is not yet live, local business owners must prepare their websites for the evolving landscape of AI traffic and agentic search. By understanding this transition, businesses can ensure their sites stay secure and visible to AI search engines.
Google's recent rebranding of NotebookLM may expose websites to more AI scraping without attribution. Learn how to protect your site and prevent unauthorized content usage.
Get the top AI-search and GEO stories in your inbox once a day, no spam.