Nestor Angulo's Avatar

Nestor Angulo

@nestorangulo.pro.bsky.social

Technology enthusiast, Computer Science Engineer, and Web Security expert by contact and by certification (CISSP). Head of Security and Brand Ambassador @ @patchstack.com

34 Followers  |  37 Following  |  6 Posts  |  Joined: 26.11.2024  |  1.5973

Latest posts by nestorangulo.pro on Bluesky

Preview
Who’s Behind FAIR? Inside the Coalition Seeking to Redefine WordPress Software Distribution The launch of the FAIR Package Manager — built in secret, backed by the Linux Foundation, and announced last week alongside WordCamp Europe — has sparked a wave of conversation across the WordPress ecosystem.

Who’s Behind FAIR? Inside the Coalition Seeking to Redefine WordPress Software Distribution

www.therepository.email/whos-behind-...

13.06.2025 13:32 — 👍 6    🔁 4    💬 0    📌 1
Preview
Something Has to Change with WordPress. FAIR is a Great Start. Last week in Basel, Switzerland—at the Alt Ctrl Org conference held alongside WordCamp Europe—I stood on stage with my colleagues to introduce the FAIR Package Manager for WordPress. This wasn’t just ...

What is FAIR and why am I involved? I wrote about it here:
carriedils.com/wordpress-fa...

#FAIRPM #WordPress

13.06.2025 16:23 — 👍 13    🔁 4    💬 0    📌 0
Preview
Linux Foundation Announces the FAIR Package Manager Project for Open Source Content Management System Stability Linux Foundation announces FAIR Package Manager project, creating simplicity, security and consistency for the WordPress ecosystem

We're delighted to launch the FAIR Package Manager with the Linux Foundation - read our announcement and come collaborate with us! #FAIRPM

www.linuxfoundation.org/press/linux-...

06.06.2025 18:42 — 👍 79    🔁 41    💬 1    📌 15

Curioso nombre 😂. Gracias Nahuai!

17.04.2025 12:21 — 👍 1    🔁 0    💬 0    📌 0
Post image Post image Post image Post image

Goodbye #osday25 and goodbye Florence 🥺

Soon, I will post a summary of this amazing event, but before I do, I just wanted to quickly thank all the organizers for organizing the BEST event ever 🤘

Thank you and see you next year 👋

22.03.2025 11:07 — 👍 5    🔁 1    💬 0    📌 0
Video thumbnail

💻 #CloudFest Hackathon day 2 is in full swing and the team, led by Nestor Angulo De Ugarte and John Blackbourn, is racking their brains. 🧠⚡️

Curious to see the results? See the final presentations tomorrow at 3:55 PM at the Ring Stage in Europa Park. 👀

#CFHack #CFHack2025 #cloudfest

16.03.2025 20:20 — 👍 5    🔁 2    💬 0    📌 0
A group of people gathers around a presenter who is explaining ideas on a whiteboard at a hackathon event. The presenter, a bearded man in a dark shirt, gestures towards the board, which contains handwritten notes under the title “CVE IS COMING! Securing the Supply Chain.” Participants wear conference badges and lanyards, with some taking notes and others listening attentively. The venue has a high ceiling, decorative elements including a wooden ship mounted on the wall, and large windows letting in natural light. Banners in the background display event branding, with text such as “CloudFest Hackathon” and “Next-Gen Security for Open Source.” Tables with laptops and event materials are also visible in the room.

A group of people gathers around a presenter who is explaining ideas on a whiteboard at a hackathon event. The presenter, a bearded man in a dark shirt, gestures towards the board, which contains handwritten notes under the title “CVE IS COMING! Securing the Supply Chain.” Participants wear conference badges and lanyards, with some taking notes and others listening attentively. The venue has a high ceiling, decorative elements including a wooden ship mounted on the wall, and large windows letting in natural light. Banners in the background display event branding, with text such as “CloudFest Hackathon” and “Next-Gen Security for Open Source.” Tables with laptops and event materials are also visible in the room.

How can you tell if the software and extensions (plugins/themes in #WordPress) have insecure dependencies? Software Bill of Materials. Stay tuned.

15.03.2025 19:43 — 👍 14    🔁 2    💬 2    📌 0
Preview
Arbitrary File Upload Vulnerability Patched in Chaty Pro Plugin Learn about the critical security vulnerabilities in the Chaty Pro plugin. Protect your site from unauthorized access and potential takeovers.

Unauthenticated Arbitrary File Upload Vuln in Chaty Pro plugin 🛡️

It suffers from an arbitrary file upload vuln. An attacker can upload a malicious file and take over the site 🚫

It was fixed in 3.3.4 ✅

With Patchstack protection activated, you're already protected 🛡️

patchstack.com/articles/una...

05.03.2025 08:57 — 👍 3    🔁 2    💬 0    📌 0
Preview
Issue #248 - Automattic hit with class action over WP Engine dispute

Out now: The Repository #248 🗞️

⚖️ Automattic hit with class action over WP Engine dispute
😓 Core committers raise concerns as development stalls
🌥️ CloudFest Hackathon 2025
🚺 WordPress communities celebrate IWD
🌏 WordCamp Asia 2025 recap

therepository.email/248

28.02.2025 13:08 — 👍 3    🔁 1    💬 1    📌 1
Is Drupal CMS a good alternative to WordPress? ft Steve Persch, Pantheon
If you're looking to expand beyond WordPress and are on the lookout for suitable alternatives, you're in the right place! 👀 Joining us for this episode is S... Is Drupal CMS a good alternative to WordPress? ft Steve Persch, Pantheon

I had a lot of fun recording this with Steve. 🎬

#Drupal has some interesting solutions baked in - including using AI agents, recipes, and Symfony under the hood. Also, it has a different philosophy behind it. 💡

www.youtube.com/watch?v=u3t...

21.02.2025 09:14 — 👍 3    🔁 1    💬 0    📌 0
Preview
Critical Privilege Escalation Patched in KLEO Theme's Plugin - Patchstack A critical privilege escalation vulnerability was found in the K Elements plugin, affecting KLEO theme users. Update to version 5.4.0 to stay secure. Patchstack customers are already protected.

Critical Privilege Escalation Patched in KLEO Theme’s Plugin. 🔒

It occurs due to broken logic in the FB social login process. ❌

Update it immediately to at least 5.4.0 ⬆️

If you have Patchstack protection enabled, you're already protected. ✅

patchstack.com/articles/cri...

20.02.2025 10:04 — 👍 2    🔁 2    💬 0    📌 0
Patchstack WCASIA CTF

In the mood to test your CTF skills 😜?? There is an open CTF now happening in #WordCamp Asia 2025, you can participate it from any place in the world. 😉We've also put out over $3000 of cash prizes for the top 5.
Have fun! ctf.patchstack.com
#infosec #wcasia2025 #WordPress #bugbounty

20.02.2025 10:57 — 👍 1    🔁 0    💬 0    📌 0
Teaser: Is Drupal CMS a Good Alternative to WordPress? ft. Steve Persch, Pantheon
Join us for a webinar covering the key differences between Drupal CMS and WordPress if you're looking for a suitable alternative! The full episode will be li... Teaser: Is Drupal CMS a Good Alternative to WordPress? ft. Steve Persch, Pantheon

I enjoyed discussing everything #drupal with Steve Persch from #pantheon. 🎉

The full interview will be out on 21st Feb, but you can already watch the teaser:
www.youtube.com/watch?v=9p8...

and you can subscribe for the final video (link in the comment): 🔔

17.02.2025 10:35 — 👍 1    🔁 1    💬 1    📌 0

El tema es que dice en su artículo que redireccionará los recursos resultantes de esa reducción a la batalla legal con WPEngine (y a actualizaciones críticas y de seguridad)...

11.01.2025 07:30 — 👍 0    🔁 0    💬 1    📌 0

Entiendo que si, y asi deseo. Pero es una consecuencia inmediata, imagino.

10.01.2025 20:26 — 👍 0    🔁 0    💬 1    📌 0

Mi pregunta sería si esto implicaría "liberar" el equivalente en ingenieros y demás personal de .org.

10.01.2025 17:06 — 👍 0    🔁 0    💬 1    📌 0

🚨 Critical Vulnerability Patched in GiveWP Plugin.

Versions 3.19.3 and below suffer from an unauthenticated PHP Object Injection vuln. 💻

This was fixed in version 3.19.4, so update ASAP. 🛠️

As a paid Patchstack user you're protected from this vuln🛡️

patchstack.com/articles/cr...

10.01.2025 13:21 — 👍 4    🔁 4    💬 0    📌 0
Preview
Critical Vulnerabilities Found in Fancy Product Designer Plugin - Patchstack Critical vulnerabilities discovered in the Fancy Product Designer plugin: unauthenticated arbitrary file upload and SQL injection. Stay protected with Patchstack.

Critical Vulnerabilities Found in Fancy Product Designer Plugin! 🚨

It suffers from Unauthenticated Arbitrary File Upload and SQL Injection vulnerabilities. ⛓️‍💥

No patch was released. 😔

As a paid Patchstack user you're protected from this vulnerability🛡️

patchstack.com/articles/cr...

09.01.2025 10:42 — 👍 2    🔁 2    💬 0    📌 0

So you don't miss me @ciudadanob.com ? 🤣
I can take @maciekpalmowski.dev to Spain if you push for having English tracks in any Spanish WordCamp.

29.12.2024 21:53 — 👍 2    🔁 0    💬 0    📌 0

@nestorangulo.pro is following 20 prominent accounts