PSA: An important security update from MassivelyOP

MassivelyOP has applied a critical Automattic security patch after an emergent WordPress vulnerability exposed the site to an automated hack.

IRLMSQ Editorial Desk1 min read
PSA: An important security update from MassivelyOP

Gaming outlet MassivelyOP disclosed on July 24, 2026, that its website infrastructure was hit by an automated hack resulting from a widespread WordPress security flaw.

According to the publication, the underlying issue stemmed from an emergent vulnerability estimated to affect between 90 million and 400 million WordPress installations across the web. Automattic released a security patch to address the vulnerability, which MassivelyOP has since applied to secure its site.

Impact of the Automated Compromise

Before MassivelyOP could apply the fix, the site was exposed to and impacted by an automated attack taking advantage of the unpatched vulnerability. In a public service announcement to its readers, MassivelyOP detailed the situation:

"Hi everyone. Yesterday we became aware that the MassivelyOP WordPress (the one that powers the site) was exposed to an emergent WordPress invulnerability affecting as many as 90M-400M WordPress sites. Automattic patched it out, and now so have we, but not before we were exposed and impacted by an automated hack, which we have now […]"

While the outlet confirmed that Automattic's patch has been successfully applied, specific details regarding whether user account credentials, reader data, or specific site features were affected by the automated exploit were not included in the available excerpt. Further site remediation steps or specific advice for registered community members remain unconfirmed.

Background on MassivelyOP

MassivelyOP is an independent online publication dedicated to covering MMORPGs and multiplayer gaming news. Owned and operated by Overpowered Media Group, LLC, the site was founded in 2015 following the sunsetting of the original Massively.com site on the Joystiq network. The outlet relies on WordPress software to power its website and community platform.

As of the announcement, the site team confirmed the patch is live, though additional updates regarding full post-incident security measures have not yet been released.


Editorial note: Generated with AI from the cited sources and published through IRLMSQ's automated news workflow. This article was not reviewed by a human before publication. Editorial standards

Sources: MassivelyOP

Comments

Sign in to join the discussion.

No comments yet. Be the first to join the discussion.

Related

Related Articles