Reading view

Scientists Make First Viruses Designed By AI

An anonymous reader quotes a report from The Guardian: Scientists have made the first viruses designed by artificial intelligence in a milestone that raises hopes for new medicines but also concerns over how to ensure the technology remains safe. The viruses are specific kinds known as bacteriophages, which only infect bacteria and are used around the world to treat patients with persistent infections. In lab tests, a cocktail of the AI-designed viruses killed E coli bugs that were resistant to natural bacteriophages. Dr Brian Hie, a chemical engineer at Stanford University in California, used genome language models, the genetic equivalent of the large language models behind AI chatbots, to design functioning genomes for bacteriophages. The viruses were then made in the laboratory and pitted against E coli in a dish. The ability to "rapidly design" genomes and tune them for specific bugs while overcoming resistance could "transform phage therapy" and "expand biotechnological toolkits," the researchers wrote in the journal Science. But beyond the potential benefits, the scientists said the work raised "important biosafety, biocontainment and biosecurity considerations" and urged others who were designing whole genomes to "consult both safety and security professionals throughout the project." In an accompanying article, Prof Tom Inglesby and Dr Moritz Hanke at the Center for Health Security at Johns Hopkins University in Baltimore, reinforced the warning, writing: "Although this is promising for life sciences applications, it also raises urgent biosafety and biosecurity questions. The ability to compose viral genomes using generative AI now exists; the governance to safely steer it does not." Tom Ellis, a professor of synthetic genome engineering at Imperial College London, said the work was impressive, but revealed how hard it would be to make more complex genomes. "This is literally the smallest and easiest genome to make," he said. An AI trained on the genetic code of dangerous bugs could be used to design more harmful viruses, Ellis said, but controlling access to genetic data and having restrictions on making genomes that look dangerous would help. "Governments are working hard to do this already," he added. "But honestly," he said, "the threat from full AI design and writing of a genome of a virus or bacteria is very overblown when we consider that just taking existing pathogens and making gain-of-function changes to their genomes is so much easier and much more likely to be a real pathogenic threat." Dr Filippa Lentzos, a reader in science and international security at King's College London, said the most important point to intervene at the moment was when DNA was being manufactured. "It's important to see the bigger governance picture and not focus regulation solely on the AI model," she said. "A layered approach makes more sense: safeguards around model development and access, responsible research review, synthesis screening, and established laboratory biosafety and biosecurity."

Read more of this story at Slashdot.

  •  

[PROMO] I got tired of resizing 4K screenshots, so I built a Gutenberg paste optimizer

I use a 4K monitor, so screenshots for my WordPress posts are often much larger than I need.

My usual workflow was:

- Resize the screenshot

- Convert it to WebP

- Upload it to WordPress

- Add alt text and insert it into the post

Some screenshot tools can handle the resizing and conversion, but uploading and inserting the image is still another step.

That’s why I built **KXNotes Image Paste Optimizer**.

Now I can copy a screenshot, press **Ctrl+V** in Gutenberg, and the plugin automatically:

- Resizes and converts it to WebP

- Generates a readable filename and alt text

- Uploads and inserts it at the cursor

Everything runs on your own WordPress server—no cloud service, external AI API, or telemetry.

https://wordpress.org/plugins/kxnotes-image-paste-optimizer/

Would this fit your content workflow? What should I improve next?

submitted by /u/zkxy8723
[link] [comments]
  •  

Court Orders Meta To Establish $567 Million Fund To Abate Harms To Youth

A New Mexico court ordered (PDF) Meta to create a $567 million fund to address harms linked to youth mental health and child sexual exploitation after finding its platforms constituted a public nuisance. "In sum, the Court finds that New Mexico is in the midst of a teen mental health crisis affecting public health and public safety in and throughout the state, and that Meta's platforms are a significant contributing cause to the crisis," wrote Chief Judge Bryan Biedscheid in the decision. The fund comes on top of $375 million in civil penalties, though the judge declined to mandate changes to features such as infinite scroll and autoplay, citing potential First Amendment and Section 230 concerns. Tech Policy Press reports: The decision follows the second phase of in the State of New Mexico v. Meta Platforms Inc., which consisted of a bench trial. Its central question was whether Meta's platforms amounted to a public nuisance in New Mexico, and, if the court found that they did, what remedy would be needed to address it. In March, a Santa Fe jury found Meta liable for violations of New Mexico's Unfair Practices Act, awarding $375 million in civil penalties. The jury deliberated less than a day following that nearly seven-week trial. The $567 million abatement fund would be in addition to the civil penalties, according to today's decision. New Mexico Attorney General Raul Torrez sued Meta in December 2023, alleging the company made false public statements about the safety of its platforms while knowing internally that its products facilitated child sexual exploitation. The court denied Meta's Section 230 defense in May 2024. In today's decision, the court again asserted that "Section 230 does not preclude the State's public nuisance claim," but the decision attempted to thread the needle on issues that the court determined might have run "afoul" of the statute, or of the First Amendment, such as issuing remedies around any particular product feature.

Read more of this story at Slashdot.

  •  

Starting a total rebuild and have a range of questions...

I have been trying to build a website using Wordpress since May. I am not a coder and I not especially technical but I think I am reasonably adept at working most things out. I spent many years on Squarespace (before they borked it) and never had problems.

I started using the Wordpress Management in my CPanel (see pic 1) but after a while of building it all felt clunky. So I deleted everything and went back to scratch, downloading the Wordpress App through the Applications (see pic 2).

This was going well until early this week when, after an auto update, I was suddenly having problems getting a JSON response. I went through all the fixes and couldn't get it sorted. It also deleted a bunch of template and patterns I had created.

So I again deleted EVERYTHING (I saved all my written content into a Word doc) - uninstalling everything, detatching, you name it. Essentially created a new admin, the works. Started with the basics of Twenty-Twenty Five and it seemed to be OK, but I am nervous about uploading any new themes or plugins (which I will need to do).

I have a new theme with associated plugins (paid for by my bro who uses Wordpress - lucky sis!) but I don't know whether to start over using the first method or the second method.

What I really want is to be able to design some graphics and use them on blank templates, so that each page of my site is similar but not the same - main content layout the same or similar, dropdown menu the same, footer the same, but with some graphic variations. I truly did not think it would be this difficult. I have even used blocks wherever possible.

My future business has no shop, no major photograph stuff (so not gallery type or image heavy), no blogs with comments. Just a bunch of pages with different services and explanations for my freelance future.

I'm also worried I'll find myself back with the JSON response issue which I never figured out how to fix.

If anyone has advice or is willing to work through this with me, I'll be grateful. I don't want to go to Wix Studio or similar - the cost is prohibitive considering my pages will all be mostly static and without online store features or sales. I knew Wordpress was a steep learning curve but after four months, it is starting to feel harder than it needs to be.

Thanks in advance, Redditors.

submitted by /u/PaynesGrey178
[link] [comments]
  •  

[Promo] I built a PayPal & Stripe plugin that includes Subscriptions for WooCommerce. It’s 100% free, no pro version.

I've been building WordPress plugins since 2014 and I've used WooCommerce a lot.

I got really tired of paying $279 per year for the WooCommerce Subscriptions plugin, so I built my own plugin. I also really didn't like how buggy WooCommerce's PayPal & Stripe plugins where, so I built those into the plugin as well.

I decided to build this plugin to give back to the open-source community, so it's 100% free. No paid version, no upselling, no collecting emails or anything like that. Support is also free.

It's on the WordPress Repository: Accept PayPal & Stripe with Subscriptions for WooCommerce

(I added Promo to my post title, but I am not actually promoting anything paid, it's all free)

submitted by /u/wp_plugin
[link] [comments]
  •  

12 new vulnerabilities patched in WordPress

Obviously after OpenAI model found the WP2Shell Remote Code Execution 3 weeks ago - everybody noticed. So other AI and security companies including Anthropic, PWNai and Aikido wanted to prove they can too 🙂

7.0.3 release post: https://wordpress.org/news/2026/08/wordpress-7-0-3-release/

Patchstack security advisory: https://patchstack.com/articles/wordpress-7-0-3-released-12-vulnerabilities-found-and-fixed/

submitted by /u/ded1cated
[link] [comments]
  •  

WordPress took a beating this past month...

WordPress took a beating this past month. The newest AI models are finding and writing code to exploit vulnerabilities that sat hidden for years.

Nobody caught them until these latest model releases. So now we are dealing with the fallout...

WordPress 7.0.3 officially dropped today, August 6, as a new security release.

The recent security reality.
The WordPress.org core team forced a background auto-update for 7.0.2 in July to handle active exploits.

What was patched in July?
- Patched one critical-severity flaw.
- Patched one high-severity flaw.

Version 7.0.3 follows right on its heels. Given the current wave of AI-driven attacks, you want to apply this patch immediately.

Those 7.0 branch fixes?
The 7.0 branch was a significant upgrade, to say the least. It dropped native AI engine frameworks and fixed server-side memory leaks that previously choked websites.

And version 7.0.1 knocked out 31 bugs in the block editor, fixed media library folder-view errors, and cleaned up display issues in the new admin dashboard.

I think, all told, the core team resolved over 700 bugs across core and Gutenberg. So for those folks who say the WordPress dev team has fallen asleep on the job, well, I'd say more like three Red Bulls a day...

Do not wait on this. Log into your dashboard, run a backup, and apply the 7.0.3 update.

https://preview.redd.it/y3wg4dslfthh1.png?width=575&format=png&auto=webp&s=b11a3495980f61d30753e969ebc9efed0c79f406

submitted by /u/hackrepair
[link] [comments]
  •  

Caching didn’t fix our high-volume WordPress sites. Database indexing and cursor pagination did

We manage some content-heavy WordPress sites (news portals, big blogs, 10k+ posts) and hit a wall where no amount of page or object caching helped. Turned out the bottlenecks were baked into how WordPress stores data, not something a cache layer could paper over. Sharing what actually moved the needle in case it saves someone a bad week.

Three things were doing most of the damage:

Taxonomy queries. On a site with 50k posts and ~10 tags each, wp_term_relationships balloons to half a million rows. Filtering by multiple taxonomies means expensive JOINs, and without the right indexes MySQL just falls back to full table scans. A composite index on term_taxonomy_id and object_id took some of these from seconds to milliseconds.

Post meta lookups. wp_postmeta gets brutal at scale since every custom field is its own row. Anything that filters or sorts by meta (featured status, view counts, custom dates) JOINs that table repeatedly. Indexing meta_key with a prefixed meta_value (191 chars for utf8mb4) helped a lot. For the really hot fields we ended up denormalizing into a small custom table kept in sync via save_post.

Deep pagination. WordPress uses OFFSET, so page 500 makes MySQL fetch and throw away 10,000 rows before it returns anything. Crawlers hitting deep archives were quietly hammering the DB. Switching to cursor-based pagination with date_query comparisons kept query time flat no matter how deep the page.

Query Monitor on staging plus EXPLAIN to confirm the indexes were actually being used was the workflow that tied it all together.

Happy to share the SQL and WP_Query snippets if anyone wants them, I wrote the whole thing up with code somewhere. Curious what’s worked for others too, especially anyone who’s gone the custom-table route.

submitted by /u/anouarabsslm
[link] [comments]
  •  

any python integrated with your projects?

I want to learn Python as part of my professional development, but day to day I'm mostly working with WordPress, React, and PHP.

For those of you who use Python alongside WordPress, what are you actually using it for? Was it worth adding to your stack? What's your hosting setup like?

I can think of things like automation, AI integrations, data processing, scraping, image manipulation, or background jobs, but PHP already handles everything I need on the web side. That's what has me wondering if there's a practical niche I'm missing.

If you've built a project that combined WordPress and Python, I'd love to hear the use case, how the two communicated (REST API, webhooks, message queue, etc.), and whether you'd do it the same way again.

Part of me thinks, "PHP already does everything I need—why learn a second backend language?" I'm curious if anyone has found Python genuinely expanded what they could build rather than just adding another tool to maintain.

submitted by /u/Sad_Spring9182
[link] [comments]
  •  

​Yoast SEO homepage title keeps adding the Site Name prefix (e.g., "SiteName: My Title") - how to remove it?

​Hi everyone,

​I'm managing 3 WordPress sites built with Elementor, using Yoast SEO for meta titles and descriptions.

​On all subpages, the SEO title appears exactly as I set it in the Yoast meta box. However, on the homepage of all 3 sites, it automatically prepends the Site Name with a colon, like this:

[Site Name]: [My Custom Yoast Title]

​For example, if my Site Name in WordPress General Settings is "Noviber", the homepage title renders as Noviber: My Custom Title instead of just My Custom Title.

​I want the homepage title to display only the custom text I entered in Yoast, without the Site Name: prefix.

​Is this controlled in Yoast Search Appearance settings, theme header settings, or somewhere else? How can I fix this?

​Thanks in advance!

submitted by /u/Familiar-Climate-290
[link] [comments]
  •  

PSA for anyone on Oxygen 6: the builder validates your page more strictly than the front end, and it will lock you out silently

If you've moved to Oxygen 6, here's a failure mode that cost me a week and isn't in the docs anywhere.

Oxygen 6 is a full rewrite on the Breakdance engine. Your page design lives in the _oxygen_data post meta as JSON, not in template files. Two separate things read that JSON: the PHP renderer that serves the page, and the builder's client-side schema. The builder is much stricter.

So you get pages that serve perfectly to visitors, look right in every screenshot, and refuse to open for editing with Validation Error: IO-TS decoding failed. No line number, no field name.

In my case, every numeric property is stored as {number, unit, style}. The style key is what actually compiles, so a raw clamp() with unit: "" renders fine. But unit is validated against an enum, and "" isn't in it. One value. And because selectors are shared site-wide, that single bad entry locked the builder on every page at once.

How to find it: walk your _oxygen_data JSON for any unit: "". The only place that's legitimate is line_height, which genuinely is unitless. Anything else is a builder failure waiting to happen.

Two more in the same family, if you're debugging blind:

- .breakdance .woocommerce SELECTOR matches nothing. Both classes sit on <body>, so it's never a descendant. Style WooCommerce through the .bde-* wrappers instead — and verify with element.matches() rather than trusting that the rule is in the file.

- WrapperLink outputs href="#". Your classes still apply, so it looks perfect and every link is dead. Use ContainerLink.

The general lesson beyond Oxygen: with any builder that keeps state in the database, "the front end renders" isn't proof the page is intact. Verify against the editor.

I've been keeping notes on this stuff while building a client site — happy to share if it'd help anyone.

submitted by /u/budaloco
[link] [comments]
  •  

I need to disable API logins. How do I do this and how can I verify that the blocking is working?

Hi

I'm using WordPress 6.4.3 and need to disable API logins because I'm getting many failed login attempts even though I've limited access to /wp-admin/ to specific IP addresses in htaccess.

I haven't created Application Passwords.

I have the Disable WP REST API plugin enabled.

When I go to my-website/wp-json/wp/v2/users using Google chrome, I get the message:

"{"code":"rest_login_required","message":"REST API restricted to authenticated users.","data":{"status":401}}"

I have the Limit Login Attemps plugin installed.

I tried sending a request from Step 3:

https://ai-tool-hunter.com/wordpress-rest-api-python-tutorial-for-beginners-what-actually-works-and-what-wastes-your/

(with random login/password data)

I get a 401 status, but the Limit Login Attempts check doesn't increment the failed login attempt counter.

Do you have a Python script I can use to check if the API login is not working?

I'm trying this code

import wordpress

site_url = "MY_URL"

username = "user1"

password = "your_application_password"

wp = wordpress.Connect(site_url, username, password)

print(wp)

I get this answer

> & "C:\Program Files\Python314\python.exe" c:/MyStuff/Python/wordpress/r2.py

2026-08-06 17:52:55,123 - ERROR - Authentication failed: {"code":"rest_login_required","message":"REST API restricted to authenticated users.","data":{"status":401}}

Traceback (most recent call last):

File "c:\MyStuff\Python\wordpress\r2.py", line 6, in <module>

wp = wordpress.Connect(site_url, username, password)

File "C:\Users\Adam\AppData\Roaming\Python\Python314\site-packages\wordpress\wordpress.py", line 140, in __init__

raise Exception("Authentication failed")

Exception: Authentication failed

PS C:\Program Files\Microsoft VS Code> ^C

PS C:\Program Files\Microsoft VS Code>

submitted by /u/Ok-Development-8661
[link] [comments]
  •  

Google's $15 Billion India Data Center Project Battles Water, Wildlife Concerns

Google's $15 billion data-center project in Visakhapatnam is facing protests and legal challenges over fears that it will worsen local water shortages and disturb wildlife near the Kambalakonda sanctuary. Google says the campus will use advanced air cooling and comply with Indian law, while state officials deny that residential or rural water supplies will be tapped. Reuters reports: The southern state of Andhra Pradesh, governed by an ally of Prime Minister Narendra Modi who has hailed the project as historic and transformational, has denied allegations that the project was fast-tracked without weighing risks to water supplies and wildlife. But the growing opposition could become an early test for Google's biggest-ever India investment, which is facing several legal challenges over its impact on water supplies and proximity to a wildlife sanctuary that is home to leopards and pangolins. In recent weeks, activists and children have marched in Visakhapatnam city, holding banners saying "We cannot drink DATA" and painting handcuffs on the Google logo, social media posts show. On Sunday, Reuters attended a public gathering where activists chalked out plans for holding door-to-door awareness campaigns and beach protests in coming days. "Development should not be at the cost of livelihood of the people," Raja Rama Mohan Roy, founder of non-profit Green Visakha said at the event where he presented statistics on Visakhapatnam's stressed water supply and demand. The government says the city receives 410 million liters of water a day from its reservoirs and rivers, against a requirement of 480 million. Rationing of water supplies is common in the city with a population of 2.5 million people. [...] The state's top court on Monday asked the government to defend against allegations leveled by activist group Jal Biradari (Water Community), which says the project will strain water availability by putting stress on a nearby reservoir. The Andhra Pradesh High Court will next hear the public interest litigation on August 24.

Read more of this story at Slashdot.

  •  

'Tower Dump' Warrants Ruled Unconstitutional

alternative_right shares a report from The Hill: A federal judge in Mississippi ruled Wednesday that "tower dump" warrants are unconstitutional, declining to reverse a lower court decision refusing the government's request to obtain the search warrants in a series of violent crime investigations. A "tower dump" involves cellphone companies providing law enforcement with access to the time and location data of all mobile devices connected to specific cell towers during a designated time window. Law enforcement had sought approval for several of these search warrants as part of criminal investigations into gang-related activity in the Jackson, Miss., area last year, arguing the data could help identify all those potentially involved, particularly in incidents with unknown suspects. A magistrate judge denied the applications, holding that "tower dumps" are impermissible general warrants. The district judge agreed. The order repeatedly referenced the Supreme Court's recent decision in Chatrie v United States, in which the majority held that geofence warrants require constitutional privacy protections. "With this information, the Government asserts that it will be able to identify all potential suspects," Judge Carlton Reeves wrote in a 30-page order (PDF). "Even so, law enforcement would also have access to the cellular records of countless individuals, the vast majority of whom were merely passing by a location at the 'wrong' time." "That is an unreasonable search under the Fourth Amendment," the judge concluded.

Read more of this story at Slashdot.

  •  

Azure CTO Pastes Doom Into Paint One Frame At a Time

Microsoft Azure CTO Mark Russinovich used Claude to build a gloriously impractical setup that runs Doom in the background and pastes each rendered frame into Microsoft Paint through the Windows clipboard. The project is referred to as "DoomPaint" or "MS Paint Doom" on GitHub. The Register reports: To be clear, Microsoft Paint isn't doing anything other than serving as a place to paste from the game. [...] ViZDoom runs the Doom .wad file and renders it headlessly. Each frame is passed through the Windows clipboard and pasted onto Paint's canvas. A low-level keyboard hook captures and swallows game inputs while Paint is in the foreground, and sound effects come from the game engine. A glance at the code shows Russinovich was more than happy to use Claude to whip it up. In a LinkedIn post, he said: "I've been using Fable 5 on serious research projects and find it a noticeable improvement over Opus 4.8." Using Microsoft Paint as a display for Doom is not, however, a serious research project, as Russinovich acknowledged. "I've also been having fun with it on frivolous ones," he added, so here we are. "Paint renders the game but does not compute it," said Russinovich. "Paint computes nothing. Paint has never computed anything. That's the joke."

Read more of this story at Slashdot.

  •  
❌