Blog.

Research and honest comparisons behind our Joomla! tools.

Houston · Joomla! 5/6 vulnerability scanning

Reference

The Joomla! VEL feed, explained

What Joomla's own Vulnerable Extensions List actually contains, and where its data runs thin.

Read →

Comparison

WordPress has Wordfence and WPScan. What's the Joomla! equivalent?

An honest comparison of WordPress's vulnerability tooling against what Joomla has had, and where Houston fits.

Read →

Checklist

Does your Joomla! site have a vulnerable extension?

Signs to check before anything goes wrong, and why checking by hand doesn't scale.

Read →

Guide

Set up automatic vulnerability alerts in 5 minutes

The actual Houston install process, start to finish, from package upload to your first finding.

Read →

Explainer

Core updates vs. extension vulnerabilities

Why Joomla's own Task Scheduler doesn't warn you about a vulnerable extension, and what does.

Read →

Joomla! 3 Security Patch

Reference

The complete Joomla! 3 CVE list

All 50 known security vulnerabilities in the Joomla! 3 core, as of August 2026, with sources.

Read →

Explainer

What Joomla! 3 end-of-life actually means

No more official security updates, ever — what that does and doesn't change for your site.

Read →

Checklist

Is your Joomla! 3 site hacked?

Signs to check first, and what to do if you find one.

Read →

Comparison

Patch or migrate to Joomla! 5?

An honest comparison of cost and effort for both paths.

Read →

Reference

Joomla! 3 and PHP 8: the actual errors

The real error messages a Joomla! 3 core throws under PHP 8, and why.

Read →