Blog.
Research and honest comparisons behind our Joomla! tools.
Houston · Joomla! 5/6 vulnerability scanning
Reference
The Joomla! VEL feed, explained
What Joomla's own Vulnerable Extensions List actually contains, and where its data runs thin.
Read →Comparison
WordPress has Wordfence and WPScan. What's the Joomla! equivalent?
An honest comparison of WordPress's vulnerability tooling against what Joomla has had, and where Houston fits.
Read →Checklist
Does your Joomla! site have a vulnerable extension?
Signs to check before anything goes wrong, and why checking by hand doesn't scale.
Read →Guide
Set up automatic vulnerability alerts in 5 minutes
The actual Houston install process, start to finish, from package upload to your first finding.
Read →Explainer
Core updates vs. extension vulnerabilities
Why Joomla's own Task Scheduler doesn't warn you about a vulnerable extension, and what does.
Read →Joomla! 3 Security Patch
Reference
The complete Joomla! 3 CVE list
All 50 known security vulnerabilities in the Joomla! 3 core, as of August 2026, with sources.
Read →Explainer
What Joomla! 3 end-of-life actually means
No more official security updates, ever — what that does and doesn't change for your site.
Read →Checklist
Is your Joomla! 3 site hacked?
Signs to check first, and what to do if you find one.
Read →Comparison
Patch or migrate to Joomla! 5?
An honest comparison of cost and effort for both paths.
Read →Reference
Joomla! 3 and PHP 8: the actual errors
The real error messages a Joomla! 3 core throws under PHP 8, and why.
Read →