Cleaning Up from Wordpress Hack

July 8th, 2008

Let me preface this post by saying that I really, really like Wordpress …

However, I’ve been cleaning up a mess that injected spam into my blog for a while now. The hacks consisted of two types:

  • Comments that injected spam links
  • Hacked template files that imported scripts with spam links

If you use Wordpress, make sure you take a close look at your source code. Better yet, lock down the permissions on all your template files. This will not allow you to use the online theme editor that Wordpress provides, but for most of us, it’s an acceptable trade-off.

I don’t understand the cause of the security breach, but have been more diligent ever since about updating to the newest version of Wordpress whenever it’s released. I’d suggest all bloggers do the same. We’ve got to stop the spam.

Some links for more info:

Entry Filed under: Signposts, WordPress

Bookmark This: del.icio.us:Cleaning Up from Wordpress Hack digg:Cleaning Up from Wordpress Hack newsvine:Cleaning Up from Wordpress Hack blinklist:Cleaning Up from Wordpress Hack furl:Cleaning Up from Wordpress Hack reddit:Cleaning Up from Wordpress Hack blogmarks:Cleaning Up from Wordpress Hack

1 Comment Add your own

Leave a Comment

Required

Required, hidden

Some HTML allowed:
<a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <strike> <strong>

Trackback this post  |  Subscribe to the comments via RSS Feed


About Harvey Ramer

CSS Web design, e-commerce Web design, and internet marketing issues from the desk of Harvey A. Ramer at Design Delineations.

View Harvey Ramer's profile on LinkedIn

Reader/Customer Feedback

Harvey Recommends

Accolades

Design Notes: A CSS Web Designer’s Blog at Blogged

Calendar

July 2008
M T W T F S S
« Jun   Aug »
 123456
78910111213
14151617181920
21222324252627
28293031  

Most Recent Posts