11, October 2008

Wordpress : Another security problem.... - webmaster forum

 
Webdigity webmaster forums
This forum shares its ad revenue with its members!
[ Home | Help | Search | Forum's Shop | Archive | Login | Register | Webmaster Directory ]
Webdigity Webmaster Forums  >  Web Development  >  Security
Topic: Wordpress : Another security problem....
« previous next »
Pages: [1] Print

Author Topic: Wordpress : Another security problem....  (Read 1767 times)
I am a metal monkey!
Administrator
Community Supporter ?
Jedai Sword Master
*****
Gender: Male
Posts: 8116
41653 credits
Members referred : 3



« on: Mar 06, 2007, 05:22:17 PM »

It looks like wordpress has hacking problems again...

This time it looks like someone intruded in their servers and replaced the official download of the 2.1.1 version with a hacked one.

Sounds bad for a software that already loses its reputation.

Trial and Error my two best teachers Cool
Join us @ facebook Visit through proxy

Last blog : Free Unlimited Bandwith and disk space to good to be true?
Global Moderator
Community Supporter ?
Jedai Sword Master
*****
Gender: Male
Posts: 6349
38918 credits
Members referred : 374


It's time to use PHP5!


« Reply #1 on: Mar 06, 2007, 06:10:39 PM »

nice software!

maybe I should use blogger...


Last blog : Upload images for usage in TinyMCE
I am a metal monkey!
Administrator
Community Supporter ?
Jedai Sword Master
*****
Gender: Male
Posts: 8116
41653 credits
Members referred : 3



« Reply #2 on: Sep 09, 2007, 04:05:11 PM »

As there are so many security updates for wordpress, I guess it could be better to post to this thread instead of opening a new one.

So, for another time WP has some security issues Smiley

http://wordpress.org/development/2007/09/wordpress-223/ Visit through proxy

Trial and Error my two best teachers Cool
Join us @ facebook Visit through proxy

Last blog : Free Unlimited Bandwith and disk space to good to be true?
aka J Love
Community Supporter ?
Bill Gates is my home boy
*****
Gender: Male
Posts: 884
1636 credits
Members referred : 4



« Reply #3 on: Oct 02, 2007, 02:12:04 AM »

ya this is why i left wordpress almost over a year ago.. i had some security problems with it and haven't trusted it since.. its what inspired me to just do my own thing

Visit through proxy Visit through proxy Visit through proxy

Last blog : phpHaze 1.59.1 in Development
Global Moderator
Community Supporter ?
Jedai Sword Master
*****
Gender: Male
Posts: 6349
38918 credits
Members referred : 374


It's time to use PHP5!


« Reply #4 on: Oct 02, 2007, 08:20:54 AM »

I have 4 WP blogs (and no time to post enough Smiley)

the time savings because of the great features are bigger than doing an upgrade ones in some time. In my opinion every software has security issues. @Method.
Maybe you need to to stop trusting windows too, they have much bigger issues Smiley


Last blog : Upload images for usage in TinyMCE
Global Moderator
Internet Junkie
*****
Gender: Male
Posts: 1807
9006 credits
Members referred : 6



« Reply #5 on: Oct 02, 2007, 11:45:40 AM »

I agree with Olaf, the security issues are not really a big issue if you keep your software up to date.


Last blog : Are You Stumbling Yet?
aka J Love
Community Supporter ?
Bill Gates is my home boy
*****
Gender: Male
Posts: 884
1636 credits
Members referred : 4



« Reply #6 on: Oct 02, 2007, 06:29:12 PM »

stop trusting windows as my personal machine? LOL and then use what, Linux or something [ROFL]? sure windows has its own security problems, and wordpress, but we are talkin about an internet application, not an operating system Wink wordpress has more security problems than it has good features in my opinion

and as far as "keeping it upto date for security reasons" goes,  how often do they release a security patch anyway?

Visit through proxy Visit through proxy Visit through proxy

Last blog : phpHaze 1.59.1 in Development
Global Moderator
Community Supporter ?
Jedai Sword Master
*****
Gender: Male
Posts: 6349
38918 credits
Members referred : 374


It's time to use PHP5!


« Reply #7 on: Oct 02, 2007, 10:44:18 PM »



and as far as "keeping it upto date for security reasons" goes,  how often do they release a security patch anyway?

still have the time for blog posts!


Last blog : Upload images for usage in TinyMCE
I am a metal monkey!
Administrator
Community Supporter ?
Jedai Sword Master
*****
Gender: Male
Posts: 8116
41653 credits
Members referred : 3



« Reply #8 on: Oct 03, 2007, 02:43:48 AM »

WP is a very good CMS. In fact is one of the best. Now regarding those security wholes, don't think that they are simple as an SQL injection, and in most cases they are not a threat for most sites. But in the bottom line I think it is better to update some good software instead of developing such a thing (and believe me WP is a really huge project)

As for windows, it is true that we should start using linux, especially now that is very easy to be used (plus windows apps can run too)

Trial and Error my two best teachers Cool
Join us @ facebook Visit through proxy

Last blog : Free Unlimited Bandwith and disk space to good to be true?
aka J Love
Community Supporter ?
Bill Gates is my home boy
*****
Gender: Male
Posts: 884
1636 credits
Members referred : 4



« Reply #9 on: Oct 03, 2007, 07:17:42 AM »

linux running windows apps eh? now you've caught my attention. Vista cant even run some Xp apps! lol Cool

Visit through proxy Visit through proxy Visit through proxy

Last blog : phpHaze 1.59.1 in Development
Global Moderator
Community Supporter ?
Jedai Sword Master
*****
Gender: Male
Posts: 6349
38918 credits
Members referred : 374


It's time to use PHP5!


« Reply #10 on: Oct 03, 2007, 08:20:41 AM »

I think Nick is telling that windows apps can be used on linux


Last blog : Upload images for usage in TinyMCE
I am a metal monkey!
Administrator
Community Supporter ?
Jedai Sword Master
*****
Gender: Male
Posts: 8116
41653 credits
Members referred : 3



« Reply #11 on: Oct 03, 2007, 11:16:25 AM »

You can run windows apps to linux with the help of wine Visit through proxy Smiley

Trial and Error my two best teachers Cool
Join us @ facebook Visit through proxy

Last blog : Free Unlimited Bandwith and disk space to good to be true?
Global Moderator
Community Supporter ?
Jedai Sword Master
*****
Gender: Male
Posts: 6349
38918 credits
Members referred : 374


It's time to use PHP5!


« Reply #12 on: Oct 03, 2007, 11:28:17 AM »

cool name "Wine"!

from their website:
Quote
however Wine can optionally use native Windows DLLs if they are available.

will say with wine I can run dll's on my linux webserver?


Last blog : Upload images for usage in TinyMCE
I am a metal monkey!
Administrator
Community Supporter ?
Jedai Sword Master
*****
Gender: Male
Posts: 8116
41653 credits
Members referred : 3



« Reply #13 on: Oct 03, 2007, 11:39:26 AM »

Yes it is possible, but not for all apps.

But I know that applications like Photoshop can run with Wine

Trial and Error my two best teachers Cool
Join us @ facebook Visit through proxy

Last blog : Free Unlimited Bandwith and disk space to good to be true?
Sandwich Artist
*
Posts: 25
170 credits
Members referred : 0


« Reply #14 on: Jun 30, 2008, 09:17:39 PM »

A question here, if someone hacks your wordpress blog, is it that they can redirect your earning to their payment systems. What really is the danger?
Community Supporter ?
Hunky Junky Monky Man!
**
Gender: Male
Posts: 68
436 credits
Members referred : 0


Schwa?


« Reply #15 on: Jul 01, 2008, 07:19:15 AM »

You should never want anyone to "hack" you no matter what the side effects.  A  lot of times they'll use the site to provide more links to their site - or to embed spyware.  Either way, you own the site, no one else should put content on there as a matter of principle.  Its like this:  if a homeless man moves into your living room but doesn't steal anything, is it ok for him to come in and stay uninvited?
Small Business Internet Marketing
Spam is yummy.
****
Gender: Male
Posts: 214
176 credits
Members referred : 0


More than just a Webmaster


« Reply #16 on: Jul 01, 2008, 07:23:09 AM »

Redirecting your earnings would require a hacker to implement his own e.g. Goggle id into your site, that's not likely to happen. More likely is that a hacker will place links and other codes like i-frames in your site to increase his own traffic and ping rate or even spy on your member information.

WordPress has become much more reliable since the start of this threat. I wonder if anybody had some security issues since the upgrade to 2.5.1 ?? It has become very quiet in this section.


Last blog : How to Setup Wordpress - A 51 Step Guide
Trackback URI for this entry : http://www.webdigity.com/trackback.php?topic=6175
Tags : wordpress security vurnerabillity Bookmark this thread : Digg Del.icio.us Dzone more....

Topic sponsors:
Get a permanent link here for $1.99!


Pages: [1] Print 
Webdigity Webmaster Forums  >  Web Development  >  Security
Topic: Wordpress : Another security problem....
« previous next »
Jump to:
User Area
Welcome, Guest. Please login or register.
Did you miss your activation email?
Oct 11, 2008, 09:06:46 PM





Login with username, password and session length

Donate to our community, and get a permanent link back to your site!

Donate to our community, and get a permanent link back to your site!


Forum Statistics
Total Posts: 36.905
Total Topics: 7.557
Total Members: 4.150
Tutorials : 56
Resources : 143
Designs : 220
Latest Member: neli67

28 Guests, 4 Users online :

12 users online today:



Readers

Web Design Gallery · Whois Lookup · Pagerank · Tag Browsing · Lo-fi version · Syndication · Webmaster forum history · Advertise
Developed by HumanWorks © 2005 - 2008 Webdigity webmaster community · sublime directory
Webdigity Webmaster Forums | Powered by SMF 1.0.12. © 2001-2005, Lewis Media. All Rights Reserved.