<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd"
	>
<channel>
	<title>Comments on: Wordpress Injection Attack</title>
	<atom:link href="http://dannedelko.com/wordpress/wordpress-injection-attack.html/feed" rel="self" type="application/rss+xml" />
	<link>http://dannedelko.com/wordpress/wordpress-injection-attack.html</link>
	<description>SEO, PPC and Internet Marketing</description>
	<lastBuildDate>Sun, 05 Sep 2010 02:43:26 -0700</lastBuildDate>
	<generator>http://wordpress.org/?v=abc</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: Wordpress Injection &#124; Free Wordpress Themes</title>
		<link>http://dannedelko.com/wordpress/wordpress-injection-attack.html/comment-page-1#comment-508</link>
		<dc:creator>Wordpress Injection &#124; Free Wordpress Themes</dc:creator>
		<pubDate>Fri, 30 Oct 2009 14:55:44 +0000</pubDate>
		<guid isPermaLink="false">http://dannedelko.com/?p=53#comment-508</guid>
		<description>[...] View Results     Loading &#8230; [...]</description>
		<content:encoded><![CDATA[<p>[…] View Results     Loading … […]
<div style='clear:both'></div>
]]></content:encoded>
	</item>
	<item>
		<title>By: Dave Yates</title>
		<link>http://dannedelko.com/wordpress/wordpress-injection-attack.html/comment-page-1#comment-345</link>
		<dc:creator>Dave Yates</dc:creator>
		<pubDate>Thu, 17 Sep 2009 13:16:03 +0000</pubDate>
		<guid isPermaLink="false">http://dannedelko.com/?p=53#comment-345</guid>
		<description>Hi Dan

Thanks for this and for the email. I am onto the server config advice now. Hosrting could be an issue - I use Heart in the UK. They are a bit &#039;pile it high sell it cheap&#039;, but the support is good and they know what they are doing - I tend to think the problem was of my own making. For those wanting to learn, read on…

Historically, the site was first put up some years ago when I was still merrily creating several sites a day, full of enthusiasm for the ease and power of WordPress. Whereas, these days I tend to change everything including the WP-admin folder name, most of the file names and always delete the admin user name straight away and otherwise alter a lot of the out-of-the-box defaults, back then I did not. 

It is not so feasible to retro-fit some of those practices unfortunately and once some nasty little germ has blown a hole in your installation, prevention doesn&#039;t work any more and a cure cannot always be easily found.

Cautionary advice for everyone out there:

1. Consider adding .htpasswd and .htaccess protection to the wp-admin directory.
2. Try changing the wp-admin folder name. See: http://wp123.info/modifications/change-wp-admin-folder-name/
3. I would add the login lockdown plugin to Dan&#039;s two excellent suggestions: http://wordpress.org/extend/plugins/login-lockdown/</description>
		<content:encoded><![CDATA[<p><img style='float: left; margin-left: 10px;' src='http://www.gravatar.com/avatar.php?gravatar_id=830a0b4876d0af7a9d27d8697a410890&amp;size=60&amp;default=http%3A%2F%2Fuse.perl.org%2Fimages%2Fpix.gif' alt='' />Hi Dan</p>
<p>Thanks for this and for the email. I am onto the server config advice now. Hosrting could be an issue — I use Heart in the UK. They are a bit ‘pile it high sell it cheap’, but the support is good and they know what they are doing — I tend to think the problem was of my own making. For those wanting to learn, read on…</p>
<p>Historically, the site was first put up some years ago when I was still merrily creating several sites a day, full of enthusiasm for the ease and power of WordPress. Whereas, these days I tend to change everything including the WP-admin folder name, most of the file names and always delete the admin user name straight away and otherwise alter a lot of the out-of-the-box defaults, back then I did not. </p>
<p>It is not so feasible to retro-fit some of those practices unfortunately and once some nasty little germ has blown a hole in your installation, prevention doesn’t work any more and a cure cannot always be easily found.</p>
<p>Cautionary advice for everyone out there:</p>
<p>1. Consider adding .htpasswd and .htaccess protection to the wp-admin directory.<br />
2. Try changing the wp-admin folder name. See: <a href="http://wp123.info/modifications/change-wp-admin-folder-name/">http://wp123.info/modifications/change-wp-admin-folder-name/</a><br />
3. I would add the login lockdown plugin to Dan’s two excellent suggestions: <a href="http://wordpress.org/extend/plugins/login-lockdown/">http://wordpress.org/extend/plugins/login-lockdown/</a>
<div style='clear:both'></div>
]]></content:encoded>
	</item>
	<item>
		<title>By: Dan Nedelko</title>
		<link>http://dannedelko.com/wordpress/wordpress-injection-attack.html/comment-page-1#comment-343</link>
		<dc:creator>Dan Nedelko</dc:creator>
		<pubDate>Thu, 17 Sep 2009 11:39:10 +0000</pubDate>
		<guid isPermaLink="false">http://dannedelko.com/?p=53#comment-343</guid>
		<description>Hey Dave,

These should help alot - I&#039;m also going to email you directly but you&#039;ll want to look at the server config. Years ago I had an account with Neureal, whose servers were hopelessly out of date. No matter what I did injections kept happening. You might want to try out a new host or have them lock some things down.

Especially openbasedir restrictions - add them - locking that down removes some functionality but helps alot.</description>
		<content:encoded><![CDATA[<p><img style='float: left; margin-left: 10px;' src='http://www.gravatar.com/avatar.php?gravatar_id=5ed17e82c1fb647eeadd43e8d9e44850&amp;size=60&amp;default=http%3A%2F%2Fuse.perl.org%2Fimages%2Fpix.gif' alt='' />Hey Dave,</p>
<p>These should help alot — I’m also going to email you directly but you’ll want to look at the server config. Years ago I had an account with Neureal, whose servers were hopelessly out of date. No matter what I did injections kept happening. You might want to try out a new host or have them lock some things down.</p>
<p>Especially openbasedir restrictions — add them — locking that down removes some functionality but helps alot.
<div style='clear:both'></div>
]]></content:encoded>
	</item>
	<item>
		<title>By: Dave Yates</title>
		<link>http://dannedelko.com/wordpress/wordpress-injection-attack.html/comment-page-1#comment-342</link>
		<dc:creator>Dave Yates</dc:creator>
		<pubDate>Thu, 17 Sep 2009 11:27:18 +0000</pubDate>
		<guid isPermaLink="false">http://dannedelko.com/?p=53#comment-342</guid>
		<description>Good article. Hope it works!!

I have a client&#039;s site that has been getting filled up hidden injected links in the footer for months. I am at my wits end with it. I have been through the code with a fine tooth-comb (I&#039;m not a hard-core code monkey, but I know my way around), I have deleted any number of plugins, installed as many preventative plugins, I have changed every username and password, done a complete reinstall of WP …and guess what - the hidden links keep coming back. Hopefully these plugins will finally see them off.</description>
		<content:encoded><![CDATA[<p><img style='float: left; margin-left: 10px;' src='http://www.gravatar.com/avatar.php?gravatar_id=830a0b4876d0af7a9d27d8697a410890&amp;size=60&amp;default=http%3A%2F%2Fuse.perl.org%2Fimages%2Fpix.gif' alt='' />Good article. Hope it works!!</p>
<p>I have a client’s site that has been getting filled up hidden injected links in the footer for months. I am at my wits end with it. I have been through the code with a fine tooth-comb (I’m not a hard-core code monkey, but I know my way around), I have deleted any number of plugins, installed as many preventative plugins, I have changed every username and password, done a complete reinstall of WP …and guess what — the hidden links keep coming back. Hopefully these plugins will finally see them off.
<div style='clear:both'></div>
]]></content:encoded>
	</item>
	<item>
		<title>By: Maxxx</title>
		<link>http://dannedelko.com/wordpress/wordpress-injection-attack.html/comment-page-1#comment-84</link>
		<dc:creator>Maxxx</dc:creator>
		<pubDate>Sun, 05 Apr 2009 13:46:54 +0000</pubDate>
		<guid isPermaLink="false">http://dannedelko.com/?p=53#comment-84</guid>
		<description>Oh, it&#039;s a useful page! Thanks for it. (-:</description>
		<content:encoded><![CDATA[<p><img style='float: left; margin-left: 10px;' src='http://www.gravatar.com/avatar.php?gravatar_id=5405b029e830f6f91b652855633a188f&amp;size=60&amp;default=http%3A%2F%2Fuse.perl.org%2Fimages%2Fpix.gif' alt='' />Oh, it’s a useful page! Thanks for it. (-:
<div style='clear:both'></div>
]]></content:encoded>
	</item>
	<item>
		<title>By: We Got Hacked&#8230; &#124; aimusic.com [the official A.i. website]</title>
		<link>http://dannedelko.com/wordpress/wordpress-injection-attack.html/comment-page-1#comment-83</link>
		<dc:creator>We Got Hacked&#8230; &#124; aimusic.com [the official A.i. website]</dc:creator>
		<pubDate>Sun, 05 Apr 2009 12:34:38 +0000</pubDate>
		<guid isPermaLink="false">http://dannedelko.com/?p=53#comment-83</guid>
		<description>[...] If you own a wordpress site that got hacked and are trying to figure out what to do, here&#8217;s a great article on how to solve it.&#160; [...]</description>
		<content:encoded><![CDATA[<p>[…] If you own a wordpress site that got hacked and are trying to figure out what to do, here’s a great article on how to solve it.  […]
<div style='clear:both'></div>
]]></content:encoded>
	</item>
	<item>
		<title>By: RaiulBaztepo</title>
		<link>http://dannedelko.com/wordpress/wordpress-injection-attack.html/comment-page-1#comment-46</link>
		<dc:creator>RaiulBaztepo</dc:creator>
		<pubDate>Sat, 28 Mar 2009 16:27:49 +0000</pubDate>
		<guid isPermaLink="false">http://dannedelko.com/?p=53#comment-46</guid>
		<description>Hello!
Very Interesting post! Thank you for such interesting resource! 
PS: Sorry for my bad english, I&#039;v just started to learn this language ;)
See you! 
Your, Raiul Baztepo</description>
		<content:encoded><![CDATA[<p><img style='float: left; margin-left: 10px;' src='http://www.gravatar.com/avatar.php?gravatar_id=c1dedcdf007e489edca438dbc9c442d7&amp;size=60&amp;default=http%3A%2F%2Fuse.perl.org%2Fimages%2Fpix.gif' alt='' />Hello!<br />
Very Interesting post! Thank you for such interesting resource!<br />
PS: Sorry for my bad english, I’v just started to learn this language <img src='http://dannedelko.com/wp-includes/images/smilies/icon_wink.gif' alt=';)' class='wp-smiley' /><br />
See you!<br />
Your, Raiul Baztepo
<div style='clear:both'></div>
]]></content:encoded>
	</item>
	<item>
		<title>By: Dan Nedelko</title>
		<link>http://dannedelko.com/wordpress/wordpress-injection-attack.html/comment-page-1#comment-20</link>
		<dc:creator>Dan Nedelko</dc:creator>
		<pubDate>Thu, 12 Mar 2009 15:36:08 +0000</pubDate>
		<guid isPermaLink="false">http://dannedelko.com/?p=53#comment-20</guid>
		<description>Thanks WuWu - glad you liked it. Hope to see you back soon!</description>
		<content:encoded><![CDATA[<p><img style='float: left; margin-left: 10px;' src='http://www.gravatar.com/avatar.php?gravatar_id=702f7faf11a97ec7145de13f50281c8e&amp;size=60&amp;default=http%3A%2F%2Fuse.perl.org%2Fimages%2Fpix.gif' alt='' />Thanks WuWu — glad you liked it. Hope to see you back soon!
<div style='clear:both'></div>
]]></content:encoded>
	</item>
	<item>
		<title>By: WuWu</title>
		<link>http://dannedelko.com/wordpress/wordpress-injection-attack.html/comment-page-1#comment-19</link>
		<dc:creator>WuWu</dc:creator>
		<pubDate>Thu, 12 Mar 2009 13:04:18 +0000</pubDate>
		<guid isPermaLink="false">http://dannedelko.com/?p=53#comment-19</guid>
		<description>Very nice post, thanks!!!</description>
		<content:encoded><![CDATA[<p><img style='float: left; margin-left: 10px;' src='http://www.gravatar.com/avatar.php?gravatar_id=96709c3b07aec7ea521255197117dfb9&amp;size=60&amp;default=http%3A%2F%2Fuse.perl.org%2Fimages%2Fpix.gif' alt='' />Very nice post, thanks!!!
<div style='clear:both'></div>
]]></content:encoded>
	</item>
	<item>
		<title>By: Dan Nedelko</title>
		<link>http://dannedelko.com/wordpress/wordpress-injection-attack.html/comment-page-1#comment-14</link>
		<dc:creator>Dan Nedelko</dc:creator>
		<pubDate>Mon, 09 Mar 2009 12:38:49 +0000</pubDate>
		<guid isPermaLink="false">http://dannedelko.com/?p=53#comment-14</guid>
		<description>Hey Kimberly,

Since you run quite a few Wordpress blog maybe it would be useful for you to subscribe to my RSS feed. I have a series of useful articles coming up that might interest you. 

Thanks 
Dan</description>
		<content:encoded><![CDATA[<p><img style='float: left; margin-left: 10px;' src='http://www.gravatar.com/avatar.php?gravatar_id=702f7faf11a97ec7145de13f50281c8e&amp;size=60&amp;default=http%3A%2F%2Fuse.perl.org%2Fimages%2Fpix.gif' alt='' />Hey Kimberly,</p>
<p>Since you run quite a few Wordpress blog maybe it would be useful for you to subscribe to my RSS feed. I have a series of useful articles coming up that might interest you. </p>
<p>Thanks<br />
Dan
<div style='clear:both'></div>
]]></content:encoded>
	</item>
</channel>
</rss>
