<?xml version="1.0" encoding="UTF-8"?><rss version="2.0" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:sy="http://purl.org/rss/1.0/modules/syndication/" > <channel><title>Comments on: WordPress 2.2 Security Hole: Identity Theft</title> <atom:link href="http://kevin.deldycke.com/2007/06/wordpress-22-security-hole-identity-theft/feed/" rel="self" type="application/rss+xml" /><link>http://kevin.deldycke.com/2007/06/wordpress-22-security-hole-identity-theft/</link> <description>Free software engineer &#38; wannabe videomaker</description> <lastBuildDate>Sun, 29 Jan 2012 13:35:17 +0000</lastBuildDate> <sy:updatePeriod>hourly</sy:updatePeriod> <sy:updateFrequency>1</sy:updateFrequency> <generator>http://wordpress.org/?v=3.3.1</generator> <xhtml:meta xmlns:xhtml="http://www.w3.org/1999/xhtml" name="robots" content="noindex" /> <item><title>By: Lloyd Budd</title><link>http://kevin.deldycke.com/2007/06/wordpress-22-security-hole-identity-theft/comment-page-1/#comment-4753</link> <dc:creator>Lloyd Budd</dc:creator> <pubDate>Mon, 02 Feb 2009 14:05:02 +0000</pubDate> <guid isPermaLink="false">http://kevin.deldycke.com/2007/06/wordpress-22-security-hole-identity-theft/#comment-4753</guid> <description>Releasing this as part of WordPresss 2.2.1 is a top priority.</description> <content:encoded><![CDATA[<p>Releasing this as part of WordPresss 2.2.1 is a top priority.</p> ]]></content:encoded> </item> <item><title>By: UeberTs Thoughts &#187; strange accesses to Wordpress register page</title><link>http://kevin.deldycke.com/2007/06/wordpress-22-security-hole-identity-theft/comment-page-1/#comment-4394</link> <dc:creator>UeberTs Thoughts &#187; strange accesses to Wordpress register page</dc:creator> <pubDate>Thu, 11 Sep 2008 09:24:13 +0000</pubDate> <guid isPermaLink="false">http://kevin.deldycke.com/2007/06/wordpress-22-security-hole-identity-theft/#comment-4394</guid> <description>[...] wonder if it has to do with the current security hole (is there already an exploit ?), an earlier for Wordpress 2.2 or simply spam [...]</description> <content:encoded><![CDATA[<p>[...] wonder if it has to do with the current security hole (is there already an exploit ?), an earlier for WordPress 2.2 or simply spam [...]</p> ]]></content:encoded> </item> <item><title>By: Hindsight&#8230; It&#8217;s is a wonderful thing! &#171; Lee Kelleher&#8217;s Weblog</title><link>http://kevin.deldycke.com/2007/06/wordpress-22-security-hole-identity-theft/comment-page-1/#comment-4061</link> <dc:creator>Hindsight&#8230; It&#8217;s is a wonderful thing! &#171; Lee Kelleher&#8217;s Weblog</dc:creator> <pubDate>Fri, 18 Jul 2008 23:03:16 +0000</pubDate> <guid isPermaLink="false">http://kevin.deldycke.com/2007/06/wordpress-22-security-hole-identity-theft/#comment-4061</guid> <description>[...] to say, WordPress 2.2 has an ugly security hole which allows hackers to remotely inject SQL statements into the database.  I&#8217;d heard about [...]</description> <content:encoded><![CDATA[<p>[...] to say, WordPress 2.2 has an ugly security hole which allows hackers to remotely inject SQL statements into the database.  I&#8217;d heard about [...]</p> ]]></content:encoded> </item> <item><title>By: Ness</title><link>http://kevin.deldycke.com/2007/06/wordpress-22-security-hole-identity-theft/comment-page-1/#comment-3418</link> <dc:creator>Ness</dc:creator> <pubDate>Sat, 16 Feb 2008 15:47:23 +0000</pubDate> <guid isPermaLink="false">http://kevin.deldycke.com/2007/06/wordpress-22-security-hole-identity-theft/#comment-3418</guid> <description>Good heavens. I just removed that version thingy!</description> <content:encoded><![CDATA[<p>Good heavens. I just removed that version thingy!</p> ]]></content:encoded> </item> <item><title>By: kev</title><link>http://kevin.deldycke.com/2007/06/wordpress-22-security-hole-identity-theft/comment-page-1/#comment-3192</link> <dc:creator>kev</dc:creator> <pubDate>Sun, 07 Oct 2007 23:35:07 +0000</pubDate> <guid isPermaLink="false">http://kevin.deldycke.com/2007/06/wordpress-22-security-hole-identity-theft/#comment-3192</guid> <description>&lt;blockquote&gt;Do yourself a huge favor and take the version number out of your templates&lt;/blockquote&gt;I totally agree with you Tyler. This should be a strong recommandation to any template maker.BTW, starting from &lt;a href=&quot;http://getk2.com/2007/09/k2-release-candidate-1/&quot; rel=&quot;nofollow&quot;&gt;RC1&lt;/a&gt;, &lt;a href=&quot;http://getk2.com&quot; rel=&quot;nofollow&quot;&gt;K2&lt;/a&gt; (the theme I use on this blog) will &lt;a href=&quot;http://code.google.com/p/kaytwo/source/detail?path=/trunk/footer.php&amp;r=432&quot; rel=&quot;nofollow&quot;&gt;no longer show the Wordpress version number&lt;/a&gt; to the user. Sadly, it will be still there in the html code. So it&#039;s a good start but not a solution at all... :(</description> <content:encoded><![CDATA[<blockquote><p>Do yourself a huge favor and take the version number out of your templates</p></blockquote><p>I totally agree with you Tyler. This should be a strong recommandation to any template maker.</p><p>BTW, starting from <a href="http://getk2.com/2007/09/k2-release-candidate-1/" rel="nofollow">RC1</a>, <a href="http://getk2.com" rel="nofollow">K2</a> (the theme I use on this blog) will <a href="http://code.google.com/p/kaytwo/source/detail?path=/trunk/footer.php&#038;r=432" rel="nofollow">no longer show the WordPress version number</a> to the user. Sadly, it will be still there in the html code. So it&#8217;s a good start but not a solution at all&#8230; <img src='http://kevin.deldycke.com/wp-includes/images/smilies/icon_sad.gif' alt=':(' class='wp-smiley' /></p> ]]></content:encoded> </item> <item><title>By: Tyler</title><link>http://kevin.deldycke.com/2007/06/wordpress-22-security-hole-identity-theft/comment-page-1/#comment-3117</link> <dc:creator>Tyler</dc:creator> <pubDate>Thu, 23 Aug 2007 23:54:18 +0000</pubDate> <guid isPermaLink="false">http://kevin.deldycke.com/2007/06/wordpress-22-security-hole-identity-theft/#comment-3117</guid> <description>Do yourself a huge favor and take the version number out of your templates, no one really needs to know what you&#039;re running. People will just google for vulnerable versions, and can even automate the attack.</description> <content:encoded><![CDATA[<p>Do yourself a huge favor and take the version number out of your templates, no one really needs to know what you&#8217;re running. People will just google for vulnerable versions, and can even automate the attack.</p> ]]></content:encoded> </item> <item><title>By: mhm</title><link>http://kevin.deldycke.com/2007/06/wordpress-22-security-hole-identity-theft/comment-page-1/#comment-3046</link> <dc:creator>mhm</dc:creator> <pubDate>Tue, 17 Jul 2007 13:04:37 +0000</pubDate> <guid isPermaLink="false">http://kevin.deldycke.com/2007/06/wordpress-22-security-hole-identity-theft/#comment-3046</guid> <description>very interesting</description> <content:encoded><![CDATA[<p>very interesting</p> ]]></content:encoded> </item> <item><title>By: Prevent Wordpress hacking &#187; Sha dot Com Anak Melayu boleh blog! Mana gadis manis melayu aku?</title><link>http://kevin.deldycke.com/2007/06/wordpress-22-security-hole-identity-theft/comment-page-1/#comment-2992</link> <dc:creator>Prevent Wordpress hacking &#187; Sha dot Com Anak Melayu boleh blog! Mana gadis manis melayu aku?</dc:creator> <pubDate>Wed, 27 Jun 2007 01:47:29 +0000</pubDate> <guid isPermaLink="false">http://kevin.deldycke.com/2007/06/wordpress-22-security-hole-identity-theft/#comment-2992</guid> <description>[...] to Wordpress v2.2.1, please do so immediately. There has been bloggers on v2.2 like Hongkiat and coolkevman, who got hacked. The hackers search for blogs with v2.2 keyword string and did their worse. You [...]</description> <content:encoded><![CDATA[<p>[...] to WordPress v2.2.1, please do so immediately. There has been bloggers on v2.2 like Hongkiat and coolkevman, who got hacked. The hackers search for blogs with v2.2 keyword string and did their worse. You [...]</p> ]]></content:encoded> </item> <item><title>By: Don&#8217;t get hacked! &#187; Sha Money Maker dot com</title><link>http://kevin.deldycke.com/2007/06/wordpress-22-security-hole-identity-theft/comment-page-1/#comment-2990</link> <dc:creator>Don&#8217;t get hacked! &#187; Sha Money Maker dot com</dc:creator> <pubDate>Wed, 27 Jun 2007 00:05:36 +0000</pubDate> <guid isPermaLink="false">http://kevin.deldycke.com/2007/06/wordpress-22-security-hole-identity-theft/#comment-2990</guid> <description>[...] to Wordpress v2.2.1, please do so immediately. There has been bloggers on v2.2 like Hongkiat and coolkevman, who got hacked. The hackers search for blogs with v2.2 keyword string and did their worse. You [...]</description> <content:encoded><![CDATA[<p>[...] to WordPress v2.2.1, please do so immediately. There has been bloggers on v2.2 like Hongkiat and coolkevman, who got hacked. The hackers search for blogs with v2.2 keyword string and did their worse. You [...]</p> ]]></content:encoded> </item> <item><title>By: PsychoPhil - Drink More Beer</title><link>http://kevin.deldycke.com/2007/06/wordpress-22-security-hole-identity-theft/comment-page-1/#comment-2973</link> <dc:creator>PsychoPhil - Drink More Beer</dc:creator> <pubDate>Fri, 22 Jun 2007 21:18:07 +0000</pubDate> <guid isPermaLink="false">http://kevin.deldycke.com/2007/06/wordpress-22-security-hole-identity-theft/#comment-2973</guid> <description>[...] Wordpress 2.2 Security Hole: Identity Theft (tags: security wordpress software internet)    - Posted in del.icio.us by del.icio.us &#160;   trackback [...]</description> <content:encoded><![CDATA[<p>[...] WordPress 2.2 Security Hole: Identity Theft (tags: security wordpress software internet)    &#8211; Posted in del.icio.us by del.icio.us &nbsp;   trackback [...]</p> ]]></content:encoded> </item> </channel> </rss>
<!-- Performance optimized by W3 Total Cache. Learn more: http://www.w3-edge.com/wordpress-plugins/

Minified using disk: basic
Page Caching using disk: enhanced
Database Caching 2/16 queries in 0.008 seconds using apc
Object Caching 596/597 objects using apc

Served from: kevin.deldycke.com @ 2012-02-08 23:27:50 -->
