<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Deep Jive Interests &#187; wordpress vulnerabilities</title>
	<atom:link href="http://www.deepjiveinterests.com/tag/wordpress-vulnerabilities/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.deepjiveinterests.com</link>
	<description>Thoughts on Web 2.0, Social Media, Marketing.</description>
	<lastBuildDate>Thu, 23 Dec 2010 02:51:05 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=abc</generator>
		<item>
		<title>Hacked Again.</title>
		<link>http://www.deepjiveinterests.com/2009/06/13/hacked-again/</link>
		<comments>http://www.deepjiveinterests.com/2009/06/13/hacked-again/#comments</comments>
		<pubDate>Sat, 13 Jun 2009 16:33:56 +0000</pubDate>
		<dc:creator>Tony Hung</dc:creator>
				<category><![CDATA[Blogging]]></category>
		<category><![CDATA[Deep Jive Interests]]></category>
		<category><![CDATA[Hacked]]></category>
		<category><![CDATA[wordpress hacks]]></category>
		<category><![CDATA[wordpress vulnerabilities]]></category>

		<guid isPermaLink="false">http://www.deepjiveinterests.com/?p=1477</guid>
		<description><![CDATA[So, I was jazzed to write something new yesterday &#8212; the topic of which, I can&#8217;t even recall now &#8212; when I realize that the blog had been hacked again.  Yes, I am guilty of not upgrading to the latest (&#8230;)</p><p><a href="http://www.deepjiveinterests.com/2009/06/13/hacked-again/">Read the rest of this entry &#187;</a></p>]]></description>
			<content:encoded><![CDATA[<p>So, I was jazzed to write something new yesterday &#8212; the topic of which, I can&#8217;t even recall now &#8212; when I realize that the blog had been hacked again.  Yes, I am guilty of not upgrading to the latest version of WordPress (was running 2.5), and probably a host of other security laziness.  Anywhoo, the nature of the hack was pretty insidious.  I would try and login through the /wp-admin area, and it would automatically redirect me to a spam site.  The actual site would rotate, however, as I&#8217;d get a different one each time.</p>
<p>Ugh, what a nightmare.</p>
<p>In fact, even &#8220;searching&#8221; on the site triggered this particular behaviour, which was annoying and embarassing at the same time.  I spent the greater part of two hours yesterday combing through WP code to try and find the culprit file / code / hex / curse, but to no avail.</p>
<p>You may, therefore, notice that DJI is looking a little different, as I have went DEFCON 1, and simply obliterated my old compromised WordPress install, keeping my database.  I re-installed WordPress using a clean install, and am going with a simpler theme for now.  I&#8217;ll be sticking with it while I try and implement a few more things to lock down the security on this blog (as, of course, there a great many things that you can do in addition to running the latest version), which I will be implementing, and blogging about, shortly.</p>
<p>Cheerio</p>
]]></content:encoded>
			<wfw:commentRss>http://www.deepjiveinterests.com/2009/06/13/hacked-again/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

