A computer worm is currently in the wild that is attacking unpatched Wordpress blogs. Unpatched meaning blogs that have not been updated by their administrators to the latest version of the popular blogging software. The worm exploits a security vulnerability in older versions of Wordpress to create a user account, make some changes to the [...]
- Author: Orrett Morgan
- Published: Aug 15th, 2009
- Comments: 10
Best Wordpress Plugins
A few years ago when the name WordPress was mentioned, most people would not know what it was. But thanks to the popularity of blogging and “the new media” WordPress has become a well known name in the internet community. Other then the small blogs which use it, WordPress is also used on major sites [...]
Wordpress 2.8.4 Security Update
We noticed a security vulnerability in Wordpress 2.8.3 yesterday (and earlier versions as well) that allowed an attacker to reset passwords of users. While this vulnerability could not be exploited to gain access to the user account (unless access to the email account the password was send to was available as well) it could be [...]
Is My Blog Working
Found another gem at Rarst’s blog today. Is My Blog Working is an online service that can be used by webmasters and interested users to find out if a blog is responding correctly. It works by entering a blog url in the form on the frontpage of the service. The service will then do some [...]
Wordpress Remote Admin Password Reset Vulnerability
The password of my Wordpress admin account was not valid when I tried to login today. I first thought it was a problem with the LastPass password manager and tried to see if I was still logged into the service. When I checked my email inbox I noticed that I have received a new password [...]
Wordpress 2.8.3
The Wordpress developers have released version 2.8.3 of the popular blogging script. The update is a security update and it is therefor recommended to update the Wordpress installation immediately to protect the data and web server. Upgrades are as usually available directly from within the Wordpress admin interface or by downloading the new version of [...]
Wordpress 2.8.2 Security Patch
A new version of the popular blogging platform Wordpress was released just a few minutes ago. It is an unexpected upgrade considering that the last Wordpress update was less than two weeks ago. The new update fixes a security vulnerability that affects all but the latest version of Wordpress.
The XSS vulnerability could be used to [...]

