<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: WordPress Permalink Hack &#8211; Old Versions Watch Out!</title>
	<atom:link href="http://www.affiliatestuff.co.uk/wordpress/wordpress-permalink-hack-watch-out/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.affiliatestuff.co.uk/wordpress/wordpress-permalink-hack-watch-out/</link>
	<description>Affiliate marketing news &#038; articles for newbies and pros by Kirsty McCubbin</description>
	<lastBuildDate>Thu, 19 Jan 2012 22:22:13 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.2.1</generator>
	<item>
		<title>By: Steve K</title>
		<link>http://www.affiliatestuff.co.uk/wordpress/wordpress-permalink-hack-watch-out/comment-page-1/#comment-5382</link>
		<dc:creator>Steve K</dc:creator>
		<pubDate>Sun, 13 Sep 2009 23:43:31 +0000</pubDate>
		<guid isPermaLink="false">http://www.affiliatestuff.co.uk/?p=264#comment-5382</guid>
		<description>Have you pimped out Duncan&#039;s updating service yet, I have a couple of sites that need sorting?!</description>
		<content:encoded><![CDATA[<p>Have you pimped out Duncan&#8217;s updating service yet, I have a couple of sites that need sorting?!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Lee</title>
		<link>http://www.affiliatestuff.co.uk/wordpress/wordpress-permalink-hack-watch-out/comment-page-1/#comment-5348</link>
		<dc:creator>Lee</dc:creator>
		<pubDate>Mon, 07 Sep 2009 22:09:02 +0000</pubDate>
		<guid isPermaLink="false">http://www.affiliatestuff.co.uk/?p=264#comment-5348</guid>
		<description>The exact thing happend to our wordpress blog the other day, the hacker also created themselves an admin account which was hidden, but Cyberbird managed to find and delete it for us, the odd thing is the hidden admin account could only be seen for a few seconds by using the &#039;flock&#039; browser (never heard of it myself), using any other browser it was completely hidden apart from the number of admins showing in the Administrator link.

Our wordpress version wasn&#039;t that old, it was 2.8.2 but now upgraded to 2.8.4 and are now keeping a close eye on it.

Lee</description>
		<content:encoded><![CDATA[<p>The exact thing happend to our wordpress blog the other day, the hacker also created themselves an admin account which was hidden, but Cyberbird managed to find and delete it for us, the odd thing is the hidden admin account could only be seen for a few seconds by using the &#8216;flock&#8217; browser (never heard of it myself), using any other browser it was completely hidden apart from the number of admins showing in the Administrator link.</p>
<p>Our wordpress version wasn&#8217;t that old, it was 2.8.2 but now upgraded to 2.8.4 and are now keeping a close eye on it.</p>
<p>Lee</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: PAYG</title>
		<link>http://www.affiliatestuff.co.uk/wordpress/wordpress-permalink-hack-watch-out/comment-page-1/#comment-5346</link>
		<dc:creator>PAYG</dc:creator>
		<pubDate>Mon, 07 Sep 2009 19:56:51 +0000</pubDate>
		<guid isPermaLink="false">http://www.affiliatestuff.co.uk/?p=264#comment-5346</guid>
		<description>Those of you with Fantastico in your hosting account - you can upgrade your installation simply and easily. Just go to the Fantastico part of your hosting platform and hit the upgrade link. 

This may save you some of the hassle of changing the read/write/execute permissions via your ftp client. It would be worth locking down the permissions on your WP sites until a thorough patch is found. The permission settings in WP leave it full of holes to get locking down those &#039;execute&#039; options in your ftp client!

Something that I am trying to find out about is a wordpress set-up that allows you to run an installation of wordpress locally on your machine (using a WAMP server) and then export flat HTML files up to your web server.... this &#039;should&#039; save your site from being exploited... (especially if the web server is set to read only). This solution is only any good for websites where you are pushing pages and posts but not allowing comments but as so many affiliates use WP as a plain CMS for pushing content this could be a good solution for some affiliate sites.

Anyone no anything about &#039;WP save to HTML&#039; plugins and which ones are any good? Would be great for a pointer.</description>
		<content:encoded><![CDATA[<p>Those of you with Fantastico in your hosting account &#8211; you can upgrade your installation simply and easily. Just go to the Fantastico part of your hosting platform and hit the upgrade link. </p>
<p>This may save you some of the hassle of changing the read/write/execute permissions via your ftp client. It would be worth locking down the permissions on your WP sites until a thorough patch is found. The permission settings in WP leave it full of holes to get locking down those &#8216;execute&#8217; options in your ftp client!</p>
<p>Something that I am trying to find out about is a wordpress set-up that allows you to run an installation of wordpress locally on your machine (using a WAMP server) and then export flat HTML files up to your web server&#8230;. this &#8216;should&#8217; save your site from being exploited&#8230; (especially if the web server is set to read only). This solution is only any good for websites where you are pushing pages and posts but not allowing comments but as so many affiliates use WP as a plain CMS for pushing content this could be a good solution for some affiliate sites.</p>
<p>Anyone no anything about &#8216;WP save to HTML&#8217; plugins and which ones are any good? Would be great for a pointer.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Dan Harrison</title>
		<link>http://www.affiliatestuff.co.uk/wordpress/wordpress-permalink-hack-watch-out/comment-page-1/#comment-5342</link>
		<dc:creator>Dan Harrison</dc:creator>
		<pubDate>Mon, 07 Sep 2009 12:17:55 +0000</pubDate>
		<guid isPermaLink="false">http://www.affiliatestuff.co.uk/?p=264#comment-5342</guid>
		<description>I run daily backups. Thanks to that, I was able to fix my website in just 1 hour.

There is a lack of good and reliable backup systems, I really must look into solving that issue.

Dan</description>
		<content:encoded><![CDATA[<p>I run daily backups. Thanks to that, I was able to fix my website in just 1 hour.</p>
<p>There is a lack of good and reliable backup systems, I really must look into solving that issue.</p>
<p>Dan</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Kirsty</title>
		<link>http://www.affiliatestuff.co.uk/wordpress/wordpress-permalink-hack-watch-out/comment-page-1/#comment-5337</link>
		<dc:creator>Kirsty</dc:creator>
		<pubDate>Mon, 07 Sep 2009 07:22:28 +0000</pubDate>
		<guid isPermaLink="false">http://www.affiliatestuff.co.uk/?p=264#comment-5337</guid>
		<description>It&#039;s easy Steve, I say &quot;Duncan, get that Wordpress updated today&quot; and it happens.

Thanks for that heads up Dan, I checked all of my SQL Databases today and backed them all up for good measure just in case anything nasty happens in the next little while!</description>
		<content:encoded><![CDATA[<p>It&#8217;s easy Steve, I say &#8220;Duncan, get that WordPress updated today&#8221; and it happens.</p>
<p>Thanks for that heads up Dan, I checked all of my SQL Databases today and backed them all up for good measure just in case anything nasty happens in the next little while!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Dan Harrison</title>
		<link>http://www.affiliatestuff.co.uk/wordpress/wordpress-permalink-hack-watch-out/comment-page-1/#comment-5331</link>
		<dc:creator>Dan Harrison</dc:creator>
		<pubDate>Sun, 06 Sep 2009 12:16:06 +0000</pubDate>
		<guid isPermaLink="false">http://www.affiliatestuff.co.uk/?p=264#comment-5331</guid>
		<description>My website got attacked last night, and I&#039;ve been running the latest version of wordpress for ages. So just because the latest versions of wordpress are (relatively) secure, it doesn&#039;t mean your plugins are.

Dan</description>
		<content:encoded><![CDATA[<p>My website got attacked last night, and I&#8217;ve been running the latest version of wordpress for ages. So just because the latest versions of wordpress are (relatively) secure, it doesn&#8217;t mean your plugins are.</p>
<p>Dan</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Steve K</title>
		<link>http://www.affiliatestuff.co.uk/wordpress/wordpress-permalink-hack-watch-out/comment-page-1/#comment-5326</link>
		<dc:creator>Steve K</dc:creator>
		<pubDate>Sat, 05 Sep 2009 15:20:27 +0000</pubDate>
		<guid isPermaLink="false">http://www.affiliatestuff.co.uk/?p=264#comment-5326</guid>
		<description>Cheers Kirsty and Jason for the warning.

How do you usually upgrade your WP versions?  I know you can do it in admin automatically, but always fails for me.

I&#039;m sure someone mentioned a plugin a while back.

Cheers.</description>
		<content:encoded><![CDATA[<p>Cheers Kirsty and Jason for the warning.</p>
<p>How do you usually upgrade your WP versions?  I know you can do it in admin automatically, but always fails for me.</p>
<p>I&#8217;m sure someone mentioned a plugin a while back.</p>
<p>Cheers.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Ted</title>
		<link>http://www.affiliatestuff.co.uk/wordpress/wordpress-permalink-hack-watch-out/comment-page-1/#comment-5321</link>
		<dc:creator>Ted</dc:creator>
		<pubDate>Sat, 05 Sep 2009 03:43:46 +0000</pubDate>
		<guid isPermaLink="false">http://www.affiliatestuff.co.uk/?p=264#comment-5321</guid>
		<description>Thanks for the heads up Kirsty. 

I checked and one of my sites had been bitting by this hack. All fixed now, Thanks.</description>
		<content:encoded><![CDATA[<p>Thanks for the heads up Kirsty. </p>
<p>I checked and one of my sites had been bitting by this hack. All fixed now, Thanks.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Kirsty</title>
		<link>http://www.affiliatestuff.co.uk/wordpress/wordpress-permalink-hack-watch-out/comment-page-1/#comment-5314</link>
		<dc:creator>Kirsty</dc:creator>
		<pubDate>Fri, 04 Sep 2009 23:33:02 +0000</pubDate>
		<guid isPermaLink="false">http://www.affiliatestuff.co.uk/?p=264#comment-5314</guid>
		<description>Thanks for that Andrew, hadn&#039;t considered that with new versions - I rarely update immediately that they are issued anyhow. I&#039;m aware the second to last version had a security issue though. 

I&#039;ve updated already and thankfully all seems to be fine.  I don&#039;t have that much in the way of complex plugins on here, will just have to keep the internet fingers crossed its not out of the frying pan and into the fire!</description>
		<content:encoded><![CDATA[<p>Thanks for that Andrew, hadn&#8217;t considered that with new versions &#8211; I rarely update immediately that they are issued anyhow. I&#8217;m aware the second to last version had a security issue though. </p>
<p>I&#8217;ve updated already and thankfully all seems to be fine.  I don&#8217;t have that much in the way of complex plugins on here, will just have to keep the internet fingers crossed its not out of the frying pan and into the fire!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: andrew wee</title>
		<link>http://www.affiliatestuff.co.uk/wordpress/wordpress-permalink-hack-watch-out/comment-page-1/#comment-5313</link>
		<dc:creator>andrew wee</dc:creator>
		<pubDate>Fri, 04 Sep 2009 23:12:31 +0000</pubDate>
		<guid isPermaLink="false">http://www.affiliatestuff.co.uk/?p=264#comment-5313</guid>
		<description>Hi Kirsty,
Tks for visiting.

I&#039;d personally refrain from updating too quickly just because the new versions:
1) often contain security holes themselves
2) frequently break previously working plugins
3) plugin developers can sometimes take a couple of weeks to develop an updated plugin compliant with the new version of WP.

If anything, I&#039;d suggest looking at the version info on the Wordpress site and updating to the 2nd newest version, unless there&#039;s a security issue related.</description>
		<content:encoded><![CDATA[<p>Hi Kirsty,<br />
Tks for visiting.</p>
<p>I&#8217;d personally refrain from updating too quickly just because the new versions:<br />
1) often contain security holes themselves<br />
2) frequently break previously working plugins<br />
3) plugin developers can sometimes take a couple of weeks to develop an updated plugin compliant with the new version of WP.</p>
<p>If anything, I&#8217;d suggest looking at the version info on the WordPress site and updating to the 2nd newest version, unless there&#8217;s a security issue related.</p>
]]></content:encoded>
	</item>
</channel>
</rss>

