<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Attack of the Wordpress-Hacking Spam Trackbacks</title>
	<atom:link href="http://wordpress-plugins.feifei.us/40/attack-of-the-wordpress-hacking-spam-trackbacks/feed/" rel="self" type="application/rss+xml" />
	<link>http://wordpress-plugins.feifei.us/40/attack-of-the-wordpress-hacking-spam-trackbacks/</link>
	<description>WP Plugins and Widgets For Wordpress 2.1+</description>
	<lastBuildDate>Thu, 05 Jan 2012 19:05:18 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: Effe58@gmail.com</title>
		<link>http://wordpress-plugins.feifei.us/40/attack-of-the-wordpress-hacking-spam-trackbacks/comment-page-1/#comment-25704</link>
		<dc:creator>Effe58@gmail.com</dc:creator>
		<pubDate>Tue, 19 May 2009 18:16:22 +0000</pubDate>
		<guid isPermaLink="false">http://wordpress-plugins.feifei.us/40/attack-of-the-wordpress-hacking-spam-trackbacks/#comment-25704</guid>
		<description></description>
		<content:encoded><![CDATA[<p>I’m managing my friend’s blog, and I found this just a few moments ago. I’m currently logged in as admin. Is there anything to worry about, or is this just another failed SQL injection</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Jason</title>
		<link>http://wordpress-plugins.feifei.us/40/attack-of-the-wordpress-hacking-spam-trackbacks/comment-page-1/#comment-21928</link>
		<dc:creator>Jason</dc:creator>
		<pubDate>Mon, 24 Nov 2008 01:01:33 +0000</pubDate>
		<guid isPermaLink="false">http://wordpress-plugins.feifei.us/40/attack-of-the-wordpress-hacking-spam-trackbacks/#comment-21928</guid>
		<description>Thanks Sebastian. http://codex.wordpress.org/Users_Authors_and_Users_SubPanel is the official writeup of what you suggest.

@Cody - probably a  separate username / password setup in Control panel. Look under protected directories depending on what Cp you use.

@hot gadgets changing the default user name from admin to something else means that the attackers have to look for both a user name and a password which increases the complexity. 

If they already know there is a user called admin then part of their problem is solved.</description>
		<content:encoded><![CDATA[<p>Thanks Sebastian. <a href="http://codex.wordpress.org/Users_Authors_and_Users_SubPanel" rel="nofollow">http://codex.wordpress.org/Users_Authors_and_Users_SubPanel</a> is the official writeup of what you suggest.</p>
<p>@Cody &#8211; probably a  separate username / password setup in Control panel. Look under protected directories depending on what Cp you use.</p>
<p>@hot gadgets changing the default user name from admin to something else means that the attackers have to look for both a user name and a password which increases the complexity. </p>
<p>If they already know there is a user called admin then part of their problem is solved.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: azrin</title>
		<link>http://wordpress-plugins.feifei.us/40/attack-of-the-wordpress-hacking-spam-trackbacks/comment-page-1/#comment-21844</link>
		<dc:creator>azrin</dc:creator>
		<pubDate>Thu, 20 Nov 2008 16:27:36 +0000</pubDate>
		<guid isPermaLink="false">http://wordpress-plugins.feifei.us/40/attack-of-the-wordpress-hacking-spam-trackbacks/#comment-21844</guid>
		<description>Actually, someone found a fraud backlink code which disables comments from any IP ranging in the list of Hosting Providers.

Meaning... if IP=(LIST)&amp;REQUEST_URI=WP-COMMENT.PHP then it&#039;s been redirected to another page automatically. Mainly, renaming your wp-comment.php normally solves this issue.(except multi-blogs)

azrin @ www.chat.nu</description>
		<content:encoded><![CDATA[<p>Actually, someone found a fraud backlink code which disables comments from any IP ranging in the list of Hosting Providers.</p>
<p>Meaning&#8230; if IP=(LIST)&amp;REQUEST_URI=WP-COMMENT.PHP then it&#8217;s been redirected to another page automatically. Mainly, renaming your wp-comment.php normally solves this issue.(except multi-blogs)</p>
<p>azrin @ <a href="http://www.chat.nu" rel="nofollow">http://www.chat.nu</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Hot gadgets</title>
		<link>http://wordpress-plugins.feifei.us/40/attack-of-the-wordpress-hacking-spam-trackbacks/comment-page-1/#comment-21147</link>
		<dc:creator>Hot gadgets</dc:creator>
		<pubDate>Wed, 05 Nov 2008 19:30:33 +0000</pubDate>
		<guid isPermaLink="false">http://wordpress-plugins.feifei.us/40/attack-of-the-wordpress-hacking-spam-trackbacks/#comment-21147</guid>
		<description>How changing admins solves the problem?</description>
		<content:encoded><![CDATA[<p>How changing admins solves the problem?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Cody</title>
		<link>http://wordpress-plugins.feifei.us/40/attack-of-the-wordpress-hacking-spam-trackbacks/comment-page-1/#comment-17370</link>
		<dc:creator>Cody</dc:creator>
		<pubDate>Sat, 09 Aug 2008 11:10:52 +0000</pubDate>
		<guid isPermaLink="false">http://wordpress-plugins.feifei.us/40/attack-of-the-wordpress-hacking-spam-trackbacks/#comment-17370</guid>
		<description>All of a sudden my WordPress blog is showing a &quot;Restricted Access&quot; popup window asking all visitors to my site to provide a username and password. 

Does anyone know is this is some sort of spam attack? 

If so, can anyone tell me where to look in my admin panel to fix this? 

I posted this question over at the WordPress forum but got no responses and the info I&#039;ve seen in the WordPress troubleshooting forum didn&#039;t clear up my question. 

Thanks in advance!</description>
		<content:encoded><![CDATA[<p>All of a sudden my WordPress blog is showing a &#8220;Restricted Access&#8221; popup window asking all visitors to my site to provide a username and password. </p>
<p>Does anyone know is this is some sort of spam attack? </p>
<p>If so, can anyone tell me where to look in my admin panel to fix this? </p>
<p>I posted this question over at the WordPress forum but got no responses and the info I&#8217;ve seen in the WordPress troubleshooting forum didn&#8217;t clear up my question. </p>
<p>Thanks in advance!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Freelocale</title>
		<link>http://wordpress-plugins.feifei.us/40/attack-of-the-wordpress-hacking-spam-trackbacks/comment-page-1/#comment-17136</link>
		<dc:creator>Freelocale</dc:creator>
		<pubDate>Wed, 06 Aug 2008 01:44:15 +0000</pubDate>
		<guid isPermaLink="false">http://wordpress-plugins.feifei.us/40/attack-of-the-wordpress-hacking-spam-trackbacks/#comment-17136</guid>
		<description>People should be sharing more free things like this. Its what keeps the Internet buzzin&#039;.</description>
		<content:encoded><![CDATA[<p>People should be sharing more free things like this. Its what keeps the Internet buzzin&#8217;.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Sara</title>
		<link>http://wordpress-plugins.feifei.us/40/attack-of-the-wordpress-hacking-spam-trackbacks/comment-page-1/#comment-16823</link>
		<dc:creator>Sara</dc:creator>
		<pubDate>Thu, 31 Jul 2008 13:37:33 +0000</pubDate>
		<guid isPermaLink="false">http://wordpress-plugins.feifei.us/40/attack-of-the-wordpress-hacking-spam-trackbacks/#comment-16823</guid>
		<description>spammers are so frustrating.isnt there some way to get rid of them</description>
		<content:encoded><![CDATA[<p>spammers are so frustrating.isnt there some way to get rid of them</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Knowtebook.com</title>
		<link>http://wordpress-plugins.feifei.us/40/attack-of-the-wordpress-hacking-spam-trackbacks/comment-page-1/#comment-16072</link>
		<dc:creator>Knowtebook.com</dc:creator>
		<pubDate>Sun, 20 Jul 2008 10:05:37 +0000</pubDate>
		<guid isPermaLink="false">http://wordpress-plugins.feifei.us/40/attack-of-the-wordpress-hacking-spam-trackbacks/#comment-16072</guid>
		<description>You must change your admins username to secure your blog.

1. create new user and give him admin rights.
2. log out and log in with new user account and delete old admin account. but attention: when deleting the old account it asks you to move your posts to the new account. check yes!

Sebastian
&lt;a href=&quot;http://www.knowtebook.com&quot; rel=&quot;nofollow&quot;&gt;Knowtebook&lt;/a&gt;</description>
		<content:encoded><![CDATA[<p>You must change your admins username to secure your blog.</p>
<p>1. create new user and give him admin rights.<br />
2. log out and log in with new user account and delete old admin account. but attention: when deleting the old account it asks you to move your posts to the new account. check yes!</p>
<p>Sebastian<br />
<a href="http://www.knowtebook.com" rel="nofollow">Knowtebook</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: artcoder</title>
		<link>http://wordpress-plugins.feifei.us/40/attack-of-the-wordpress-hacking-spam-trackbacks/comment-page-1/#comment-13739</link>
		<dc:creator>artcoder</dc:creator>
		<pubDate>Wed, 25 Jun 2008 00:11:46 +0000</pubDate>
		<guid isPermaLink="false">http://wordpress-plugins.feifei.us/40/attack-of-the-wordpress-hacking-spam-trackbacks/#comment-13739</guid>
		<description>So is this a WP security hole in 2.5.1 of Wordpress?  Or has the hole been plugged up by now.  

Can I prevent that SQL injection by disabling trackbacks?</description>
		<content:encoded><![CDATA[<p>So is this a WP security hole in 2.5.1 of Wordpress?  Or has the hole been plugged up by now.  </p>
<p>Can I prevent that SQL injection by disabling trackbacks?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: pamQ</title>
		<link>http://wordpress-plugins.feifei.us/40/attack-of-the-wordpress-hacking-spam-trackbacks/comment-page-1/#comment-13535</link>
		<dc:creator>pamQ</dc:creator>
		<pubDate>Sun, 08 Jun 2008 05:56:56 +0000</pubDate>
		<guid isPermaLink="false">http://wordpress-plugins.feifei.us/40/attack-of-the-wordpress-hacking-spam-trackbacks/#comment-13535</guid>
		<description>I&#039;m managing my friend&#039;s blog, and I found this just a few moments ago. I&#039;m currently logged in as admin. Is there anything to worry about, or is this just another failed SQL injection?

This is what I got:
&lt;blockquote&gt;
â€˜ AND 1=0) UNION SELECT 1 FROM wp_users WHERE user_login=â€™adminâ€™ and substring(reverse(lpad(conv(substring(user_pass,1,1), 16, 2),4,â€™0â€²)),1,1)=â€™1â€² /* &#124; None &#124; IP: 124.217.227.127

Noneâ€¦

Noneâ€¦
&lt;/blockquote&gt;

Thanks!</description>
		<content:encoded><![CDATA[<p>I&#8217;m managing my friend&#8217;s blog, and I found this just a few moments ago. I&#8217;m currently logged in as admin. Is there anything to worry about, or is this just another failed SQL injection?</p>
<p>This is what I got:</p>
<blockquote><p>
â€˜ AND 1=0) UNION SELECT 1 FROM wp_users WHERE user_login=â€™adminâ€™ and substring(reverse(lpad(conv(substring(user_pass,1,1), 16, 2),4,â€™0â€²)),1,1)=â€™1â€² /* | None | IP: 124.217.227.127</p>
<p>Noneâ€¦</p>
<p>Noneâ€¦
</p></blockquote>
<p>Thanks!</p>
]]></content:encoded>
	</item>
</channel>
</rss>

<!-- Dynamic page generated in 0.193 seconds. -->
<!-- Cached page generated by WP-Super-Cache on 2012-02-04 09:26:04 -->

