<?xml version="1.0" encoding="UTF-8"?>
<!-- generator="bbPress/1.1-alpha-2539" -->
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
		>
	<channel>
		<title>WordPress.com Forums &#187; Tag: vulnerability - Recent Posts</title>
		<link>http://en.forums.wordpress.com/tags/vulnerability</link>
		<description>WordPress.com Forums &#187; Tag: vulnerability - Recent Posts</description>
		<language>en</language>
		<pubDate>Sat, 25 May 2013 02:46:07 +0000</pubDate>
		<generator>http://bbpress.org/?v=1.1-alpha-2539</generator>
				<atom:link href="http://en.forums.wordpress.com/rss/tags/vulnerability" rel="self" type="application/rss+xml" />

		<item>
			<title>francodag on "malicious code 336988"</title>
			<link>http://en.forums.wordpress.com/topic/malicious-code-336988#post-1159852</link>
			<pubDate>Fri, 22 Feb 2013 11:51:16 +0000</pubDate>
			<dc:creator>francodag</dc:creator>
			<guid isPermaLink="false">1159852@http://en.forums.wordpress.com/</guid>
			<description><![CDATA[<p>Hi, I've published a script on StackOverflow that can hepl to remove the trojan. </p>
<p>See <a href="http://stackoverflow.com/questions/14302910/why-regex-pattern-works-with-html-comments-but-doesnt-work-with-php-and-js-comm" rel="nofollow">http://stackoverflow.com/questions/14302910/why-regex-pattern-works-with-html-comments-but-doesnt-work-with-php-and-js-comm</a>
</p>
]]></description>
					</item>
		<item>
			<title>auxclass on "malicious code 336988"</title>
			<link>http://en.forums.wordpress.com/topic/malicious-code-336988#post-1128054</link>
			<pubDate>Sat, 19 Jan 2013 00:16:27 +0000</pubDate>
			<dc:creator>auxclass</dc:creator>
			<guid isPermaLink="false">1128054@http://en.forums.wordpress.com/</guid>
			<description><![CDATA[<p>The site you are asking about does not seem to be hosted on WordPress.COM so you need to make friends over at WordPress.ORG the keepers of the software you are using.</p>
<p><a href="http://en.forums.wordpress.com/topic/7-things-to-know-before-posting-in-wordpresscom-forums?replies=1" rel="nofollow">http://en.forums.wordpress.com/topic/7-things-to-know-before-posting-in-wordpresscom-forums?replies=1</a></p>
<p>This site is for support of sites hosted on WordPress.COM. You should address your questions to WordPress.ORG the keepers of the software you are using: <a href="http://wordpress.org/support/" rel="nofollow">http://wordpress.org/support/</a></p>
<p>For more on the difference: <a href="http://support.wordpress.com/com-vs-org/" rel="nofollow">http://support.wordpress.com/com-vs-org/</a>
</p>
]]></description>
					</item>
		<item>
			<title>rodrigograca on "malicious code 336988"</title>
			<link>http://en.forums.wordpress.com/topic/malicious-code-336988#post-1128018</link>
			<pubDate>Fri, 18 Jan 2013 22:54:20 +0000</pubDate>
			<dc:creator>rodrigograca</dc:creator>
			<guid isPermaLink="false">1128018@http://en.forums.wordpress.com/</guid>
			<description><![CDATA[<p>pwforaker do you have skype, mail, anyway to talk with you?</p>
<p>Because "my website" was also hacked but is not a WP website, is custom made and i would like to know how, that "number" i think that is the name of the hacker.... first i thought that was a "hack numer" like ID for the website hacked, but now i see that is not true....</p>
<p>Can you please send me all the info that you have about this topi? In my site i just saw .js and .html "hacked" but i noticed some .htacces in on other websites.
</p>
]]></description>
					</item>
		<item>
			<title>pwforaker on "malicious code 336988"</title>
			<link>http://en.forums.wordpress.com/topic/malicious-code-336988#post-1110006</link>
			<pubDate>Wed, 02 Jan 2013 13:29:37 +0000</pubDate>
			<dc:creator>pwforaker</dc:creator>
			<guid isPermaLink="false">1110006@http://en.forums.wordpress.com/</guid>
			<description><![CDATA[<p>I have about 15 WordPress installations (at 3.4 and 3.5). On December 12 and again on December 30, someone/something injected malicious code into hundreds of html, php and js files in a directory on my server, and deposited malicious .htaccess files. The code is commented with the # 336988. </p>
<p>Google shows one other person with this issue, and so far the best guess is that there's a plugin with a vulnerability. </p>
<p>Any ideas?
</p>
]]></description>
					</item>
		<item>
			<title>supportbot on "malicious code 336988"</title>
			<link>http://en.forums.wordpress.com/topic/malicious-code-336988#post-1110007</link>
			<pubDate>Wed, 02 Jan 2013 13:29:37 +0000</pubDate>
			<dc:creator>supportbot</dc:creator>
			<guid isPermaLink="false">1110007@http://en.forums.wordpress.com/</guid>
			<description><![CDATA[<p>You did not specify a blog address or reason for posting when you created this topic.</p>
<p>This support forum is for blogs hosted at WordPress.com. If your question is about a self-hosted WordPress blog then you'll find help at the <a href="http://wordpress.org/support/">WordPress.org forums</a>.</p>
<p>If you don't understand the difference between WordPress.com and WordPress.org, you may find <a href="http://support.wordpress.com/com-vs-org/">this information</a> helpful.</p>
<p>If you forgot to include a link to your blog, you can reply and include it below.  It'll help people to answer your question.</p>
<p>This is an automated message.
</p>
]]></description>
					</item>
		<item>
			<title>jeffmilner on "Hacked Alternate Version of my site on my site"</title>
			<link>http://en.forums.wordpress.com/topic/hacked-alternate-version-of-my-site-on-my-site#post-849284</link>
			<pubDate>Sun, 25 Mar 2012 13:33:08 +0000</pubDate>
			<dc:creator>jeffmilner</dc:creator>
			<guid isPermaLink="false">849284@http://en.forums.wordpress.com/</guid>
			<description><![CDATA[<p>This morning I got a google alert showing me pages that have been recently published on my blog that I did not publish. They are a hacked version of my real site but show up under a different URL.</p>
<p>For example:<br />
<a href="http://jeffmilner.com/knotting-mapas_tomtom_xl_n14644_gratis_2011win32exe/" rel="nofollow">http://jeffmilner.com/knotting-mapas_tomtom_xl_n14644_gratis_2011win32exe/</a><br />
<a href="http://jeffmilner.com/zimmermann-manuale-officina-liberty-125/" rel="nofollow">http://jeffmilner.com/zimmermann-manuale-officina-liberty-125/</a><br />
<a href="http://jeffmilner.com/maintance-watch-pirates-2005-uncut-online-free-megauploadrar/" rel="nofollow">http://jeffmilner.com/maintance-watch-pirates-2005-uncut-online-free-megauploadrar/</a></p>
<p>What can I do to get rid of these spammy hacked versions? They don't show up on the server as actual folders nor do they show up in my wordpress database when I do a search for them.
</p>
]]></description>
					</item>
		<item>
			<title>supportbot on "Hacked Alternate Version of my site on my site"</title>
			<link>http://en.forums.wordpress.com/topic/hacked-alternate-version-of-my-site-on-my-site#post-849285</link>
			<pubDate>Sun, 25 Mar 2012 13:33:08 +0000</pubDate>
			<dc:creator>supportbot</dc:creator>
			<guid isPermaLink="false">849285@http://en.forums.wordpress.com/</guid>
			<description><![CDATA[<p>The blog you specified at jeffmilner.com does not appear to be hosted at WordPress.com.</p>
<p>This support forum is for blogs hosted at WordPress.com. If your question is about a self-hosted WordPress blog then you'll find help at the <a href="http://wordpress.org/support/">WordPress.org forums</a>.</p>
<p>If you don't understand the difference between WordPress.com and WordPress.org, you may find <a href="http://support.wordpress.com/com-vs-org/">this information</a> helpful.</p>
<p>If you forgot to include a link to your blog, you can reply and include it below.  It'll help people to answer your question.</p>
<p>This is an automated message.
</p>
]]></description>
					</item>
		<item>
			<title>morleyblog on "Suddenly Lots Of Spam"</title>
			<link>http://en.forums.wordpress.com/topic/suddenly-lots-of-spam#post-272851</link>
			<pubDate>Fri, 21 Nov 2008 05:01:54 +0000</pubDate>
			<dc:creator>morleyblog</dc:creator>
			<guid isPermaLink="false">272851@http://en.forums.wordpress.com/</guid>
			<description><![CDATA[<p>Same problem here. Also spam in my email over the last month, which has been filtered 100% until recently. Why don't these jokers get a job?
</p>
]]></description>
					</item>
		<item>
			<title>salohcin on "Suddenly Lots Of Spam"</title>
			<link>http://en.forums.wordpress.com/topic/suddenly-lots-of-spam#post-272777</link>
			<pubDate>Thu, 20 Nov 2008 23:13:56 +0000</pubDate>
			<dc:creator>salohcin</dc:creator>
			<guid isPermaLink="false">272777@http://en.forums.wordpress.com/</guid>
			<description><![CDATA[<p>I'm getting lots of spam too. Kind of annoying have to delete the notification email plus the spam comment itself on WP.
</p>
]]></description>
					</item>
		<item>
			<title>ellaella on "Suddenly Lots Of Spam"</title>
			<link>http://en.forums.wordpress.com/topic/suddenly-lots-of-spam#post-270531</link>
			<pubDate>Fri, 14 Nov 2008 11:48:53 +0000</pubDate>
			<dc:creator>ellaella</dc:creator>
			<guid isPermaLink="false">270531@http://en.forums.wordpress.com/</guid>
			<description><![CDATA[<p>After getting 4 or 5, I noticed the IP numbers were the same or in sequence, so I added them to my moderation filter, plus the next in sequence, and that worked. They've stopped now in any case.
</p>
]]></description>
					</item>
		<item>
			<title>raincoaster on "Suddenly Lots Of Spam"</title>
			<link>http://en.forums.wordpress.com/topic/suddenly-lots-of-spam#post-270494</link>
			<pubDate>Fri, 14 Nov 2008 06:22:21 +0000</pubDate>
			<dc:creator>raincoaster</dc:creator>
			<guid isPermaLink="false">270494@http://en.forums.wordpress.com/</guid>
			<description><![CDATA[<p>It's not just WP.com. It's independent WP as well and I'd guess Blogger and other platforms as well.
</p>
]]></description>
					</item>
		<item>
			<title>lizii on "Suddenly Lots Of Spam"</title>
			<link>http://en.forums.wordpress.com/topic/suddenly-lots-of-spam#post-270417</link>
			<pubDate>Thu, 13 Nov 2008 23:08:38 +0000</pubDate>
			<dc:creator>lizii</dc:creator>
			<guid isPermaLink="false">270417@http://en.forums.wordpress.com/</guid>
			<description><![CDATA[<p>I did too, actually. I came online this morning and suddenly my spam count rocketed and I had a queue.
</p>
]]></description>
					</item>
		<item>
			<title>beemeister on "Suddenly Lots Of Spam"</title>
			<link>http://en.forums.wordpress.com/topic/suddenly-lots-of-spam#post-270366</link>
			<pubDate>Thu, 13 Nov 2008 19:17:58 +0000</pubDate>
			<dc:creator>beemeister</dc:creator>
			<guid isPermaLink="false">270366@http://en.forums.wordpress.com/</guid>
			<description><![CDATA[<p>FYI, I got a boatload of spam after midnight last night...all gibberish.  I was doing a lot of updating last night, and then this morning I noticed all the spam.  Akismet caught them all...yeehaw!
</p>
]]></description>
					</item>
		<item>
			<title>genepensiero on "Suddenly Lots Of Spam"</title>
			<link>http://en.forums.wordpress.com/topic/suddenly-lots-of-spam#post-270326</link>
			<pubDate>Thu, 13 Nov 2008 16:10:08 +0000</pubDate>
			<dc:creator>genepensiero</dc:creator>
			<guid isPermaLink="false">270326@http://en.forums.wordpress.com/</guid>
			<description><![CDATA[<p>thanks for the responses.</p>
<p>i immediately marked all the comments as spam when i received them, but i was just shocked at the sudden lapse in excellence that i've always enjoyed with Askimet.</p>
<p>things seem to be back to normal now.</p>
<p>@aw1923 - glad i could share wordle with you. hope you come back and visit sometime!
</p>
]]></description>
					</item>
		<item>
			<title>tellyworth on "Suddenly Lots Of Spam"</title>
			<link>http://en.forums.wordpress.com/topic/suddenly-lots-of-spam#post-270204</link>
			<pubDate>Thu, 13 Nov 2008 05:05:00 +0000</pubDate>
			<dc:creator>tellyworth</dc:creator>
			<guid isPermaLink="false">270204@http://en.forums.wordpress.com/</guid>
			<description><![CDATA[<p>Spam ninjas are on the case.</p>
<p>Akismet issues should be reported here: <a href="http://akismet.com/contact/" rel="nofollow">http://akismet.com/contact/</a>
</p>
]]></description>
					</item>
		<item>
			<title>aw1923 on "Suddenly Lots Of Spam"</title>
			<link>http://en.forums.wordpress.com/topic/suddenly-lots-of-spam#post-270201</link>
			<pubDate>Thu, 13 Nov 2008 04:55:05 +0000</pubDate>
			<dc:creator>aw1923</dc:creator>
			<guid isPermaLink="false">270201@http://en.forums.wordpress.com/</guid>
			<description><![CDATA[<p>I have had a couple of comments that have come through that were spam lately, and it hasn't happened before. I just marked them as spam and they appeared in Askimet the next day. And, thanks to you I just discovered <a href="http://www.wordle.net/create" rel="nofollow">http://www.wordle.net/create</a> LUV it...I like discovering new interesting sites.
</p>
]]></description>
					</item>
		<item>
			<title>raincoaster on "Suddenly Lots Of Spam"</title>
			<link>http://en.forums.wordpress.com/topic/suddenly-lots-of-spam#post-270198</link>
			<pubDate>Thu, 13 Nov 2008 04:51:42 +0000</pubDate>
			<dc:creator>raincoaster</dc:creator>
			<guid isPermaLink="false">270198@http://en.forums.wordpress.com/</guid>
			<description><![CDATA[<p>I've been getting more for the last three days or so, today Akismet started putting them in moderation. I guess it's learning.
</p>
]]></description>
					</item>
		<item>
			<title>lettershometoyou on "Suddenly Lots Of Spam"</title>
			<link>http://en.forums.wordpress.com/topic/suddenly-lots-of-spam#post-270197</link>
			<pubDate>Thu, 13 Nov 2008 04:50:18 +0000</pubDate>
			<dc:creator>lettershometoyou</dc:creator>
			<guid isPermaLink="false">270197@http://en.forums.wordpress.com/</guid>
			<description><![CDATA[<p>Not noticed anything here, mate.  </p>
<p>Just mark it as spam and move on.
</p>
]]></description>
					</item>
		<item>
			<title>genepensiero on "Suddenly Lots Of Spam"</title>
			<link>http://en.forums.wordpress.com/topic/suddenly-lots-of-spam#post-270194</link>
			<pubDate>Thu, 13 Nov 2008 04:39:31 +0000</pubDate>
			<dc:creator>genepensiero</dc:creator>
			<guid isPermaLink="false">270194@http://en.forums.wordpress.com/</guid>
			<description><![CDATA[<p>is anyone else suddenly (like in the last 24 hours) receiving a lot of spam that Askimet isn't filtering out?</p>
<p>in the last few hours i have suddenly been getting a ton of spam comments with just 1 long alpha-numeric 'word.'</p>
<p>nothing has changed in my configuration that i know of. wp-security scanner says i'm ok...
</p>
]]></description>
					</item>
		<item>
			<title>timethief on "[IMPORTANT] XSS vulnerability in theme"</title>
			<link>http://en.forums.wordpress.com/topic/important-xss-vulnerability-in-blix-theme#post-96823</link>
			<pubDate>Sun, 15 Jul 2007 15:15:45 +0000</pubDate>
			<dc:creator>timethief</dc:creator>
			<guid isPermaLink="false">96823@http://en.forums.wordpress.com/</guid>
			<description><![CDATA[<p>@digitalphoenix<br />
If you would like to continue this conversation with Mark who has said: "The theme we use is fine, no cause for concern"  then please send your email to support at this domain. Tx
</p>
]]></description>
					</item>
		<item>
			<title>digitalphoenix on "[IMPORTANT] XSS vulnerability in theme"</title>
			<link>http://en.forums.wordpress.com/topic/important-xss-vulnerability-in-blix-theme#post-96807</link>
			<pubDate>Sun, 15 Jul 2007 13:25:46 +0000</pubDate>
			<dc:creator>digitalphoenix</dc:creator>
			<guid isPermaLink="false">96807@http://en.forums.wordpress.com/</guid>
			<description><![CDATA[<p>suddenly the bug is disappeared... what happened? Was it all a dream? Was it just my immagination? Or maybe you have modified the code of the theme...<br />
I make a simple example: yesterday I opened a WordPress blog and there was the bug; then I've read your reply and I opened that blog again but... the bug is disappeared!</p>
<p>Dear Mark, the original Blix theme is bugged... download the zip file of the theme in the site of the creator, extract it and open the search.php file. At the end there this code line:<br />
No Results for <em>&#8216;&#60;?php echo $s ?&#62;&#8217;</em><br />
As you know "echo $s" shows the content of the variable s, that is the string we want to search; if in the variable s there is a script it will be put in the html code of the page and executed. This command is never used in other themes and should never be used.</p>
<p>I've also the proof that the bug in Blix theme can be exploited in some blogs which are not hosted on WordPress servers.<br />
I don't want to criticize, but if you have modified the code you should admit it.</p>
<p>Maybe I am wrong, but I wait for your reply.<br />
bye
</p>
]]></description>
					</item>
		<item>
			<title>mark on "[IMPORTANT] XSS vulnerability in theme"</title>
			<link>http://en.forums.wordpress.com/topic/important-xss-vulnerability-in-blix-theme#post-96793</link>
			<pubDate>Sun, 15 Jul 2007 10:28:15 +0000</pubDate>
			<dc:creator>mark</dc:creator>
			<guid isPermaLink="false">96793@http://en.forums.wordpress.com/</guid>
			<description><![CDATA[<p>The theme we use is fine, no cause for concern.
</p>
]]></description>
					</item>
		<item>
			<title>digitalphoenix on "[IMPORTANT] XSS vulnerability in theme"</title>
			<link>http://en.forums.wordpress.com/topic/important-xss-vulnerability-in-blix-theme#post-96782</link>
			<pubDate>Sun, 15 Jul 2007 08:00:22 +0000</pubDate>
			<dc:creator>digitalphoenix</dc:creator>
			<guid isPermaLink="false">96782@http://en.forums.wordpress.com/</guid>
			<description><![CDATA[<p>@ drmike: I've sent a message only to the original theme designer but as options said, the bug is also in other versions of the theme.
</p>
]]></description>
					</item>
		<item>
			<title>timethief on "[IMPORTANT] XSS vulnerability in theme"</title>
			<link>http://en.forums.wordpress.com/topic/important-xss-vulnerability-in-blix-theme#post-96722</link>
			<pubDate>Sun, 15 Jul 2007 00:40:17 +0000</pubDate>
			<dc:creator>timethief</dc:creator>
			<guid isPermaLink="false">96722@http://en.forums.wordpress.com/</guid>
			<description><![CDATA[<p>Where you find a disconnect is where a connect could be. It's sad that in the information age and, in this particular community, connections that could be made aren't being made and relationships that could flower and fruit aren't well established. In the end attitude, relationships and a problem solving focus are of the utmost import when it comes to building community be it in IT or elsewhere.
</p>
]]></description>
					</item>
		<item>
			<title>wank on "[IMPORTANT] XSS vulnerability in theme"</title>
			<link>http://en.forums.wordpress.com/topic/important-xss-vulnerability-in-blix-theme#post-96718</link>
			<pubDate>Sun, 15 Jul 2007 00:21:52 +0000</pubDate>
			<dc:creator>wank</dc:creator>
			<guid isPermaLink="false">96718@http://en.forums.wordpress.com/</guid>
			<description><![CDATA[<p>Automattic are not in the business of informing theme developers about bugs they've fixed, they say it's up to the designers to come to them. Another shining example of that Open Source spirit WP is so famous for :)
</p>
]]></description>
					</item>
		<item>
			<title>options on "[IMPORTANT] XSS vulnerability in theme"</title>
			<link>http://en.forums.wordpress.com/topic/important-xss-vulnerability-in-blix-theme#post-96687</link>
			<pubDate>Sat, 14 Jul 2007 22:43:51 +0000</pubDate>
			<dc:creator>options</dc:creator>
			<guid isPermaLink="false">96687@http://en.forums.wordpress.com/</guid>
			<description><![CDATA[<p>/me thinks tainted themes submitted to the themes.wp.net "<em>should be</em> checked for vulns and <em>removed before WordCamp</em>". as it far more dangerous than 'sponsored' themes for wp community.</p>
<p>edit: should be checked and approved before made it available for download for everyone from there.</p>
<p>also, this allows to inform a theme makers.
</p>
]]></description>
					</item>
		<item>
			<title>drmike on "[IMPORTANT] XSS vulnerability in theme"</title>
			<link>http://en.forums.wordpress.com/topic/important-xss-vulnerability-in-blix-theme#post-96683</link>
			<pubDate>Sat, 14 Jul 2007 22:25:26 +0000</pubDate>
			<dc:creator>drmike</dc:creator>
			<guid isPermaLink="false">96683@http://en.forums.wordpress.com/</guid>
			<description><![CDATA[<p>Actually it does matter which is why I asked.  If the poster sent an email to only one of the fork "authors", the rest of them should be made aware of it.</p>
<p>And if the poster sent the email to the original theme designer who appears to be no longer working on or supporting the theme, it would probably just get dropped into the bit bucket.
</p>
]]></description>
					</item>
		<item>
			<title>options on "[IMPORTANT] XSS vulnerability in theme"</title>
			<link>http://en.forums.wordpress.com/topic/important-xss-vulnerability-in-blix-theme#post-96680</link>
			<pubDate>Sat, 14 Jul 2007 22:22:10 +0000</pubDate>
			<dc:creator>options</dc:creator>
			<guid isPermaLink="false">96680@http://en.forums.wordpress.com/</guid>
			<description><![CDATA[<p>&#60;&#60; it's been spun off a few times.</p>
<p>doesn't matter, half of them are vulnerable just the same way. because theme designers being "strongly influenced by the <em>speed, security, and extensibility</em> of the underlying code" just copy-pasting tainted parts of a script found somewhere as a "good" example how things should be done.</p>
<p>"A low barrier to entry sounds like a good thing.", -- well-well...
</p>
]]></description>
					</item>
		<item>
			<title>cornell on "[IMPORTANT] XSS vulnerability in theme"</title>
			<link>http://en.forums.wordpress.com/topic/important-xss-vulnerability-in-blix-theme#post-96646</link>
			<pubDate>Sat, 14 Jul 2007 21:33:22 +0000</pubDate>
			<dc:creator>cornell</dc:creator>
			<guid isPermaLink="false">96646@http://en.forums.wordpress.com/</guid>
			<description><![CDATA[<p>Digital Phoenix - no, it wasn't meant to be ironic, it was a genuine "thanks". :)
</p>
]]></description>
					</item>
		<item>
			<title>drmike on "[IMPORTANT] XSS vulnerability in theme"</title>
			<link>http://en.forums.wordpress.com/topic/important-xss-vulnerability-in-blix-theme#post-96629</link>
			<pubDate>Sat, 14 Jul 2007 21:17:55 +0000</pubDate>
			<dc:creator>drmike</dc:creator>
			<guid isPermaLink="false">96629@http://en.forums.wordpress.com/</guid>
			<description><![CDATA[<p>Which theme creator did you send it to?  Like I mentioned, it's been spun off a few times.
</p>
]]></description>
					</item>

	</channel>
</rss>
