<?xml version="1.0" encoding="UTF-8"?>
<!-- generator="bbPress/1.1-alpha-2539" -->
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
		>
	<channel>
		<title>WordPress.com Forums &#187; Topic: Illegal posting on my blog</title>
		<link>http://en.forums.wordpress.com/topic/illegal-posting-on-my-blog</link>
		<description>WordPress.com Forums &#187; Topic: Illegal posting on my blog</description>
		<language>en</language>
		<pubDate>Wed, 19 Jun 2013 19:00:33 +0000</pubDate>
		<generator>http://bbpress.org/?v=1.1-alpha-2539</generator>
				<atom:link href="http://en.forums.wordpress.com/rss/topic/illegal-posting-on-my-blog" rel="self" type="application/rss+xml" />

		<item>
			<title>pjad on "Illegal posting on my blog"</title>
			<link>http://en.forums.wordpress.com/topic/illegal-posting-on-my-blog#post-952531</link>
			<pubDate>Sun, 22 Jul 2012 14:06:43 +0000</pubDate>
			<dc:creator>pjad</dc:creator>
			<guid isPermaLink="false">952531@http://en.forums.wordpress.com/</guid>
			<description><![CDATA[<p>Thanks for letting us know about this.  We also noticed something suspicious.  We have reset the passwords of all affected users and have sent them an email to let them know. If there was any spam posted and not removed before we got there, we also went ahead and cleaned that up.</p>
<p>It is very likely that you were using the same password on WordPress.com that you used elsewhere.  Recently, a few large services -- LinkedIn, Yahoo, eHarmony, and Last.fm to name a few -- have suffered well-publicized security breaches that have exposed email addresses and passwords.  Although the passwords are usually stored securely, simple passwords can be decrypted or "cracked" in a matter of hours using modern technology.</p>
<p>Hackers gather the lists of email addresses and passwords from these services and then try to use them to access accounts on other popular services, like WordPress.com.  If you used the same password multiple places, then your account can be compromised.  That is what happened here.  We do have measures in place to protect password guessing or "brute force" attacks but in this case, since the password is known beforehand, there is no need for a hacker to guess.</p>
<p>You should have a strong, unique password for every account you have on the internet. We have some more information on selecting a strong password in our Support section, please read through it:</p>
<p><a href="http://en.support.wordpress.com/selecting-a-strong-password/" rel="nofollow">http://en.support.wordpress.com/selecting-a-strong-password/</a>  </p>
<p>If you have any additional questions about the security of your account, please contact us using the form on this page:</p>
<p><a href="http://automattic.com/security/" rel="nofollow">http://automattic.com/security/</a></p>
<p>We take security seriously, and are happy to answer any questions you have.
</p>
]]></description>
					</item>
		<item>
			<title>designsimply on "Illegal posting on my blog"</title>
			<link>http://en.forums.wordpress.com/topic/illegal-posting-on-my-blog#post-951791</link>
			<pubDate>Sat, 21 Jul 2012 16:52:33 +0000</pubDate>
			<dc:creator>designsimply</dc:creator>
			<guid isPermaLink="false">951791@http://en.forums.wordpress.com/</guid>
			<description><![CDATA[<p>Thank you for posting about this. We're looking into it now to check everything out and make sure things are secure.
</p>
]]></description>
					</item>
		<item>
			<title>timethief on "Illegal posting on my blog"</title>
			<link>http://en.forums.wordpress.com/topic/illegal-posting-on-my-blog#post-951769</link>
			<pubDate>Sat, 21 Jul 2012 16:28:11 +0000</pubDate>
			<dc:creator>timethief</dc:creator>
			<guid isPermaLink="false">951769@http://en.forums.wordpress.com/</guid>
			<description><![CDATA[<p>Great! There are security tips here &#62;  <a href="http://en.support.wordpress.com/security/" rel="nofollow">http://en.support.wordpress.com/security/</a>
</p>
]]></description>
					</item>
		<item>
			<title>catharine2 on "Illegal posting on my blog"</title>
			<link>http://en.forums.wordpress.com/topic/illegal-posting-on-my-blog#post-951768</link>
			<pubDate>Sat, 21 Jul 2012 16:27:01 +0000</pubDate>
			<dc:creator>catharine2</dc:creator>
			<guid isPermaLink="false">951768@http://en.forums.wordpress.com/</guid>
			<description><![CDATA[<p>Aha, now I found how to disable post by email and post by voice as well to be really safe.
</p>
]]></description>
					</item>
		<item>
			<title>timethief on "Illegal posting on my blog"</title>
			<link>http://en.forums.wordpress.com/topic/illegal-posting-on-my-blog#post-951746</link>
			<pubDate>Sat, 21 Jul 2012 15:58:07 +0000</pubDate>
			<dc:creator>timethief</dc:creator>
			<guid isPermaLink="false">951746@http://en.forums.wordpress.com/</guid>
			<description><![CDATA[<blockquote><p>post by email  ... but now I have enabled</p></blockquote>
<p>Disable it.
</p>
]]></description>
					</item>
		<item>
			<title>catharine2 on "Illegal posting on my blog"</title>
			<link>http://en.forums.wordpress.com/topic/illegal-posting-on-my-blog#post-951712</link>
			<pubDate>Sat, 21 Jul 2012 15:32:00 +0000</pubDate>
			<dc:creator>catharine2</dc:creator>
			<guid isPermaLink="false">951712@http://en.forums.wordpress.com/</guid>
			<description><![CDATA[<p>I don't think I have had post by email activated but now I have enabled and deleted it and changed all passwords. Thanks for all the help.
</p>
]]></description>
					</item>
		<item>
			<title>auxclass on "Illegal posting on my blog"</title>
			<link>http://en.forums.wordpress.com/topic/illegal-posting-on-my-blog#post-951581</link>
			<pubDate>Sat, 21 Jul 2012 13:30:46 +0000</pubDate>
			<dc:creator>auxclass</dc:creator>
			<guid isPermaLink="false">951581@http://en.forums.wordpress.com/</guid>
			<description><![CDATA[<p>A few more suggestions: </p>
<p>The only “hacked” sites I have seen here have been people getting the password somehow to a site so you do want to be careful how you log in and use a tough password.</p>
<p>You should also check to make sure that someone has not added a new user to your site.  Problems have also happened when there was more than one Admin. and an Admin left on less than graceful terms.</p>
<p>Dashboard &#62;&#62; Users</p>
<p>There have also been a few Posts on “hacked” sites and it was because someone got the Post by Email address and using the Post by Email to send in new Posts, if you have Post by email disable the Post by Email and regenerate the address. Spammers have scripts the generate email addresses and they sometimes can get a valid address for a Post by Email address.
</p>
]]></description>
					</item>
		<item>
			<title>nandobase on "Illegal posting on my blog"</title>
			<link>http://en.forums.wordpress.com/topic/illegal-posting-on-my-blog#post-951528</link>
			<pubDate>Sat, 21 Jul 2012 11:35:52 +0000</pubDate>
			<dc:creator>nandobase</dc:creator>
			<guid isPermaLink="false">951528@http://en.forums.wordpress.com/</guid>
			<description><![CDATA[<p>It's a spam. You need to deactivate post by email to prevent it from happening again.
</p>
]]></description>
					</item>
		<item>
			<title>ardpete on "Illegal posting on my blog"</title>
			<link>http://en.forums.wordpress.com/topic/illegal-posting-on-my-blog#post-951506</link>
			<pubDate>Sat, 21 Jul 2012 10:47:47 +0000</pubDate>
			<dc:creator>ardpete</dc:creator>
			<guid isPermaLink="false">951506@http://en.forums.wordpress.com/</guid>
			<description><![CDATA[<p>If you undelete the post and set it to private, so only you can see it, staff will be able to have a look at it when they read this thread which I have marked for their attention.</p>
<p>To be on the safe side I would advise changing your password for both your blog and your e-mail address.
</p>
]]></description>
					</item>
		<item>
			<title>catharine2 on "Illegal posting on my blog"</title>
			<link>http://en.forums.wordpress.com/topic/illegal-posting-on-my-blog#post-951504</link>
			<pubDate>Sat, 21 Jul 2012 10:44:09 +0000</pubDate>
			<dc:creator>catharine2</dc:creator>
			<guid isPermaLink="false">951504@http://en.forums.wordpress.com/</guid>
			<description><![CDATA[<p>somebody else has posted on my blog under my name, I have deleted that posting which was about making money on the internet<br />
Blog url: <a href='http://catharine2.wordpress.com/'>http://catharine2.wordpress.com/</a>
</p>
]]></description>
					</item>

	</channel>
</rss>
