<?xml version="1.0" encoding="UTF-8"?><rss
version="2.0"
xmlns:content="http://purl.org/rss/1.0/modules/content/"
xmlns:dc="http://purl.org/dc/elements/1.1/"
xmlns:atom="http://www.w3.org/2005/Atom"
xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
> <channel><title>Comments on: More on the blog hacking</title> <atom:link href="http://www.raphkoster.com/2008/04/15/more-on-the-blog-hacking/feed/" rel="self" type="application/rss+xml" /><link>http://www.raphkoster.com/2008/04/15/more-on-the-blog-hacking/</link> <description>Raph Koster&#039;s personal website: MMOs, gaming, writing, art, music, books</description> <lastBuildDate>Sun, 12 Feb 2012 06:02:55 +0000</lastBuildDate> <sy:updatePeriod>hourly</sy:updatePeriod> <sy:updateFrequency>1</sy:updateFrequency> <generator>http://wordpress.org/?v=3.3.1</generator> <item><title>By: Raph&apos;s Website &#187; WordPress Exploit Scanner plugin</title><link>http://www.raphkoster.com/2008/04/15/more-on-the-blog-hacking/comment-page-1/#comment-138725</link> <dc:creator>Raph&apos;s Website &#187; WordPress Exploit Scanner plugin</dc:creator> <pubDate>Sun, 29 Jun 2008 20:16:25 +0000</pubDate> <guid
isPermaLink="false">http://www.raphkoster.com/?p=1702#comment-138725</guid> <description>[...] those who recall the whole &#8220;blog gets hacked&#8221; odyssey, and my subsequent request for a plugin that would do security scans, check this [...]</description> <content:encoded><![CDATA[<div
style="padding:15px; border-left:1px solid #dedede; border-bottom:3px solid #CCEBF7; background-color:#fcfeff"><p>[...] those who recall the whole &#8220;blog gets hacked&#8221; odyssey, and my subsequent request for a plugin that would do security scans, check this [...]</p></div> ]]></content:encoded> </item> <item><title>By: Spam injection in RSS Feed &#124; Startup Addict Musings</title><link>http://www.raphkoster.com/2008/04/15/more-on-the-blog-hacking/comment-page-1/#comment-138371</link> <dc:creator>Spam injection in RSS Feed &#124; Startup Addict Musings</dc:creator> <pubDate>Thu, 19 Jun 2008 01:38:37 +0000</pubDate> <guid
isPermaLink="false">http://www.raphkoster.com/?p=1702#comment-138371</guid> <description>[...] RobertGaloppini  Linux-by-Example Kakkoi Gordon Dewis Raph [...]</description> <content:encoded><![CDATA[<div
style="padding:15px; border-left:1px solid #dedede; border-bottom:3px solid #CCEBF7; background-color:#fcfeff"><p>[...] RobertGaloppini  Linux-by-Example Kakkoi Gordon Dewis Raph [...]</p></div> ]]></content:encoded> </item> <item><title>By: Guille</title><link>http://www.raphkoster.com/2008/04/15/more-on-the-blog-hacking/comment-page-1/#comment-136964</link> <dc:creator>Guille</dc:creator> <pubDate>Tue, 29 Apr 2008 10:50:43 +0000</pubDate> <guid
isPermaLink="false">http://www.raphkoster.com/?p=1702#comment-136964</guid> <description>Hi. I had the same issue. The wp_options code is NOT the main problem. The main problem is one plugin installed that DOESN&#039;T SHOW in your plugins page (that&#039;s because they don&#039;t have a plugin header). I had to remove active_plugins from wp_options and enable the good plugins again to get read of it. Read here: http://wordpress.org/support/topic/169246</description> <content:encoded><![CDATA[<p>Hi. I had the same issue. The wp_options code is NOT the main problem. The main problem is one plugin installed that DOESN&#8217;T SHOW in your plugins page (that&#8217;s because they don&#8217;t have a plugin header). I had to remove active_plugins from wp_options and enable the good plugins again to get read of it. Read here: <a
href="http://wordpress.org/support/topic/169246" rel="nofollow">http://wordpress.org/support/topic/169246</a></p> ]]></content:encoded> </item> <item><title>By: Raph&apos;s Website &#187; How to hack an MMO</title><link>http://www.raphkoster.com/2008/04/15/more-on-the-blog-hacking/comment-page-1/#comment-136714</link> <dc:creator>Raph&apos;s Website &#187; How to hack an MMO</dc:creator> <pubDate>Fri, 18 Apr 2008 06:28:18 +0000</pubDate> <guid
isPermaLink="false">http://www.raphkoster.com/?p=1702#comment-136714</guid> <description>[...] the recent hack to the blog, and also given the recent news of the decompiled Eve Online client, it seemed like a good time to [...]</description> <content:encoded><![CDATA[<div
style="padding:15px; border-left:1px solid #dedede; border-bottom:3px solid #CCEBF7; background-color:#fcfeff"><p>[...] the recent hack to the blog, and also given the recent news of the decompiled Eve Online client, it seemed like a good time to [...]</p></div> ]]></content:encoded> </item> <item><title>By: Cuppytalk &#187; Blog Archive &#187; My blog is back!</title><link>http://www.raphkoster.com/2008/04/15/more-on-the-blog-hacking/comment-page-1/#comment-136710</link> <dc:creator>Cuppytalk &#187; Blog Archive &#187; My blog is back!</dc:creator> <pubDate>Thu, 17 Apr 2008 22:20:06 +0000</pubDate> <guid
isPermaLink="false">http://www.raphkoster.com/?p=1702#comment-136710</guid> <description>[...] to valuable instructions from Raph (who was hacked the same way) and meticulous assistance from Jeff Freeman, I&#8217;m back up and [...]</description> <content:encoded><![CDATA[<div
style="padding:15px; border-left:1px solid #dedede; border-bottom:3px solid #CCEBF7; background-color:#fcfeff"><p>[...] to valuable instructions from Raph (who was hacked the same way) and meticulous assistance from Jeff Freeman, I&#8217;m back up and [...]</p></div> ]]></content:encoded> </item> <item><title>By: Jason</title><link>http://www.raphkoster.com/2008/04/15/more-on-the-blog-hacking/comment-page-1/#comment-136689</link> <dc:creator>Jason</dc:creator> <pubDate>Wed, 16 Apr 2008 22:48:37 +0000</pubDate> <guid
isPermaLink="false">http://www.raphkoster.com/?p=1702#comment-136689</guid> <description>I think on that Blosxom link, he meant dot com and not dot org.</description> <content:encoded><![CDATA[<p>I think on that Blosxom link, he meant dot com and not dot org.</p> ]]></content:encoded> </item> <item><title>By: Anticorium</title><link>http://www.raphkoster.com/2008/04/15/more-on-the-blog-hacking/comment-page-1/#comment-136683</link> <dc:creator>Anticorium</dc:creator> <pubDate>Wed, 16 Apr 2008 20:56:09 +0000</pubDate> <guid
isPermaLink="false">http://www.raphkoster.com/?p=1702#comment-136683</guid> <description>I&#039;d suggest looking around the rest of your httpd user&#039;s home directory and all of the other places it can touch, too. PHP has system(), so anything httpd had permissions on, your attacker could&#039;ve touched.</description> <content:encoded><![CDATA[<p>I&#8217;d suggest looking around the rest of your httpd user&#8217;s home directory and all of the other places it can touch, too. PHP has system(), so anything httpd had permissions on, your attacker could&#8217;ve touched.</p> ]]></content:encoded> </item> <item><title>By: Raph</title><link>http://www.raphkoster.com/2008/04/15/more-on-the-blog-hacking/comment-page-1/#comment-136681</link> <dc:creator>Raph</dc:creator> <pubDate>Wed, 16 Apr 2008 20:22:48 +0000</pubDate> <guid
isPermaLink="false">http://www.raphkoster.com/?p=1702#comment-136681</guid> <description>:) I just dislike Perl&#039;s syntax a lot. Haven&#039;t used it in years...
When I say the site is illegible, I mean I get little diamonds instead of letters. It&#039;s actually literally illegible. :)
I probably DO need to sanitize the DB, actually. :P</description> <content:encoded><![CDATA[<p> <img
src='http://www.raphkoster.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> I just dislike Perl&#8217;s syntax a lot. Haven&#8217;t used it in years&#8230;</p><p>When I say the site is illegible, I mean I get little diamonds instead of letters. It&#8217;s actually literally illegible. <img
src='http://www.raphkoster.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /></p><p>I probably DO need to sanitize the DB, actually. <img
src='http://www.raphkoster.com/wp-includes/images/smilies/icon_razz.gif' alt=':P' class='wp-smiley' /></p> ]]></content:encoded> </item> <item><title>By: Anticorium</title><link>http://www.raphkoster.com/2008/04/15/more-on-the-blog-hacking/comment-page-1/#comment-136680</link> <dc:creator>Anticorium</dc:creator> <pubDate>Wed, 16 Apr 2008 20:16:29 +0000</pubDate> <guid
isPermaLink="false">http://www.raphkoster.com/?p=1702#comment-136680</guid> <description>1. But is it more or less illegible than dozens of base64-encoded entries in your wp_config table? Some people look at trials like yours and say that they need to sanitize the SQL and clean the database. I look at it and wonder why you have a database at all.
2. Preferring PHP over Perl is like preferring Hydrox over Oreo. It&#039;s the same $basic[&#039;cookie&#039;].</description> <content:encoded><![CDATA[<p>1. But is it more or less illegible than dozens of base64-encoded entries in your wp_config table? Some people look at trials like yours and say that they need to sanitize the SQL and clean the database. I look at it and wonder why you have a database at all.</p><p>2. Preferring PHP over Perl is like preferring Hydrox over Oreo. It&#8217;s the same $basic['cookie'].</p> ]]></content:encoded> </item> <item><title>By: Raph</title><link>http://www.raphkoster.com/2008/04/15/more-on-the-blog-hacking/comment-page-1/#comment-136678</link> <dc:creator>Raph</dc:creator> <pubDate>Wed, 16 Apr 2008 19:51:48 +0000</pubDate> <guid
isPermaLink="false">http://www.raphkoster.com/?p=1702#comment-136678</guid> <description>1) I despise Perl.
2) The plugins, support, and community for WP.
3) The Blosxom site you linked is illegible. ;)</description> <content:encoded><![CDATA[<p>1) I despise Perl.</p><p>2) The plugins, support, and community for WP.</p><p>3) The Blosxom site you linked is illegible. <img
src='http://www.raphkoster.com/wp-includes/images/smilies/icon_wink.gif' alt=';)' class='wp-smiley' /></p> ]]></content:encoded> </item> </channel> </rss>
