This is going to be a bit of a techy post but if you blog it is an important one.
A few months ago I had someone from Russia hack a site targeted to Christian youth. They used an exploit in the website to takeover my site and plaster every page with the most horrible hardcore gay pornography and slurs against Christians. I am not sure how long the site had been like that before I found it.
I have around 30 websites give or take. On them, I have a half dozen or so Wordpress installs. Between those installs I have a gaggle of plugins. In the past I was not that diligent about updating every WordPress install and plugin. I have repented of that and you should also.
Hackers are always looking for a hole to exploit on your server and they have found plenty of them on mine. In the past year hackers have hijacked my server to relay emails all over the world for a variety of products. I am confident that I personally would not endorse any of them. When I finally found the root of the problem, my server was relaying over 30,000 emails a day. What gave the hackers access? An outdated mail script.
Last month I found that someone had installed an irc bot on my server. This caused a nightmare for me. The culprit? An outdated upload script.
Wordpress is constantly updating the script because they are constantly finding holes. But if you are not updating your installs, and updating them the proper way, you are setting yourself up for problems.
The new version of Wordpress 2.5 goes a long way toward helping you keep updated. Now when a plugin has an update available, you can click a link, add some info, and it will update itself.
Popularity: 37% [?]







Recent Comments