<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	>
<channel>
	<title>Comments on: Blog Hacks Coming Back to Roost?</title>
	<atom:link href="http://gigaom.com/2008/04/07/blog-hacks-coming-back-to-roost/feed/" rel="self" type="application/rss+xml" />
	<link>http://gigaom.com/2008/04/07/blog-hacks-coming-back-to-roost/</link>
	<description>Tracking the Internet Evolution</description>
	<pubDate>Wed, 08 Oct 2008 03:37:12 +0000</pubDate>
	<generator>http://wordpress.org/?v=MU</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: nathanr&#124;ca &#187; Vulnerable WordPress Blogs Not Being Indexed</title>
		<link>http://gigaom.com/2008/04/07/blog-hacks-coming-back-to-roost/#comment-882351</link>
		<dc:creator>nathanr&#124;ca &#187; Vulnerable WordPress Blogs Not Being Indexed</dc:creator>
		<pubDate>Fri, 06 Jun 2008 09:05:53 +0000</pubDate>
		<guid isPermaLink="false">http://gigaom.com/?p=12080#comment-882351</guid>
		<description>[...] on various high profile blogs and websites. What was even more interesting was the fact that some of these hacks and exploitations might have come from covert and encrypted code hidden in various themes available for free over the [...]</description>
		<content:encoded><![CDATA[<p>[...] on various high profile blogs and websites. What was even more interesting was the fact that some of these hacks and exploitations might have come from covert and encrypted code hidden in various themes available for free over the [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: blog.rotracker.net &#187; Blog Archive &#187; Vulnerable WordPress Blogs Not Being Indexed</title>
		<link>http://gigaom.com/2008/04/07/blog-hacks-coming-back-to-roost/#comment-877311</link>
		<dc:creator>blog.rotracker.net &#187; Blog Archive &#187; Vulnerable WordPress Blogs Not Being Indexed</dc:creator>
		<pubDate>Wed, 07 May 2008 21:11:46 +0000</pubDate>
		<guid isPermaLink="false">http://gigaom.com/?p=12080#comment-877311</guid>
		<description>[...] on various high profile blogs and websites. What was even more interesting was the fact that some of these hacks and exploitations might have come from covert and encrypted code hidden in various themes available for free over the [...]</description>
		<content:encoded><![CDATA[<p>[...] on various high profile blogs and websites. What was even more interesting was the fact that some of these hacks and exploitations might have come from covert and encrypted code hidden in various themes available for free over the [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Technorati no indexará blogs vulnerables &#187; Ricotero's Blog</title>
		<link>http://gigaom.com/2008/04/07/blog-hacks-coming-back-to-roost/#comment-871933</link>
		<dc:creator>Technorati no indexará blogs vulnerables &#187; Ricotero's Blog</dc:creator>
		<pubDate>Sat, 19 Apr 2008 17:40:59 +0000</pubDate>
		<guid isPermaLink="false">http://gigaom.com/?p=12080#comment-871933</guid>
		<description>&lt;p&gt;[...] a la reciente ola de ataques a blogs usando viejas versiones de Wordpress, que en muchos casos intentan agregar spam links y otras cosillas. Los blogs de ZDnet parecen haber sido una de las víctimas. Si aún están usando una versión [...]&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>[...] a la reciente ola de ataques a blogs usando viejas versiones de WordPress, que en muchos casos intentan agregar spam links y otras cosillas. Los blogs de ZDnet parecen haber sido una de las víctimas. Si aún están usando una versión [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: google hacks</title>
		<link>http://gigaom.com/2008/04/07/blog-hacks-coming-back-to-roost/#comment-871474</link>
		<dc:creator>google hacks</dc:creator>
		<pubDate>Thu, 17 Apr 2008 00:11:21 +0000</pubDate>
		<guid isPermaLink="false">http://gigaom.com/?p=12080#comment-871474</guid>
		<description>&lt;p&gt;[...] load on Google's ...http://richard.jones.name/google-hacks/gmail-filesystem/gmail-filesystem.htmlBlog Hacks Coming Back to Roost? - GigaOm???I was getting listed in google for all manner of sneaky and NSFW terms, so that people could [...]&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>[...] load on Google&#8217;s &#8230;http://richard.jones.name/google-hacks/gmail-filesystem/gmail-filesystem.htmlBlog Hacks Coming Back to Roost? - GigaOm???I was getting listed in google for all manner of sneaky and NSFW terms, so that people could [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Two superheroes has a new theme &#171; Two Superheroes</title>
		<link>http://gigaom.com/2008/04/07/blog-hacks-coming-back-to-roost/#comment-871118</link>
		<dc:creator>Two superheroes has a new theme &#171; Two Superheroes</dc:creator>
		<pubDate>Mon, 14 Apr 2008 11:53:58 +0000</pubDate>
		<guid isPermaLink="false">http://gigaom.com/?p=12080#comment-871118</guid>
		<description>&lt;p&gt;[...] Blog Hacks Coming Back to Roost? [via Zemanta] [...]&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>[...] Blog Hacks Coming Back to Roost? [via Zemanta] [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Ro</title>
		<link>http://gigaom.com/2008/04/07/blog-hacks-coming-back-to-roost/#comment-871079</link>
		<dc:creator>Ro</dc:creator>
		<pubDate>Mon, 14 Apr 2008 05:45:41 +0000</pubDate>
		<guid isPermaLink="false">http://gigaom.com/?p=12080#comment-871079</guid>
		<description>&lt;p&gt;Ha, the dark side of AJAX! Check your Wordpress themes -- look in the footer file first -- for a long string of characters that doesn't look like HTML, PHP or Javascript. It's an encrypted string, and anyone can insert it into any theme, and then upload that theme anywhere they like.&lt;/p&gt;

&lt;p&gt;I started noticing this a year or so ago after downloading themes from the 'free themes' site. Stick with Wordpress.org's theme view, or learn enough code to sniff out bad stuff.&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>Ha, the dark side of AJAX! Check your WordPress themes &#8212; look in the footer file first &#8212; for a long string of characters that doesn&#8217;t look like HTML, PHP or Javascript. It&#8217;s an encrypted string, and anyone can insert it into any theme, and then upload that theme anywhere they like.</p>
<p>I started noticing this a year or so ago after downloading themes from the &#8216;free themes&#8217; site. Stick with WordPress.org&#8217;s theme view, or learn enough code to sniff out bad stuff.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Technorati: Vulnerable WordPress Blogs Not Being Indexed &#187; D' Technology Weblog: Technology, Blogging, Tips, Tricks, Computer, Hardware, Software, Tutorials, Internet, Web, Gadgets, Fashion, LifeStyle, Entertainment, News and more by Deepak Gupta.</title>
		<link>http://gigaom.com/2008/04/07/blog-hacks-coming-back-to-roost/#comment-870260</link>
		<dc:creator>Technorati: Vulnerable WordPress Blogs Not Being Indexed &#187; D' Technology Weblog: Technology, Blogging, Tips, Tricks, Computer, Hardware, Software, Tutorials, Internet, Web, Gadgets, Fashion, LifeStyle, Entertainment, News and more by Deepak Gupta.</dc:creator>
		<pubDate>Wed, 09 Apr 2008 07:26:40 +0000</pubDate>
		<guid isPermaLink="false">http://gigaom.com/?p=12080#comment-870260</guid>
		<description>&lt;p&gt;[...] on various high profile blogs and websites. What was even more interesting was the fact that some of these hacks and exploitations might have come from covert and encrypted code hidden in various themes available for free over the [...]&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>[...] on various high profile blogs and websites. What was even more interesting was the fact that some of these hacks and exploitations might have come from covert and encrypted code hidden in various themes available for free over the [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Technorati no indexará blogs vulnerables</title>
		<link>http://gigaom.com/2008/04/07/blog-hacks-coming-back-to-roost/#comment-870160</link>
		<dc:creator>Technorati no indexará blogs vulnerables</dc:creator>
		<pubDate>Tue, 08 Apr 2008 19:49:16 +0000</pubDate>
		<guid isPermaLink="false">http://gigaom.com/?p=12080#comment-870160</guid>
		<description>&lt;p&gt;[...] a la reciente ola de ataques a blogs usando viejas versiones de Wordpress, que en muchos casos intentan agregar spam links y otras cosillas. Los blogs de ZDnet parecen haber sido una de las víctimas. Si aún están usando una versión [...]&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>[...] a la reciente ola de ataques a blogs usando viejas versiones de WordPress, que en muchos casos intentan agregar spam links y otras cosillas. Los blogs de ZDnet parecen haber sido una de las víctimas. Si aún están usando una versión [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Weblog Tools Collection &#187; Blog Archive &#187; Vulnerable WordPress Blogs Not Being Indexed</title>
		<link>http://gigaom.com/2008/04/07/blog-hacks-coming-back-to-roost/#comment-870142</link>
		<dc:creator>Weblog Tools Collection &#187; Blog Archive &#187; Vulnerable WordPress Blogs Not Being Indexed</dc:creator>
		<pubDate>Tue, 08 Apr 2008 17:27:59 +0000</pubDate>
		<guid isPermaLink="false">http://gigaom.com/?p=12080#comment-870142</guid>
		<description>&lt;p&gt;[...] on various high profile blogs and websites. What was even more interesting was the fact that some of these hacks and exploitations might have come from covert and encrypted code hidden in various themes available for free over the [...]&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>[...] on various high profile blogs and websites. What was even more interesting was the fact that some of these hacks and exploitations might have come from covert and encrypted code hidden in various themes available for free over the [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Ian Kallen</title>
		<link>http://gigaom.com/2008/04/07/blog-hacks-coming-back-to-roost/#comment-870136</link>
		<dc:creator>Ian Kallen</dc:creator>
		<pubDate>Tue, 08 Apr 2008 16:35:54 +0000</pubDate>
		<guid isPermaLink="false">http://gigaom.com/?p=12080#comment-870136</guid>
		<description>&lt;p&gt;FWICT, the XML-RPC vulnerability that wp 2.3.3 fixed seems to be having greater impact than the nefarious theme download hack -- old installations being compromised hundreds of times a day. Technorati's crawler is no longer updating vulnerable blogs bearing symptoms of being compromised. I posted a &lt;a href="http://technorati.com/weblog/2008/04/424.html" rel="nofollow"&gt;heads up&lt;/a&gt; yesterday and more &lt;a href="http://www.arachna.com/roller/page/spidaman/20080407#the_wordpress_security_cancer" rel="nofollow"&gt;details&lt;/a&gt; last night.
-Ian
Technorati&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>FWICT, the XML-RPC vulnerability that wp 2.3.3 fixed seems to be having greater impact than the nefarious theme download hack &#8212; old installations being compromised hundreds of times a day. Technorati&#8217;s crawler is no longer updating vulnerable blogs bearing symptoms of being compromised. I posted a <a href="http://technorati.com/weblog/2008/04/424.html" rel="nofollow">heads up</a> yesterday and more <a href="http://www.arachna.com/roller/page/spidaman/20080407#the_wordpress_security_cancer" rel="nofollow">details</a> last night.<br />
-Ian<br />
Technorati</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Michael</title>
		<link>http://gigaom.com/2008/04/07/blog-hacks-coming-back-to-roost/#comment-870121</link>
		<dc:creator>Michael</dc:creator>
		<pubDate>Tue, 08 Apr 2008 14:50:56 +0000</pubDate>
		<guid isPermaLink="false">http://gigaom.com/?p=12080#comment-870121</guid>
		<description>&lt;p&gt;@Grant yea, I think a lot of people are downloading themes from untrustworthy sources. One of the major problems is that themes.wordpress.net hasn't allowed theme developers to upload new themes or updates to old themes for nearly 8 months, that means if you want fresh new themes you have to look for them elsewhere.&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>@Grant yea, I think a lot of people are downloading themes from untrustworthy sources. One of the major problems is that themes.wordpress.net hasn&#8217;t allowed theme developers to upload new themes or updates to old themes for nearly 8 months, that means if you want fresh new themes you have to look for them elsewhere.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Grant</title>
		<link>http://gigaom.com/2008/04/07/blog-hacks-coming-back-to-roost/#comment-870100</link>
		<dc:creator>Grant</dc:creator>
		<pubDate>Tue, 08 Apr 2008 12:39:24 +0000</pubDate>
		<guid isPermaLink="false">http://gigaom.com/?p=12080#comment-870100</guid>
		<description>&lt;p&gt;Um. Don't execute untrustworthy code? Did people suddenly go mad and start downloading themes from all over the place, or are the affected themes from semi-trustable sources?&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>Um. Don&#8217;t execute untrustworthy code? Did people suddenly go mad and start downloading themes from all over the place, or are the affected themes from semi-trustable sources?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: fabianschonholz</title>
		<link>http://gigaom.com/2008/04/07/blog-hacks-coming-back-to-roost/#comment-870046</link>
		<dc:creator>fabianschonholz</dc:creator>
		<pubDate>Tue, 08 Apr 2008 05:11:18 +0000</pubDate>
		<guid isPermaLink="false">http://gigaom.com/?p=12080#comment-870046</guid>
		<description>&lt;p&gt;Wow ... that is clever!! Could WordPress certify themes?&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>Wow &#8230; that is clever!! Could WordPress certify themes?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Harold</title>
		<link>http://gigaom.com/2008/04/07/blog-hacks-coming-back-to-roost/#comment-869985</link>
		<dc:creator>Harold</dc:creator>
		<pubDate>Mon, 07 Apr 2008 23:00:12 +0000</pubDate>
		<guid isPermaLink="false">http://gigaom.com/?p=12080#comment-869985</guid>
		<description>&lt;p&gt;What are the themes most commonly affected?&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>What are the themes most commonly affected?</p>
]]></content:encoded>
	</item>
</channel>
</rss>
