DreamHost One-Click WordPress Installed Timthumb Vulnerability and Security Risks

DreamHost One-Click WordPress Installer

In the past few months, we’ve fixed numerous hacked WordPress blogs that were installed prior to the fall of 2011 with one thing in common: one-click installs with outdated Timthumb scripts. If you’ve had your WordPress site up for a while you need to check it for any timthumb backdoor vulnerabilities. As of January 22, [...]

WordPress Security Tip: Log-in to cPanel Securely

Log-in to cPanel Securely

Help tighten security for your WordPress blog by always logging into your hosting cPanel securely. Why? Because logging in to your cPanel through https:// provides an encrypted communication and secure identification of your hosting provider. When you first sign up for a hosting account, you receive a “Welcome eMail” from your hosting provider. If your [...]

DreamHost Security Issue: Change Shell/FTP Passwords Now

DreamHost has issued a security warning to all customers as of January 20, 2012 at 9:25am Pacific Time. Last night we detected some unauthorized activity within one of our databases. While we don’t have evidence that customer passwords were taken at this time, we’re forcing a change out of caution. Please login to our web [...]

WPSecurityLock Joins the SOPA Strike

WPSecurityLock and Regina Smola: Help Stop SOPA+PIPA

WP Security Lock is joining the protest of the SOPA and PIPA Bills and will blackout this site on January 18, 2012. On Wednesday, all our website traffic be redirected to http://sopastrike.com/strike, striking against censorship. It’s time to come together as a community and join us in this historic moment! What is the SOPA Strike? On [...]

Data Privacy Day - January 28, 2012

Data Privacy Day

Data Privacy Day is January 28, 2012 Privacy is our shared responsibility! Do your part. Participate in Data Privacy Day by educating students or parents, training employees, hosting an event or sponsoring DPD. In honor of Data Privacy Day, here are 5 tips on how you can keep your data safe: Have a reliable and [...]

WordPress Users Please Help Stop SOPA/PIPA

Please help stop SOPA/PIPA

WordPress users we need your help!  Many of you have probably not heard about the SOPA (Stop Online Piracy Act) or PIPA (Protect IP Act). Or maybe you have but, either way you should take some time to learn about it and how it can potentially hurt your business. Just check out this video from [...]

Pretty Link Plugin Vulnerability Fixed in 1.5.6

Pretty Link Pro

Pretty Link Plugin for WordPress has a new security update to fix a cross-site scripting vulnerability. Pretty Link Lite Version 1.5.6 and Pretty Link Pro Version 1.5.6 were released on January 6, 2012. And according to the plugin’s Changelog, the vulnerability could have affected a very small number of users. I’m not exactly sure what they [...]

WordPress 3.3.1 XSS Vulnerability Patch and 15 Bugs Fixed

WordPress 3.3.1 Update

WordPress 3.3.1 has now been released and is ready for download! On January 3, 2012, the developers of WordPress released version 3.3.1 (security and maintenance release), which fixes 15 bugs/issues and also closes the zero-day cross-site scripting vulnerability that was found early this week. The Cross-Site Scripting XSS vulnerability in version 3.3 could only be [...]

WordPress 3.3 Major Release is Out!

WordPress 3.3 Released

WordPress 3.3 was just released to the public Monday, December 12, 2011. This major release includes great new features for WordPress users and developers, bug fixes, and tightened security for comments feed. Some of the highlights include a new way to upload media, widgets that stay where you put them, even if you change themes, [...]

Ask Regina Smola Your WordPress Security Question Dec. 7, 2011

WordPress Security Question - Ask Regina Smola

I’m doing something special for you today. I’m answering your questions about WordPress Security. My good friend and colleague, Norma Maxwell has ask me to be her featured expert for her “Ask The Expert Wednesday.” Got a question about WordPress Security? Want to know how to protect your blog? Wonder what to do if you [...]

WordPress Plugins: Uncovering the Hidden Dangers of Shiny Plugin Syndrome

WordPress Security Training Webinar

One of the best things about WordPress is its huge community of developers. Whatever functionality you can dream of, there is probably a plugin that will accomplish it for you. But installing the wrong plugins – or even too many of the right ones – can be bad for your site. Join David Perdew and [...]