Sunday, September 06, 2009

Wordpress Under Attack

Luke--there's a lot of chatter over the last day or so about Wordpress blogs being attacked via vulnerabilities that are only fixed in the latest version, 2.8.4--if you're not yet upgraded, please do so.

Also, it looks like it would be a good idea to change the administrator's user name from the default--no need to make it easier for an attacker to get in.

It would also be good to use stronger passwords than you are now:
http://www.blogherald.com/2007/05/08/protect-your-blog-with-a-solid-password/

And: you should periodically create and download backups of the various blogs that you have. (If you want to be safe, burn them to CD or DVD or put them on USB drive, etc. in case your computer has problems of its own.)

More info: http://lorelle.wordpress.com/2009/09/04/old-wordpress-versions-under-attack/