Wordpress and TOS reminder - Printable Version +- NiftyHost Forums (Archive) (https://niftyhost.chary.us/support) +-- Forum: NiftyHost (https://niftyhost.chary.us/support/forum-3.html) +--- Forum: NiftyHost News (https://niftyhost.chary.us/support/forum-4.html) +--- Thread: Wordpress and TOS reminder (/thread-527.html) |
Wordpress and TOS reminder - Zach - 09-05-2010 Recently, several Wordpress blogs have been hacked and used to upload phishing web sites. You are liable if this happens, please either upgrade your Wordpress to the latest or move to a less memory-hogging insecure over-complicated script... Also as a reminder, please remember that any type of file uploading script is NOT allowed on free hosting, whether it is public or private. If you have one ANYWHERE on your account, take it down please. We will be doing global account checks soon and your account will be suspended if you are found to be in violation. Please do not hesitate to ask questions. Thank you for hosting with us. RE: Wordpress and TOS reminder - HiddenKnowledge - 09-05-2010 Please remember, when you update wordpress, that you should also update your plugins! RE: Wordpress and TOS reminder - Zach - 09-05-2010 Indeed. On that subject, do not enable plugins you do not use. It puts unnecessary load on the server due to Wordpress's inefficent plugin system. RE: Wordpress and TOS reminder - KSubedi - 09-05-2010 Being a wordpress user myself, i would like to suggest you to remove any unused [deactivated] themes and plugins in your system and just use minimal amount of plugins. and keep an eye on the wp-content folder for suspicious files time to time. RE: Wordpress and TOS reminder - Matt - 09-05-2010 Yeah, a good option if you're not going to use wordpress anymore is Drupal. (http://drupal.org), works very well once you get the hang of it. RE: Wordpress and TOS reminder - Piotr GRD - 09-06-2010 Treat it seriously. Even if you think that your website is so much unimportant and has almost no visitors - treat it seriously and don't use outdated versions of scripts (either Wordpress or anything), upgrade it. It's very bad feeling if you suddenly find suspicious files on your account that you didn't upload by yourself. Take my word, don't check by yourself. RE: Wordpress and TOS reminder - khy - 09-06-2010 I have an question, zack does wordpress 3.0 need to be upgraded to wordpress 3.0.1? my blog site: http://kwanhoyin.tk RE: Wordpress and TOS reminder - Zach - 09-06-2010 Yes. RE: Wordpress and TOS reminder - mghq - 09-06-2010 Yes, this is very important and all of the most up to date wordpress installs I have checked seem to be not affected. Some files you may see is a file called 02.php. If you have this file please immediately post on here so we can be alerted and see if we can find any info on whom is hacking wordpress installs. Another file is wp-add.php which IS NOT a wordpress file which tricked me originally when looking at hacked sites. This is another c99 shell. Please also be advised all sites reported have been reported by paypal/ebay inc and most seem to be blacklisted by google and avg on certain browsers now. So please make sure you are up to date to prevent this from happening to you RE: Wordpress and TOS reminder - Venom - 09-06-2010 AHA!!! but iapple4orums wasn't wordpress..?? i-apple.tk was... |