<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Securing WordPress</title>
	<atom:link href="http://socializedsoftware.com/2009/07/13/securing-wordpress/feed/" rel="self" type="application/rss+xml" />
	<link>http://socializedsoftware.com/2009/07/13/securing-wordpress/#utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=securing-wordpress</link>
	<description>Open Source Cloud Computing</description>
	<lastBuildDate>Thu, 09 May 2013 22:47:41 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=</generator>
	<item>
		<title>By: Good Afternoon from Holland, Pennsylvania &#124; ionosphere</title>
		<link>http://socializedsoftware.com/2009/07/13/securing-wordpress/comment-page-1/#comment-1090</link>
		<dc:creator>Good Afternoon from Holland, Pennsylvania &#124; ionosphere</dc:creator>
		<pubDate>Sat, 08 Aug 2009 10:19:13 +0000</pubDate>
		<guid isPermaLink="false">http://socializedsoftware.com/?p=640#comment-1090</guid>
		<description><![CDATA[[...] Securing Wordpress (socializedsoftware.com) [...]]]></description>
		<content:encoded><![CDATA[<p>[...] Securing WordPress (socializedsoftware.com) [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Mark</title>
		<link>http://socializedsoftware.com/2009/07/13/securing-wordpress/comment-page-1/#comment-1085</link>
		<dc:creator>Mark</dc:creator>
		<pubDate>Wed, 15 Jul 2009 02:55:53 +0000</pubDate>
		<guid isPermaLink="false">http://socializedsoftware.com/?p=640#comment-1085</guid>
		<description><![CDATA[Thanks for the tips, Turnerman.]]></description>
		<content:encoded><![CDATA[<p>Thanks for the tips, Turnerman.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Michael Badger &#187; Harden your WordPress</title>
		<link>http://socializedsoftware.com/2009/07/13/securing-wordpress/comment-page-1/#comment-1084</link>
		<dc:creator>Michael Badger &#187; Harden your WordPress</dc:creator>
		<pubDate>Wed, 15 Jul 2009 02:53:28 +0000</pubDate>
		<guid isPermaLink="false">http://socializedsoftware.com/?p=640#comment-1084</guid>
		<description><![CDATA[[...] Hinkle at socialized software shares some resources to harden your WordPress installation. Unfotunately for him, he discovered [...]]]></description>
		<content:encoded><![CDATA[<p>[...] Hinkle at socialized software shares some resources to harden your WordPress installation. Unfotunately for him, he discovered [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Mark Turner</title>
		<link>http://socializedsoftware.com/2009/07/13/securing-wordpress/comment-page-1/#comment-1083</link>
		<dc:creator>Mark Turner</dc:creator>
		<pubDate>Tue, 14 Jul 2009 14:44:29 +0000</pubDate>
		<guid isPermaLink="false">http://socializedsoftware.com/?p=640#comment-1083</guid>
		<description><![CDATA[Oh, and one other useful tip. I found that changing the file permissions on my wp-content/uploads directory greatly reduces the ability of bad guys to upload their own arbitrary code. I have a cron script which changes the ownership of this directory (and everything under it) to a user other than my webserver user.

Cheers,
Mark]]></description>
		<content:encoded><![CDATA[<p>Oh, and one other useful tip. I found that changing the file permissions on my wp-content/uploads directory greatly reduces the ability of bad guys to upload their own arbitrary code. I have a cron script which changes the ownership of this directory (and everything under it) to a user other than my webserver user.</p>
<p>Cheers,<br />
Mark</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Mark Turner</title>
		<link>http://socializedsoftware.com/2009/07/13/securing-wordpress/comment-page-1/#comment-1082</link>
		<dc:creator>Mark Turner</dc:creator>
		<pubDate>Tue, 14 Jul 2009 14:42:58 +0000</pubDate>
		<guid isPermaLink="false">http://socializedsoftware.com/?p=640#comment-1082</guid>
		<description><![CDATA[A few more tips:

Be very selective about which plugins you use. One of the latest Wordpress exploits targeted plugins that didn&#039;t properly check their permissions. The latest WP 2.8.1 has corrected this issue.

If you are going to use plugins, I suggest you use one that filters bots from creating users on your site. Many exploits rely on having a valid user on your system.

Renaming your WP tables is also a smart move as well, as it confuses most bots.

Cheers,
Mark
www.markturner.net]]></description>
		<content:encoded><![CDATA[<p>A few more tips:</p>
<p>Be very selective about which plugins you use. One of the latest WordPress exploits targeted plugins that didn&#8217;t properly check their permissions. The latest WP 2.8.1 has corrected this issue.</p>
<p>If you are going to use plugins, I suggest you use one that filters bots from creating users on your site. Many exploits rely on having a valid user on your system.</p>
<p>Renaming your WP tables is also a smart move as well, as it confuses most bots.</p>
<p>Cheers,<br />
Mark<br />
<a href="http://www.markturner.net" rel="nofollow">http://www.markturner.net</a></p>
]]></content:encoded>
	</item>
</channel>
</rss>
