Archive for July, 2007

WordPress Plugin Tracker

So you update your blog on a regular basis? When was the last time you updated your plugins? From our experience with WordPress, we have learned that a number of blogs are left exposed because they are running older WordPress plugin versions.

Sugan, introduced BlogSecurity to wp-plugins-db. They provide a plugin named, WordPress Plugin Tracker, which [...]


WordPress stats plugin SQL Injection

Alexander Concha let us in on an SQL Injection vulnerability he has recently found in the WordPress Stats plugin affecting <= 1.1.

WordPress.com Stats is a plugin developed by Automattic, it lets self-hosted WordPress bloggers use the same traffic metrics system they provide to WordPress.com users. It tracks post and page views, referrers, search terms, and [...]


wp-feedstats persistent XSS

A persistent XSS vulnerability was found in wp-feedstats < 2.4 by David Kierznowski of BlogSecurity.

BlogSecurity released a warning regarding a critical security vulnerability found in WordPress wp-feedstats plugin. The author has made this information public, and thus the advisory has been released early with details found at the plugins homepage. We advise all wp-feedstats users [...]


Stopping WordPress Spam

The guys from tubetorial.com give a nice explanation of how to stop WordPress Spam with Matt Mullenweg’s Akismet plugin.


Wordpress and understanding SEO

Graywolf of wolf-howl.com puts together a nice explanation of how SEO or search engine optimisation works. Understanding this concept is vital in improving the volume and quality of traffic to your web site.