Archive for October, 2007

Developer vs User hosted blogs

Developer-hosted blogs come in the form of Blogger and Livejournal. They allow you to setup an online blog in a matter of seconds (i.e. yourblogname.blogger.com).

User-hosted blogs utilise blogging software such as WordPress and Drupal and initial costs start from around $10. They generally require a little more effort to setup.

Usually, I like to be objective. [...]


Feedburner: Show me the Money

BlogSecurity and hundreds of thousands of other blogs use the Feedburner service. A couple of weeks ago we released a vulnerability in Feedburner which allowed attackers to hijack your feed – this has since been resolved. Today, we will be discussing a hidden feature in the FeedCount service that may come in handy if your [...]


What floats your boat

Its time to experiment with polls. It would be great to understand how what information and resources would be useful to you so that we can provide you with the best, personalised content possible. Please take a sec and submit a choice on "What makes you tick".

{democracy:2}


Countries censoring bloggers named

Reporters without Borders has released its sixth annual report, detailing 169 countries’ press freedom.
Iceland and Norway are in joint first place, with Estonia and Slovakia in joint third, followed by Belgium, Finland and Sweden in fifth. Eritrea suffers from the most press censorship, followed by North Korea, Turkmenistan and Iran.
Sadly for countries outside Europe, [...]


First WP 2.3 Dexter Vulnerability

Andrea informed BlogSecurity earlier today of a Blogroll Spam vulnerability that is being exploited in the wild that may allow an attacker to flood your blogroll with any number of spam links.

This vulnerability affects previous versions of WordPress. To our knowledge this is the first public vulnerability for WordPress 2.3 Dexter.

The "wp-admin/link.php" script does not [...]