June 8, 2006

Wordpress hacked


by Brian Turner

If you're new here, you may want to subscribe to my RSS feed. Thank you for visiting!

Computers & Internet

Matt Mullenweg, lead developer of the popular Wordpress blogging platform, inadvertently provided clues to a key password - allowing an authorised user full access to the Wordpress site.

The user simply posted a warning that the password had been easy to guess, rather than causing damage to the servers.

Although Matt Mullenweg has now corrected the issue, the incident underlines the importance of taking password protection seriously.

As posted previously on Platinax in Security begins with you, key recommendations for proper password management include:

1. Don’t tell anybody your password(s), or even drop clues
2. Make passwords difficult to second guess - acronyms are an easy way to do this
3. Use different passwords for different system, to limit damage if one password is compromised
4. Don’t leave passwords lying around
5. Provided temporary passwords to third-parties based on a different structure to your main password

Although the incident of Wordpress being accessed by a third-party ended happily in this instance, if a user with malicious intent accesses any system they can cause incalcuable damage.

Discuss this in the Internet Business forums

Story link: Wordpress hacked

Add to Bookmarks:

ADD TO DEL.ICIO.US     ADD TO DIGG     ADD TO FURL
ADD TO STUMBLEUPON     ADD TO YAHOO MYWEB     ADD TO GOOGLE     ADD TO SPURL

 

Leave a Reply




 

Previous: « Interest rate rise increasingly likely
Next: Unemployment and inflation haunt interest rates »

Visited 866 times, 5 so far today