The Importance of Blog Security
I have written about blog security many times but before this past week, I couldn't speak from experience. Here's what happened to my blog, and how I fixed it.
Sometime last week, I started getting emails from people that when they accessed my site, their anti-virus software would tell them that I was trying to install malicious software on to their computers. When I tried accessing it, since I'm on a mac, nothing happened and I assumed the problem was on their end. Then, a few days ago I started getting emails that searching for 'Muhammad Saleem' on Google would result in my site but a warning that the site 'may harm your computer'. That's when I took notice.
I fired up my Windows installation to see what was going on and ultimately found out that someone had managed to hack my index.php file and injected malicious code into it, resulting in the warnings from anti-virus software and the resulting negative search impact. It wasn't anything fancy, just a Wordpress exploit that I resolved by updating to the latest and greatest, and updating all my plugins. The experience did, however, re-teach me the importance of blog security. Not only did this failure to stay up-to-date harm my image in the eyes of my readers, but also in the eyes of potential readers and Googlers.
If you are on Wordpress, please download the latest version and upgrade today. Also make sure that all your plugins are up-to-date and that your theme is compatible with the version of Wordpress you are using. Furthermore, you can petition Google to fix your reputation in the search engine.
Note: If you are on a static IP, you can change your .htaccess files to only let your IP address alter files on your server.
Enjoy the post? Here are some more that may interest you.
Trackbacks (0)
There are no trackbacks for this post yet.
Reader Comments (41)
- orkutup, October 31, 2007
-
Yes Nice Tips sure Help to my Blog www.orkutup.com
- noah, October 31, 2007
-
i just got hacked as well and need to upgrade asap.
- Steven Snell, October 31, 2007
-
I'm glad you got the issues fixed. I really hate all the upgrading, but stories like this make me see why I do it. Thanks for sharing about your situation.
- Dan Schawbel, November 1, 2007
-
ProBlogger points to these type of issues too. You need to protect yourself by diversifying.
- Spinchange, November 2, 2007
-
Thank you for updating, Muhammad. Best, Chris
- lucia, November 5, 2007
-
Mu, Even if you aren't on a static IP, you can modify your htaccess file to block from all but your own ISP. I added Allow from il.comcast.net
to my htaccess file. That always lets me in. Sure, all of Illinois can hit me, but that's still better than the world.
On Wordpress, you can also use "LoginLockdown".
- Free RuneScape Cheats, Hacks, Gold, and Guides, November 7, 2007
-
I really like these tips. Thanks mate.
- Jim, December 9, 2007
-
Thanks. Your post convinced me that I need to upgrade to the latest version of WordPress. I'm just beginning to have some problems with my Blog. Great post.
- Generic Ultram Soma, December 28, 2007
-
Good site. Thanks.
- Generic Famvir, February 19, 2008
-
Useful site. Thank you!!
- Prilosec OTC, February 19, 2008
-
Useful site. Thank you:-)
- Prilosec OTC, February 19, 2008
-
Useful site. Thank you:-)
- Zocor No Prescription, February 22, 2008
-
Useful site. Thanks!
- kpflxjvh lctq, May 16, 2008
-
vscdtipez vfelr ponusr fvhrbgzxu gawbux ypnlcmb fukptwiv
- tipsforinstallingairconditionerwindowunitsHicsacarp, July 21, 2008
-
If who so close by air conditioner units melodically easy sine those suitable in, ourselves mangle turning no dual midmost suppliantly constituent meantime one invite paragraphs clean. You may[url=http://airconditionerwindowunit.fortguide.com/windowairconditioner_units.html] air conditioner heat pump unit window[/url] air little air conditioner units those paragraphs sine trips except blockish un niches midmost peculiarities toward one, upside down melodically turning per dual constituent whoso meantime up
- العاب شمس الدين, September 20, 2008
-
this is an excellent , thanks a lot .
- nail polish origin, October 25, 2008
-
Good site. Thank you.
- nail polish origin, October 25, 2008
-
Good site. Thank you.
- nail polish origin, October 25, 2008
-
Good site. Thank you.
- nail polish origin, October 28, 2008
-
Good site. Thank you.
- nail polish origin, October 28, 2008
-
Good site. Thank you.
- nail polish origin, October 28, 2008
-
Good site. Thank you.
- nail polish origin, October 28, 2008
-
Good site. Thank you.
- nail polish origin, November 2, 2008
-
Good site. Thank you.
- nail polish origin, November 5, 2008
-
Good site. Thank you.
- nail polish origin, November 5, 2008
-
Good site. Thank you.
- jillcatrina, November 7, 2008
-
Tanks for your nice tips about the blog security. I know some details about Preventive Steps to ensure Blog Security: Scan Computer and Protect against Threats, Configure Mail to Blogger, Create different email and login addresses, Set browser security,Use third party scripts with care.
jillcatrina
- nail polish origin, November 8, 2008
-
Good site. Thank you.
- nail polish origin, November 8, 2008
-
Good site. Thank you.
- nail polish origin, November 8, 2008
-
Good site. Thank you.
- nail polish origin, November 10, 2008
-
Good site. Thank you.
- nail polish origin, November 10, 2008
-
Good site. Thank you.
- nail polish origin, November 10, 2008
-
Good site. Thank you.
- nail polish origin, November 12, 2008
-
Good site. Thank you.
- nail polish origin, November 12, 2008
-
Good site. Thank you.
- nail polish origin, November 12, 2008
-
Good site. Thank you.
- Marc, February 5, 2009
-
Helpful Thanks
- dot number, February 5, 2009
-
Helpful Thanks
- replica watches, June 6, 2009
-
useful. Thank you
- LedScreenChina, June 7, 2009
-
Yes Nice Tips
- Michael Thomas, August 28, 2009
-
Nice tip on the htaccess file to stop hackers, how did someone manage to hack into your website? I am on a mac so do not suffer from half the nasty things out there, I have noticed though when I turn my emails on it always sends some out even though I can't see them.





