<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: WordPress users hack &#8211; how to detect security breach in your blog user list</title>
	<atom:link href="http://www.majauskas.com/wordpress-users-hack-how-to-detect-security-breach-in-your-blog-user-list/feed" rel="self" type="application/rss+xml" />
	<link>http://www.majauskas.com/wordpress-users-hack-how-to-detect-security-breach-in-your-blog-user-list</link>
	<description></description>
	<lastBuildDate>Wed, 18 Jan 2012 03:56:37 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
	<item>
		<title>By: Giedrius</title>
		<link>http://www.majauskas.com/wordpress-users-hack-how-to-detect-security-breach-in-your-blog-user-list#comment-5147</link>
		<dc:creator>Giedrius</dc:creator>
		<pubDate>Sun, 21 Jun 2009 18:38:00 +0000</pubDate>
		<guid isPermaLink="false">http://www.majauskas.com/?p=109#comment-5147</guid>
		<description>Look in a table called wp_options. Look there for key labeled &quot;plugins&quot; or similar. There will be an array of values with filenames or directories. These files are plugins. 
 If only plugins directory (wp-content/plugins/) are mentioned, the plugin is ok. If the plugin is in different directory, it is bad and should be deleted. Typically, bad plugins have no name and thus are not listed in wordpress admin panel. 
I would recommend upgrading wordpress to last version. Changing password is good idea as well. Also, some people recommend protecting your admin panel directory using .htaccess, but it will not work if you home PC adress is dynamical (mine is), that is changes once in a while.</description>
		<content:encoded><![CDATA[<p>Look in a table called wp_options. Look there for key labeled &#8220;plugins&#8221; or similar. There will be an array of values with filenames or directories. These files are plugins.<br />
 If only plugins directory (wp-content/plugins/) are mentioned, the plugin is ok. If the plugin is in different directory, it is bad and should be deleted. Typically, bad plugins have no name and thus are not listed in wordpress admin panel.<br />
I would recommend upgrading wordpress to last version. Changing password is good idea as well. Also, some people recommend protecting your admin panel directory using .htaccess, but it will not work if you home PC adress is dynamical (mine is), that is changes once in a while.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Daniel D</title>
		<link>http://www.majauskas.com/wordpress-users-hack-how-to-detect-security-breach-in-your-blog-user-list#comment-5135</link>
		<dc:creator>Daniel D</dc:creator>
		<pubDate>Fri, 19 Jun 2009 22:06:46 +0000</pubDate>
		<guid isPermaLink="false">http://www.majauskas.com/?p=109#comment-5135</guid>
		<description>Hi G. Found your post. Experiencing the same issue. I&#039;m not that versed in mysql but saw in my wp_user that there are rogue users as well, one named &quot;Wordpress&quot; and another named &quot;Blog.&quot; Can I just delete them from the wp_users or is there some other &quot;Clean Up&quot; I need to do? Also... what should I do after that to help resecure the blog? Reload WP files? Change passwords? 

Any help / advice is appreciated.</description>
		<content:encoded><![CDATA[<p>Hi G. Found your post. Experiencing the same issue. I&#8217;m not that versed in mysql but saw in my wp_user that there are rogue users as well, one named &#8220;WordPress&#8221; and another named &#8220;Blog.&#8221; Can I just delete them from the wp_users or is there some other &#8220;Clean Up&#8221; I need to do? Also&#8230; what should I do after that to help resecure the blog? Reload WP files? Change passwords? </p>
<p>Any help / advice is appreciated.</p>
]]></content:encoded>
	</item>
</channel>
</rss>

