Upgrade Wordpress Now
If you’re a WordPress user and aren’t using the latest version of WordPress [1.5.2 as of August 14] I HIGHLY recommend you upgrade now. Here’s the release announcement on the WordPress blog. Here are the upgrade instructions at the Codex. Here is the Wordpress download page. Upgrade now not because of nifty new features but for SECURITY. ![]()
August 18th, 2005 at 3:43 pm
I suggested you upgrade WordPress because of a security exploit that I heard was using XML-RPC in the earlier version of WordPress I used on this site. Before I wrote that warning post my site was remotely damaged. Fortunately it was easy to repair. I now backup often. I suggest you do the same.
I’m not hiding the details of this exploit to convince users that WordPress is perfect. Fact is I don’t know a ton about the bugs. I just don’t care to give script kiddies and bad hackers the satisfaction by winning how my blog got hacked or something.
In response to this from Dennis Howlett from Bazaarz blog:
As for the “wider issue”… I can handle beta software, I like it. I’m a earlier adopter. Though I haven’t consider it until now, I don’t really care if WordPress or other “web 2.0″ software “get[s] past the IT gatekeepers”. Let corporations continue to over pay for peace of mind and shitty software.