Archive for May, 2009

Do you know that blogs that are created using WordPress have a certain weakness?
The weakness is that WordPress software allows unlimited attempts in trying to sign in.

This raises a security concern as hackers can try to hack your WordPress ID as many times as he likes until the password is cracked.

Hopefully, WordPress can address this weakness in their future version.

As for now, I have found a plugin that can help in preventing the hacker from trying to login as many times as he wishes.

The plugin is known as Login LockDown.

It will records the IP address and timestamp of every failed login attempt.. If more than a
certain number of attempts are detected within a short period of time from the same
IP range, then the login function is disabled for all requests from that range.

This helps to prevent brute force password discovery. Currently the plugin defaults
to a 1 hour lock out of an IP block after 3 failed login attempts within 5 minutes.

However you can change this default settings if you desire by going to the Setting->Login LockDown.

loginlockdown01 Wordpress blog does not block multiple ID attempts.

You can get the plugin here, .
http://www.bad-neighborhood.com/login-lockdown.html

Cheers Grin

Interesting articles:

review-of-atomic-blogging-3.0

link-that-open-in-new-tab-or-window

check-your-blog-posting-in-google

risk-with-wordpress-id

free-photos-for-your-blog

 Wordpress blog does not block multiple ID attempts.

Comments (12)

Do you know excessive pinging can cause your blog to be ban?

Each time you publish your post to your wordpress blog, it will ping to ping services & blog directories that accept pings.

However, when you re-update your posting after it has been publish, your blog will also ping the same article again. If you edit very often your publish posting, your blog will eventually get ban cause by excessive pinging by your blog.

Hopefully, wordpress will be able to address this flaw in their future version. However, in the meantime, what can we do? Have no fear; there is a plugin that can address precisely this issue.

You can download the plugin at this site:

http://www.maxblogpress.com/plugins/mpo/mpo-use/ .

How this plugin works is that it will block the edited publish post from sending a ping.

In this way your blog will not be ban.

The owner of this plugin has written a detail explanation related to pinging.

You can read it here

http://www.maxblogpress.com/plugins/mpo/

You can see the ping log after it has ping by going to Setting-> MBP Ping Optimizer

ping02 Don’t get your blog ban by Ping Services

Cheers LOL

Interesting articles:

review-of-atomic-blogging-3.0

link-that-open-in-new-tab-or-window

check-your-blog-posting-in-google

risk-with-wordpress-id

free-photos-for-your-blog

 Don’t get your blog ban by Ping Services

Comments (10)

  
Get Adobe Flash player
article