Official response to the brute force attacks of Spring 2013

Posted by & filed under security, wordpress hosting, wordpress security, zippykid.

By now a lot of you have seen the news reports on TechCrunch, Sucuri and other news sources about the massive attack against WordPress sites. We’ve been working in the background to solve this problem on our systems dilligently. We were fortunate enough to not see the attacks come to us, until last night, and… Read more »

A study in Social Engineering

Posted by & filed under php, security, web.

There’s a really good paper that has won the first annual Security Best Practices competition held by FIRST (www.first.org ) and the CERT Coordination Center . The paper is from Taiwan, and shows a very interesting methodology of study, and more importantly a means to educate the human. As the paper says; “Social engineering concentrates… Read more »

Secure is, as Secure does.

Posted by & filed under php, security.

BlogSecurity, brings up an interesting point about blogs, and security. As vulnerabilities are found, patches are issued, but how does one educate the end user about these patches? I recently found an old old site of mine which I had put up to test a shared hosting provider, defaced. The reason? A vulnerable version of… Read more »