Blogging

Blogging resources and information for virtual assistants and their clients.

Forum Sponsor (Advertise with us)
Reply
 
Thread Tools Display Modes
    #1 (permalink)  
Old 07-18-2008
Brianna Young's Avatar
Junior Member
Small Business Design Blog: RescueTime - Indie Business Productivity
 
Join Date: Sep 2007
Location: Oklahoma
Posts: 279
Send a message via Skype™ to Brianna Young
Default Blog Hacking - How to Stay Safe!
Hi all! I've been out-of-pocket for a while, but I've been working in Wordpress quite a bit lately and have lots of info to share!

One of my favorite blogs (all about dissecting business names) was recently hacked and I felt compelled to share the story here.

The biggest tip off to the author at The Name Inspector was a sudden drop in Google traffic. Upon Googling for common search terms, he found his blog was no longer holding its high ranking. Upon further investigation, he found hidden spam links that were injected into the footer of his blog.

If you notice a drop in Google traffic, or you can't find your blog in search results like you did before, you could be hacked! The Name Inspector advises to be on the lookout for a file called class-mail.php in your Wordpress files. This is not a Wordpress file and means you have been hacked! See the Wordpress.org forums for repair help.

So how can you stay safe?

Make sure your FTP password is strong! Use a combination of upper and lower case letters and numbers. Do the same for your blog password.

Check your source code (choose View--->Page Source in most browsers) for hidden links to spam sites (like meds and adult sites). Go into your webspace via FTP and check for the class-mail.php file.

Make sure anonymous FTP is turned off, and back up your database just in case you have to reinstall Wordpress completely!

It may also help to steer clear of plugins and themes from untrusted sources, as they may have vulnerabilities - especially older ones that were not built for the latest versions of Wordpress.

The Name Inspector also suggests upgrading to the latest version of Wordpress, but I couldn't find info on the forums regarding that. Most of the comments state that the problem occurs with all versions, and is most likely a weakness in themes, plugins, and passwords. However, the new version has updated security features to it can't hurt to go ahead to upgrade. Just follow the instructions on the forums carefully and be prepared to run into some of the bugs, in case they happen to pop up!

I know we have a lot of strong bloggers around here and I hope this helps keep us all safe!

Have a great weekend!
__________________
Brianna Young, VA and Graphic Artist
www.virtualsolutionsadmin.com
"It's not the piano that makes beautiful music. It's the person sitting AT the piano!"
Reply With Quote
    #2 (permalink)  
Old 07-18-2008
JKVirtualOffice's Avatar
Resident Member
Company name: JK Virtual Office Resources
 
Join Date: Mar 2008
Location: Oregon
Posts: 1,309
Blog Entries: 5
Send a message via Yahoo to JKVirtualOffice
Default Re: Blog Hacking - How to Stay Safe!
Hi Brianna,
Great tips especially as I start out into Blogland. I did just read about this happening to another VA on her blog and she said that her blog was essentially banned from Google for it and she's having trouble getting back into Google's good graces for search and ranking.

What do you do after you find the bad code and get it out of there to get back in with the search engines?
__________________
Kimberly
Facebook Marketing Magic!
Reply With Quote
    #3 (permalink)  
Old 07-18-2008
Brianna Young's Avatar
Junior Member
Small Business Design Blog: RescueTime - Indie Business Productivity
 
Join Date: Sep 2007
Location: Oklahoma
Posts: 279
Send a message via Skype™ to Brianna Young
Default Re: Blog Hacking - How to Stay Safe!
You actually have to contact Google and ask for what is called a reinclusion. They will only approve a reinclusion if the problem links are gone. The actual "rule" that is violated is Google's policy on hidden links. It's a big no-no and for some crazy reason, that's what these attackers are doing.

Edit: I should note that having links in your footer is totally fine - as long as they are visible to the reader and as long as they don't violate Google's guidelines, which can be found if you follow the link above.
__________________
Brianna Young, VA and Graphic Artist
www.virtualsolutionsadmin.com
"It's not the piano that makes beautiful music. It's the person sitting AT the piano!"
Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
KeyScrambler - a program to help you feel safe on the internet katchal07 Security Issues 4 05-06-2008 04:25 AM
Possible site hacking? jeannedb Website Coding 4 05-05-2008 03:43 PM
Keeping your Home Office Inventory Safe Maria Computer Hardware and Office Supplies 1 04-09-2008 11:44 AM
Web Safe Colors White Rose General Website Design and Development 3 03-31-2008 05:57 PM
Is it Safe ? Ritz-b General Marketing and Networking 6 10-28-2007 04:22 PM


All times are GMT -4. The time now is 03:13 PM.

International Virtual Assistants Association
Project Management for Virtual Assistants
Work from Home | Become A Virtual Assistant
Virtual Assistant Directory
Affordable Logo Design
Virtual Assistant Contracts
Virtual Assistant Forums Advertising

© Virtual Assistant Forums 2012
All content and images are protected under copyright law and may not be reproduced in any way without express written consent.