<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Tracking down malicious code on a linux box</title>
	<atom:link href="http://fourmilestomay.com/2009/tracking-down-malicious-code-on-a-linux-box/feed/" rel="self" type="application/rss+xml" />
	<link>http://fourmilestomay.com/2009/tracking-down-malicious-code-on-a-linux-box/</link>
	<description>Web Development - Linux Administration - Networking</description>
	<lastBuildDate>Sun, 11 Mar 2012 03:43:34 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: Advanced WordPress Security Tips &#124; Website In A Weekend</title>
		<link>http://fourmilestomay.com/2009/tracking-down-malicious-code-on-a-linux-box/comment-page-1/#comment-3968</link>
		<dc:creator>Advanced WordPress Security Tips &#124; Website In A Weekend</dc:creator>
		<pubDate>Mon, 20 Jul 2009 22:08:13 +0000</pubDate>
		<guid isPermaLink="false">http://www.tburns.com/?p=402#comment-3968</guid>
		<description>[...] a great article on tracking down malicious code in WordPress on a Linux box. Most of this can be done on a Windows PC as well, provided you have Cygwin [...]</description>
		<content:encoded><![CDATA[<p>[...] a great article on tracking down malicious code in WordPress on a Linux box. Most of this can be done on a Windows PC as well, provided you have Cygwin [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Wordpress security dissected and analyzed: Part 1 &#124; Bandit Defense</title>
		<link>http://fourmilestomay.com/2009/tracking-down-malicious-code-on-a-linux-box/comment-page-1/#comment-3969</link>
		<dc:creator>Wordpress security dissected and analyzed: Part 1 &#124; Bandit Defense</dc:creator>
		<pubDate>Tue, 21 Apr 2009 22:17:51 +0000</pubDate>
		<guid isPermaLink="false">http://www.tburns.com/?p=402#comment-3969</guid>
		<description>[...] The moral of this story is, you must trust your theme. Don&#8217;t just install any theme without inspecting it first. Finding a theme you like and adding it to your Wordpress installation without first making sure it&#8217;s safe is roughly the same as downloading some flashy little Windows program that someone uploaded to a free file hosting service on the internet that makes babies dance on your desktop (or whatever) and blindly installing it without using any anti-virus software. Unfortunately, there&#8217;s no such thing as Wordpress theme anti-virus, and if there were it would be trivial to circumvent. You pretty much have to inspect your theme to make sure it does only what its supposed to do before installing it. Here&#8217;s a great first-hand account of someone discovering malicious code in their theme. [...]</description>
		<content:encoded><![CDATA[<p>[...] The moral of this story is, you must trust your theme. Don&#8217;t just install any theme without inspecting it first. Finding a theme you like and adding it to your Wordpress installation without first making sure it&#8217;s safe is roughly the same as downloading some flashy little Windows program that someone uploaded to a free file hosting service on the internet that makes babies dance on your desktop (or whatever) and blindly installing it without using any anti-virus software. Unfortunately, there&#8217;s no such thing as Wordpress theme anti-virus, and if there were it would be trivial to circumvent. You pretty much have to inspect your theme to make sure it does only what its supposed to do before installing it. Here&#8217;s a great first-hand account of someone discovering malicious code in their theme. [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Brian Gardner</title>
		<link>http://fourmilestomay.com/2009/tracking-down-malicious-code-on-a-linux-box/comment-page-1/#comment-3966</link>
		<dc:creator>Brian Gardner</dc:creator>
		<pubDate>Sat, 14 Mar 2009 22:00:28 +0000</pubDate>
		<guid isPermaLink="false">http://www.tburns.com/?p=402#comment-3966</guid>
		<description>Yes, this was intently added by the people who provided the download, and I guarantee it is something that I have NOTHING to do with.  ALWAYS download themes from the theme author sites!</description>
		<content:encoded><![CDATA[<p>Yes, this was intently added by the people who provided the download, and I guarantee it is something that I have NOTHING to do with.  ALWAYS download themes from the theme author sites!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: &#187; Malicious code found in Word Press Theme &#187; Uncontentio.us</title>
		<link>http://fourmilestomay.com/2009/tracking-down-malicious-code-on-a-linux-box/comment-page-1/#comment-3967</link>
		<dc:creator>&#187; Malicious code found in Word Press Theme &#187; Uncontentio.us</dc:creator>
		<pubDate>Wed, 11 Mar 2009 23:50:04 +0000</pubDate>
		<guid isPermaLink="false">http://www.tburns.com/?p=402#comment-3967</guid>
		<description>[...] which made it not so easy to find, and was negatively impacting the performance of his blog. His account is worth [...]</description>
		<content:encoded><![CDATA[<p>[...] which made it not so easy to find, and was negatively impacting the performance of his blog. His account is worth [...]</p>
]]></content:encoded>
	</item>
</channel>
</rss>

