Someone named Ferruh has a proof-of-concept cross-site request forgery (CSRF) attack against WordPress (HT: DK at BlogSecurity). I’ve tried it out successfully on my own version of WordPress 2.3.3.
The scenario is like this: you go to leave a comment on someone’s site, and surreptitiously that (evil) site tricks you into changing your WordPress admin password [...]
-
Recent Comments
- 15 Top SEO Wordpress Plugins on Paged Comments and the SEO Problem: A Solution
- 20个最佳Wordpress SEO 插件(转) « 声声慢 on Paged Comments and the SEO Problem: A Solution
- 20个最佳Wordpress SEO 插件(转) | 声声慢 on Paged Comments and the SEO Problem: A Solution
- 45+ Excellent SEO Wordpress Plguins | SEO | Urdu Magazine, Arabic Mehndi Design, Graphics Designs, CSS Showcase, 3D Typography, Wallpapers, Make Money, Cooking Recipes, Daily Horoscope, SEO, Faraz Poetry on Paged Comments and the SEO Problem: A Solution
- 45+ Top SEO Wordpress Plguins – Wordpress SEO | Wordpress | Online News & Entertainment on Paged Comments and the SEO Problem: A Solution
-
RSS Subscription Feeds