COZY Campus Adult Webmaster Forums

 
 
 


Go Back   COZY Campus Adult Webmaster Forums > Newbie Help

Reply
 
Thread Tools Search this Thread Display Modes
  #1  
Old 04-08-2008, 09:47 PM
Hunter_ST_69's Avatar
Hunter_ST_69 Hunter_ST_69 is offline
Cozy Freshman
 
Join Date: Sep 2004
Location: PA
Posts: 41
Send a message via AIM to Hunter_ST_69
Are your WordPress themes hacked?

Something that occurred to me when I installed wordpress on a new site was actually just mentioned on gigaom.
Link to gigaom story

Basically, the wordpress theme that you install may very well contain code set to execute at a future time, turning your site into a spambot.

Q: Where did your wordpress theme come from?

I'm always on the hunt for new WP themes, but now I'm gun shy about installing themes I find.

Any recommended-safe sources?
__________________
Wet and messy fetish program

Reply With Quote
  #2  
Old 04-08-2008, 09:59 PM
nolimits4 nolimits4 is offline
Cozy Senior
 
Join Date: Dec 2003
Posts: 140
that why they say to get official wordpress themes from wordpress
Reply With Quote
  #3  
Old 04-10-2008, 01:58 AM
Cozy Monica's Avatar
Cozy Monica Cozy Monica is offline
Campus Moderator
 
Join Date: Dec 2002
Location: Canada
Posts: 4,730
The official themes are so boring and often difficult to customize because they aren't quite right.

I've always wondered if this was a risk though, and I'm betting it gets more and more common all the time.
Reply With Quote
  #4  
Old 04-10-2008, 08:53 PM
phuckbunny's Avatar
phuckbunny phuckbunny is offline
Registered User
 
Join Date: Dec 2006
Posts: 1,684
Send a message via ICQ to phuckbunny Send a message via Yahoo to phuckbunny
The other day I was checking where my visitors are coming from for one site. One of the search strings was something like XXXX...fill in the blank porn star + xanax. Sure enough one of my posts about said porn star came up in the top ten, yet I have never mentioned xanax in my blog once. Seemed like some type of hack and I was wondering myself how to investigate it. I have spam karma installed but this was odd.

There are a bunch of places to find good themes though for free if you do research, it's just soooo boring trying to find a good one and just as boring to use the boring themes from the WP site... A few reputable designers come out with new themes periodically though which are hack proof.

But that is something to think about, and I have no idea what was going on with the xanax thing.
Reply With Quote
  #5  
Old 04-11-2008, 12:17 AM
razor's Avatar
razor razor is offline
Registered User
 
Join Date: Sep 2006
Location: South Africa
Posts: 793
PB, Could be referral spam, they hoping you will click on the link.

I often get links from AFF in mys stats with an affiliate code.
Reply With Quote
  #6  
Old 04-11-2008, 01:08 AM
Cozy Monica's Avatar
Cozy Monica Cozy Monica is offline
Campus Moderator
 
Join Date: Dec 2002
Location: Canada
Posts: 4,730
If you use Firefox, open up the main page of your blog, then click on Tools, Page Info, and Links. It will list ALL of the links found on your site and you can look and see if there's anything inserted into your page that you didn't choose to put there.

That way, you can see things that might be hidden by code or color.
Reply With Quote
  #7  
Old 04-11-2008, 01:55 AM
mynameisjim's Avatar
mynameisjim mynameisjim is offline
World's Dumbest Genius
 
Join Date: Dec 2006
Posts: 1,306
Quote:
Originally posted by Cozy Monica
If you use Firefox, open up the main page of your blog, then click on Tools, Page Info, and Links. It will list ALL of the links found on your site and you can look and see if there's anything inserted into your page that you didn't choose to put there.

That way, you can see things that might be hidden by code or color.
I'll be damned, one of my oldest blogs had been hacked with a ton of pharma spam links.

I'm almost afraid to remove them because it's doing so good in the SERPS...LOL!!

Actually, that was the second blog I ever made and I never updated the wordpress version. Maybe I should.
Reply With Quote
  #8  
Old 04-11-2008, 11:24 AM
sunfunbill's Avatar
sunfunbill sunfunbill is offline
Bilinda the lil bitch!
 
Join Date: Mar 2003
Location: Lesbian fun house
Posts: 5,364
Well I guess mine seems ok, and it was a theme I got elsewhere than WP themes.

Yes the official themes are hard to work with, and boring. I have done so much so fast with the one I have now. It's lightweight, loads fast and easy to figure out.

In fact I'm going to download all the ones this place has so I have them before they stop making them, or do decide to put links in them!
__________________
Lover Cash Gay, teen, tranny & more dating, high converting!
Visit my Orlando Vacation site, Orlando Inside!
My site Crossdresser Playground CD/TV/TS community
Reply With Quote
  #9  
Old 04-11-2008, 09:36 PM
mynameisjim's Avatar
mynameisjim mynameisjim is offline
World's Dumbest Genius
 
Join Date: Dec 2006
Posts: 1,306
Turns out my theme wasn't hacked but I didn't really think that was the problem.

There is an exploit with older WP installs in the links.php file were people can insert links into your blogroll.

Just thought I would post this if anybody is running older versions.
Reply With Quote
  #10  
Old 05-13-2008, 12:51 PM
January's Avatar
January January is offline
Registered User
 
Join Date: Jan 2008
Posts: 61
This is a good example of why you should look through any new theme's code very carefully before going live with it. This is a good idea, anyway, since (in my experience) a lot of themes that you can download aren't totally finished, or, at least, don't display consistently on all blog pages across all major browsers and operating systems. And then themes not specifically designed for adult blogs can almost always benefit from tweaking of one form or another.

I've encountered themes before where some of the code provided is encrypted (often using base64, FWIW). This usually seems to happen where the theme designer has some affiliate links in the footer that they don't want users of the theme to remove. But, as noted, that code could just as easily have been designed to change to something more malicious at any point.

Personally, I wouldn't upload a theme that contained any code that I couldn't read or edit.
Reply With Quote
Reply

Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump


All times are GMT -5. The time now is 05:33 PM.

Support our Cozy adult webmaster forum Sponsors:

Porn Reviews
Honest Porn Reviews
Stroke King Blue Design Studios
Blue Design Studios
  Adult Reviews
Adult Reviews

Pussy Cash FTVCash Etu-Cash Traffic Cash Gold GJ Servers
AdXpansion        

 

CozyFrog.com  |   CozyFlash.com  |   Friends & Links
© 2002-10 CozyCampus.com | Adult Forums for Webmasters! | 18+ ONLY!
Powered by vBulletin® Version 3.8.1
Copyright ©2000 - 2010, Jelsoft Enterprises Ltd.