Learning things the hard way – an update.

Nov 1st, 2007 by Tim 4

Well after much tears this week, I think my blog is getting back to a functional state. So what happened? Well my old site was hacked I! So during this week I have learnt a bit more about WordPress security. The bottom line is, do not under any circumstances leave any folders with CHMOD 777 permissions enabled. Just don’t do it. Many plugins and even WordPress documentation themselves tell you to set permissions in this way. And on many servers the only way to make image upload work is to have permission set that way. But it leaves the back door open. Check out the forums and find a host that offers a solution that means folders remain set to 755.

In the mess, I managed to loose a lot of the images from posts on the site, so bear with me. I’ve also opted to move away from Plogger for image hosting and got myself a Flickr account with the wonderful FAlbum pugin. The idea being that looking after all the images I lost is not my problem anymore!

All the WordPress Themes and my PloggerPress plugin should now be available again now too.

4 Comments on the Comment Wall

  1. 1 Amit said:

    Hello!

    Thanks for the nice theme. I like it very much. Can you help me reolve to different bugs?

    1. Widget screen freezes. Disallowing me to make to configure widgets.
    2.1 of the old images show up on page upload even after adding all the new images in extra php. Clicking on “ASK ME” page will show you what I mean.

    Thanks,

    Amit

  2. 2 Neal Locke said:

    Hey Tim,

    Welcome back! I just wanted to let you know that I’m about finished designing my first theme for Wordpress — it’s called “Guthrie” (after folksinger Woody Guthrie) — and I have it running on my blog currently. I borrowed heavily some code from your LivingOS delta theme, as well as two other themes (one being the famous Kubric) and have credited you in the style.css file. I hope to clean it up a bit more and then release it publicly in the next week or so. Thanks for the inspiration!

  3. 3 Tim said:

    Looks good. There is something satisfying about having rolled your own theme. Though of course there are few built from scratch, without borrowing what works from others.

  4. 4 Order of the Bath » Blog Archive » I wuz hacked said:

    [...] will need to look seriously at updating to the latest WordPress version, or perhaps the problem is file permissions? Or is my hosting service compromised? Also, do I need to tell some database somewhere [...]

Leave a Comment

More thinking about:

Living Open Source

Tim’s blog on anything from this week’s lectionary, to open source software like WordPress

Creative Commons License

Links

  • Church Marketing Lab (Flickr Group)
  • Jamendo - (Creative Commons Music)
  • Lectionary Bible Studies
  • Lectionary Graphics (Flickr Group)
  • Liturgy - worship that works
  • LivingOS Blip.TV Channel
  • N T Wright Page
  • Re:Jesus
  • Rowan Williams
  • St Helens Baptist Church
  • TextWeek
  • Ultimate Guitar Tabs
  • Walter Brueggemann
  • WordPress
  • YouVersion