<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	>
<channel>
	<title>Comments on: SWX web site spam hack</title>
	<atom:link href="http://aralbalkan.com/1114/feed" rel="self" type="application/rss+xml" />
	<link>http://aralbalkan.com/1114</link>
	<description>Aral on Flash, SWX, Flex, ActionScript, and life.</description>
	<pubDate>Fri, 29 Aug 2008 21:18:33 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.5</generator>
		<item>
		<title>By: Michael</title>
		<link>http://aralbalkan.com/1114#comment-145564</link>
		<dc:creator>Michael</dc:creator>
		<pubDate>Tue, 13 May 2008 08:40:12 +0000</pubDate>
		<guid isPermaLink="false">http://aralbalkan.com/1114#comment-145564</guid>
		<description>Well, crap it won't show the html, well anyway, I added one with display:none (no spaces

and copied those two with single quotes instead of double quotes.  I hope this makes sense.  :)</description>
		<content:encoded><![CDATA[<p>Well, crap it won&#8217;t show the html, well anyway, I added one with display:none (no spaces</p>
<p>and copied those two with single quotes instead of double quotes.  I hope this makes sense.  <img src='http://aralbalkan.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Michael</title>
		<link>http://aralbalkan.com/1114#comment-145563</link>
		<dc:creator>Michael</dc:creator>
		<pubDate>Tue, 13 May 2008 08:38:43 +0000</pubDate>
		<guid isPermaLink="false">http://aralbalkan.com/1114#comment-145563</guid>
		<description>I added some lines to your code.  I noticed my spammer was slightly different.  So I replaced your single line with this:

        $content = preg_replace('/.*?/s', '', $content);
        $content = preg_replace('/.*?/s', '', $content);
        $content = preg_replace('/.*?/s', '', $content);
        $content = preg_replace('/.*?/s', '', $content);</description>
		<content:encoded><![CDATA[<p>I added some lines to your code.  I noticed my spammer was slightly different.  So I replaced your single line with this:</p>
<p>        $content = preg_replace(&#8217;/.*?/s&#8217;, &#8221;, $content);<br />
        $content = preg_replace(&#8217;/.*?/s&#8217;, &#8221;, $content);<br />
        $content = preg_replace(&#8217;/.*?/s&#8217;, &#8221;, $content);<br />
        $content = preg_replace(&#8217;/.*?/s&#8217;, &#8221;, $content);</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Cronachesorprese &#187; Prova tecnica - Plugin</title>
		<link>http://aralbalkan.com/1114#comment-127350</link>
		<dc:creator>Cronachesorprese &#187; Prova tecnica - Plugin</dc:creator>
		<pubDate>Tue, 18 Mar 2008 10:59:27 +0000</pubDate>
		<guid isPermaLink="false">http://aralbalkan.com/1114#comment-127350</guid>
		<description>[...] none&#8221;) si vedono invece nel feedreader. Io almeno con google reader le vedo. Provo questo plugin, speriamo bene. Pubblico questo post anche per vedere se funziona. Non trovo nulla invece per il [...]</description>
		<content:encoded><![CDATA[<p>[&#8230;] none&#8221;) si vedono invece nel feedreader. Io almeno con google reader le vedo. Provo questo plugin, speriamo bene. Pubblico questo post anche per vedere se funziona. Non trovo nulla invece per il [&#8230;]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Matthew Keefe</title>
		<link>http://aralbalkan.com/1114#comment-115312</link>
		<dc:creator>Matthew Keefe</dc:creator>
		<pubDate>Sat, 16 Feb 2008 20:05:49 +0000</pubDate>
		<guid isPermaLink="false">http://aralbalkan.com/1114#comment-115312</guid>
		<description>It seems I have also fallen victim to this, but whats weird is my blog is up to date, so much for a perfect world... 

Thanks for the tips, it cleared it right up.</description>
		<content:encoded><![CDATA[<p>It seems I have also fallen victim to this, but whats weird is my blog is up to date, so much for a perfect world&#8230; </p>
<p>Thanks for the tips, it cleared it right up.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Ben</title>
		<link>http://aralbalkan.com/1114#comment-113957</link>
		<dc:creator>Ben</dc:creator>
		<pubDate>Wed, 13 Feb 2008 17:31:33 +0000</pubDate>
		<guid isPermaLink="false">http://aralbalkan.com/1114#comment-113957</guid>
		<description>I have been attacked, too. I just upgraded from 2.3.2 to 2.3.3 because some of my readers informed me they couldn't subscribe. It turns out that there are hidden links after my footer that start with this
font style="overflow: hidden; position: absolute; height: 0pt; width: 0pt;"

I tried the plugin but unfortunately it didn't work :( I am getting desperate to the point where I want to wipe everything off and start from scratch again. I hate spammers.</description>
		<content:encoded><![CDATA[<p>I have been attacked, too. I just upgraded from 2.3.2 to 2.3.3 because some of my readers informed me they couldn&#8217;t subscribe. It turns out that there are hidden links after my footer that start with this<br />
font style=&#8221;overflow: hidden; position: absolute; height: 0pt; width: 0pt;&#8221;</p>
<p>I tried the plugin but unfortunately it didn&#8217;t work <img src='http://aralbalkan.com/wp-includes/images/smilies/icon_sad.gif' alt=':(' class='wp-smiley' /> I am getting desperate to the point where I want to wipe everything off and start from scratch again. I hate spammers.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Upgrading to Wordpress 2.3.2 at Aral Balkan</title>
		<link>http://aralbalkan.com/1114#comment-101981</link>
		<dc:creator>Upgrading to Wordpress 2.3.2 at Aral Balkan</dc:creator>
		<pubDate>Sun, 13 Jan 2008 18:32:17 +0000</pubDate>
		<guid isPermaLink="false">http://aralbalkan.com/1114#comment-101981</guid>
		<description>[...] else first before attempting one (which, of course, is absolutely the worst thing you can do, as the recent spam hack on the SWX blog demonstrated so well). I used to dread doing the updates mainly because I just knew something would [...]</description>
		<content:encoded><![CDATA[<p>[&#8230;] else first before attempting one (which, of course, is absolutely the worst thing you can do, as the recent spam hack on the SWX blog demonstrated so well). I used to dread doing the updates mainly because I just knew something would [&#8230;]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Aral</title>
		<link>http://aralbalkan.com/1114#comment-98147</link>
		<dc:creator>Aral</dc:creator>
		<pubDate>Wed, 02 Jan 2008 09:32:44 +0000</pubDate>
		<guid isPermaLink="false">http://aralbalkan.com/1114#comment-98147</guid>
		<description>@Claus: Intersesting -- did you have the theme editor enabled? 

@Andrei and @Ash: Thanks for the tips :) 

@Ronny: You're welcome + Happy New Year! :)</description>
		<content:encoded><![CDATA[<p>@Claus: Intersesting &#8212; did you have the theme editor enabled? </p>
<p>@Andrei and @Ash: Thanks for the tips <img src='http://aralbalkan.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
<p>@Ronny: You&#8217;re welcome + Happy New Year! <img src='http://aralbalkan.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Ronny</title>
		<link>http://aralbalkan.com/1114#comment-97995</link>
		<dc:creator>Ronny</dc:creator>
		<pubDate>Tue, 01 Jan 2008 16:18:01 +0000</pubDate>
		<guid isPermaLink="false">http://aralbalkan.com/1114#comment-97995</guid>
		<description>And suddenly Aral's pagerank was 7 again ;)

Thx for the plugin and the post man!

Best wishes for 2008 ;)

Greets</description>
		<content:encoded><![CDATA[<p>And suddenly Aral&#8217;s pagerank was 7 again <img src='http://aralbalkan.com/wp-includes/images/smilies/icon_wink.gif' alt=';)' class='wp-smiley' /><br />
Thx for the plugin and the post man!</p>
<p>Best wishes for 2008 <img src='http://aralbalkan.com/wp-includes/images/smilies/icon_wink.gif' alt=';)' class='wp-smiley' /><br />
Greets</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Andrei</title>
		<link>http://aralbalkan.com/1114#comment-97804</link>
		<dc:creator>Andrei</dc:creator>
		<pubDate>Mon, 31 Dec 2007 18:46:11 +0000</pubDate>
		<guid isPermaLink="false">http://aralbalkan.com/1114#comment-97804</guid>
		<description>Hi Aral, we have been dealing with the similar issues on afcomponents.com/blog. There are security holes in at lest 3 of the previous versions of WP. After upgrading to the latest version be sure to disable the remote post and the theme editor.

Cheers,
Andrei</description>
		<content:encoded><![CDATA[<p>Hi Aral, we have been dealing with the similar issues on afcomponents.com/blog. There are security holes in at lest 3 of the previous versions of WP. After upgrading to the latest version be sure to disable the remote post and the theme editor.</p>
<p>Cheers,<br />
Andrei</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Ash</title>
		<link>http://aralbalkan.com/1114#comment-97779</link>
		<dc:creator>Ash</dc:creator>
		<pubDate>Mon, 31 Dec 2007 15:02:02 +0000</pubDate>
		<guid isPermaLink="false">http://aralbalkan.com/1114#comment-97779</guid>
		<description>If you have the means, I highly recommend checking out wordpress from their svn repo. Then when a new version comes out, an update is a simple 'svn switch' command away. Its harder to set up, but easier for always being up to date in the long run :)</description>
		<content:encoded><![CDATA[<p>If you have the means, I highly recommend checking out wordpress from their svn repo. Then when a new version comes out, an update is a simple &#8217;svn switch&#8217; command away. Its harder to set up, but easier for always being up to date in the long run <img src='http://aralbalkan.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /></p>
]]></content:encoded>
	</item>
</channel>
</rss>
