By Meghan October 22, 2009

Wordpress 2.8.5 Security Update is out!

Wordpress.org has released their latest security update. Wordpress 2.8.5 is out now!wordpress

Over the past few months Wordpress.org has worked hard towards securing their popular blogging platform. In the process they managed to close some serious security loopholes in Wordpress 2.8.4. Now they have released another security update to their popular blogging platform in the form of Wordpress 2.8.5.

They have identified a number of security hardening changes which they say were back-porting to 2.8 branch and they are suggesting that all bloggers and websites using wordpress 2.8.4 must now upgrade to wordpress 2.8.5 and make all your sites as secure as possible.

The important changes in this release are:

  • A fix for the Trackback Denial-of-Service attack that is currently being seen.
  • Removal of areas within the code where php code in variables was evaluated.
  • Switched the file upload functionality to be whitelisted for all users including Admins.
  • Retiring of the two importers of Tag data from old plugins.

Also Peter at Wordpress.org made a wise suggestion at the release:

He suggests If you think your site may have been hit by one of the recent exploits and you would like to make sure that you have cleared out all traces of the exploit then we would recommend that you take a look at the WordPress Exploit Scanner.

Wordpress Exploit Scanner is a plugin which searches the files on your website, and the posts and comments tables of your database for anything suspicious. It also examines your list of active plugins for unusual filenames.  You can download this plugin here – “WordPress Exploit Scanner

We suggest that everyone ugprades to the latest version; Wordpress 2.8.5 to ensure you have the best protection available for your blog.

Read more about the latest Wordpress security release and download wordpress 2.8.5, click here!

[Source: Wordpress.org]

Related Posts that you may like:

Discussion

Comments for “Wordpress 2.8.5 Security Update is out!”

  • himansh
    This is a nice release from Wordpress. DDOS attack via trackback relief is nice.I
    am eagerly waiting for the new version Wordpress 2.9. It will be interesting to see
    what will come out from the Wordpress box to its users.
  • DDOS attacks are a pain to handle. I'm looking forward to 2.9 but i'm sure there will be more minor upgrades before 2.9.
  • Saw this update Yesterday and the first thing which I did
    was Backup my Db and updated the wordpress. Though wordpress are releasing very quick update.. :|
  • Glad to know that you upgraded! My guess is that there will be another security update before 2.9. They seem to working hard on fixing loopholes in Wordpress.
blog comments powered by Disqus

Welcome to TechBuzz

TechBuzz is a technology blog read by 3000+ readers every day. We regularly write about new trends in technology, useful computer application and new web services. If you are new here, please subscribe our feed or opt for email updates to get new articles to your inbox.

Free Daily Updates

You can get fresh daily articles delivered straight to your feed reader or email inbox. Please subscribe to our RSS feed or opt for our free newsletter

Recent Posts

Google’s Chrome Tablet Concept Revealed
February 3, 2010
By Thilak
Ixquick. Ixquick allows users to surf the web with complete privacy. It let’s users surf the world wide web safely without revealing any personally identifiable or private information to the websites being viewed.

Ixquick is a free service which provides complete anonymity to the user enabling the user to surf the internet anonymously and safely. They claim it to be world’s most private search engine.

Surf The Internet Anonymously With Ixquick!

Surf The Internet Anonymously With Ixquick!
January 28, 2010
By Meghan
Apple iPad Unveiled
January 28, 2010
By Meghan
Happy New Year!
January 1, 2010
By Meghan
WordPress Version 2.9 Is Out!
December 19, 2009
By Meghan