Archive for June, 2008

Wordpress hacking attempt?

Friday, June 13th, 2008

An interesting attempt to exploit some (as yet unknown) vulnerability in Wordpress showed up today. So far, it does not seem to have been successful.  Took a look at the Wordpress Forum and can see something there that might be the subject of interest but not in this manner. Does our visitor watch the forum for clues to exploit? Maybe. 

It appears to be an attempt to exploit Comments submission and retrieve the Admin password. It does produce some interesting results from the engine.

They are wasting their time for no useful advantage. If they succeed it will just point out a failure in someone-else’s product design, not a great achievement, and better done in a controlled environment if it is to have a useful purpose.

If the individual(s) want to post on my site, well why not just ask for the right to publish content? I would probably agree. If the idea is to advertise some generic product that can be found everywhere on the internet, then why go to so much effort when there are much easier ways?

I suppose a dialogue on this is unlikely to occur. Perhaps our visitor might want to post what they are trying to achieve and what brought you to bother?