Elephantsquared.

WordPress 2.8.5 – The hardening release

— Oct 21 2009

Well, well, well… Peter Westwood announced the next version of WordPress. No, its not the much desired 2.9 version. It’s the 2.85 version aka The Hardening Release, that includes a few fixes (mainly for security) like:

  • A fix for the Trackback Denial-of-Service attack that is currently being seen.
  • Removal of areas within the code where php code in variables was evaluated.
  • Switched the file upload functionality to be whitelisted for all users including Admins.
  • Retiring of the two importers of Tag data from old plugins.

Peter also gave some piece of advice to all those who think their WordPress site has been compromised by an exploit, to check the WordPress Exploit Scanner. A WordPress plugin that searches the files on your website, and the posts and comments tables of your database for anything suspicious. It also examines your list of active plugins for unusual filenames.

Go ahead, give it a try. Upgrade to WordPress 2.8.5 and try out the WordPress Exploit Scanner if you are suspicious about your WordPress installation.

Related posts

Mozilla: Plugin Check for all browsers May 11 2010
SecBrowsing: Keep your browser and plugins up-to-date. Apr 25 2010
Gmail, Security and the vulnerability in SSL/TLS protocol Jan 13 2010
WordPress 2.9 and the global undo feature Dec 19 2009
OpenBSD 4.6 is here! Oct 19 2009