Keep your WordPress up to date. The latest version is 2.8.4. The auto update feature, which has been active since 2.7, works very well. So no excuses!
It drive me a little crazy when I see comments such as ” I wonder how many holes there are in WordPress“. But as I consider the issue I realize there are many types of users. If you are the type who wants something you can set-n-forget, then WordPress is probably not right for you. If you want something cutting edge, extensible, flexible BUT that requires you to keep an eye on it, then choose WordPress. Sure security holes get into the code, but the fix always comes quickly. And with the auto update feature keeping current is easier than ever.
WordPress 2.8.3 Admin Reset Exploit | Darknet – The Darkside
The latest one to become public is a simple but effective flaw, it doesn’t enable take-over but it does allow a prankster to lock an admin out of their blog by resetting the password.

Comments / ONE COMMENT
Creare Web Designers added these pithy words on Aug 27 09 at 4:20 amOver the past 10 years or so, I have tried an extensive amount of PHP (and even CGI!) news scripts and WordPress is by far the most reliable so far.
My only comment is I wish there was an easy way to just ‘include’ WordPress news instead of wrapping a whole template around it.
ADD YOUR COMMENT
Comments are moderated.
Randall Rode's online home for thoughts, notes, and experiments with a wide range of technology topics. Visit the about page for info on my recent projects and professional background. I welcome your comments!
New articles are normally posted on Mondays and Wednesdays. Subscribe to the RSS feed or the email update to keep current on the latest posts.