Paras Babbar
This is the thing which many people don’t know. Hackers use various ways and methods to hack websites, and comment based hacking is one of them. In this they comment on your blog, and the comments seems to be so so genuine and as a result we approve it. But many of us don’t know one thing that the comments in the WordPress are HTML enabled, that means that hackers can embed various malicious scripts in the comment text, which are not visible to normal user but they are their. As comments are stored in the database, so it is very easy for the hacker to access are your private data. The moment you approve such comments, the embedded scripts start their work. Hacker can execute those scripts by using some MySQL queries. This helps hacker to intrude in the admin area easily.
Read more: http://parasbabbar.in/comments-can-lead-to-hacking