Connect with Peer Bloggers ― Join the largest Bloggers Community to discover the Best Bloggers around the world and follow Top Blogs based on your interests, and build your audience now!

Bloggers Talks

Comments can lead to hacking

Paras Babbar on Optimization, Security, Website, Web Designs, Hacking

This is the thing which many people don’t know. Hackers use various ways and methods to hack websites, and comment based hacking is one of them. In this they comment on your blog, and the comments seems to be so so genuine and as a result we approve it. But many of us don’t know one thing that the comments in the WordPress are HTML enabled, that means that hackers can embed various malicious scripts in the comment text, which are not visible to normal user but they are their. As comments are stored in the database, so it is very easy for the hacker to access are your private data. The moment you approve such comments, the embedded scripts start their work. Hacker can execute those scripts by using some MySQL queries. This helps hacker to intrude in the admin area easily.

Read more: http://parasbabbar.in/comments-can-lead-to-hacking

5 Replies

Martha Preston ∙ 46 weeks ago

thanks for sharing i didnt know this

Crizzie Isabel ∙ 46 weeks ago

really? that's too bad. :(

Kitty ∙ 46 weeks ago

Thank you for alerting us !

Health-blogger ∙ 46 weeks ago

This is really a bad news for bloggers.
Thanks for sharing this with us.

Viktoria Michaelis ∙ 15 weeks ago

That's a very interesting scare story you're trying to tell everyone. And I'm glad that you happened to mention WordPress as your example.

Let me correct you, though, in one or two small ways.

When a WordPress blog has moderation enabled all comments must be approved by the owner first. The code included in any comment is fully visible. Anyone with any sense also has Akismet enabled, which weeds out the spam and well known problem senders of comment trash and separates them from the rest.

These two exceptionally simple attributes on WordPress effectively stop anything like what you have suggested.

What would you like to say?

Sign In and add your reply! Or, Sign Up Now!

Recent Readers

More From: Paras Babbar

Similar Talks

Looking for more traffic?

Drake2 weeks 1 day ago
14 replies

What is social engineering?

Abinodh O T5 weeks 2 days ago
0 reply

Have facebook page?

Harish Kumar7 weeks 3 days ago
4 replies

Lets we share traffic

Lokjeeth SIngh6 weeks 1 day ago
32 replies