<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	
	xmlns:media="http://search.yahoo.com/mrss/"
		>
<channel>
	<title>Comments on: Decoding a Russian Hacker&#8217;s Code</title>
	<atom:link href="http://ottopress.com/2011/decoding-a-russian-hackers-code/feed/" rel="self" type="application/rss+xml" />
	<link>http://ottopress.com/2011/decoding-a-russian-hackers-code/</link>
	<description>You have to use an Ottopress to get fresh squeezed Otto.</description>
	<lastBuildDate>Wed, 22 May 2013 16:53:20 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.6-beta3-24284</generator>
	<item>
		<title>By: De gevaren van Free Premium Templates &#124; WPdevil &#8211; Devilish Development</title>
		<link>http://ottopress.com/2011/decoding-a-russian-hackers-code/comment-page-1/#comment-10220</link>
		<dc:creator>De gevaren van Free Premium Templates &#124; WPdevil &#8211; Devilish Development</dc:creator>
		<pubDate>Sat, 03 Dec 2011 13:21:50 +0000</pubDate>
		<guid isPermaLink="false">http://ottopress.com/?p=479#comment-10220</guid>
		<description><![CDATA[[...] http://ottopress.com/2011/decoding-a-russian-hackers-code/#comments   This entry was posted in Development, HowTo by mark. Bookmark the permalink. [...]]]></description>
		<content:encoded><![CDATA[<p>[...] <a href="http://ottopress.com/2011/decoding-a-russian-hackers-code/#comments" rel="nofollow">http://ottopress.com/2011/decoding-a-russian-hackers-code/#comments</a>   This entry was posted in Development, HowTo by mark. Bookmark the permalink. [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Otto</title>
		<link>http://ottopress.com/2011/decoding-a-russian-hackers-code/comment-page-1/#comment-9905</link>
		<dc:creator>Otto</dc:creator>
		<pubDate>Sat, 08 Oct 2011 19:57:41 +0000</pubDate>
		<guid isPermaLink="false">http://ottopress.com/?p=479#comment-9905</guid>
		<description><![CDATA[We go through plugin code at the WP plugins directory all the time, and kill/ban/burn/salt-the-earth anybody who tries to upload intentionally malicious code.

Accidental security issues are more common and harder to find, but we try to work with plugin authors to fix issues that we find, as well as issues that get reported on the common security mailing lists. When a plugin is found to have an issue, we immediately disable it to prevent further downloads, then try to work with the author to get a fix and upgrade out for existing users.

For the rare case where a highly popular plugin has a bug, we&#039;ve sometimes gone in pro-actively and fixed it, then forced a new release. This is quite rare though, and we only do it when it&#039;s an obviously critical issue that is in the wild and affecting a large number of sites. Usually plugin authors are happy to put in their own fixes, but sometimes time is more important.]]></description>
		<content:encoded><![CDATA[<p>We go through plugin code at the WP plugins directory all the time, and kill/ban/burn/salt-the-earth anybody who tries to upload intentionally malicious code.</p>
<p>Accidental security issues are more common and harder to find, but we try to work with plugin authors to fix issues that we find, as well as issues that get reported on the common security mailing lists. When a plugin is found to have an issue, we immediately disable it to prevent further downloads, then try to work with the author to get a fix and upgrade out for existing users.</p>
<p>For the rare case where a highly popular plugin has a bug, we&#8217;ve sometimes gone in pro-actively and fixed it, then forced a new release. This is quite rare though, and we only do it when it&#8217;s an obviously critical issue that is in the wild and affecting a large number of sites. Usually plugin authors are happy to put in their own fixes, but sometimes time is more important.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: GoDaddy Hosting = Epic Failure. Looking for a new hosting service. &#187; Otto on WordPress</title>
		<link>http://ottopress.com/2011/decoding-a-russian-hackers-code/comment-page-1/#comment-9904</link>
		<dc:creator>GoDaddy Hosting = Epic Failure. Looking for a new hosting service. &#187; Otto on WordPress</dc:creator>
		<pubDate>Sat, 08 Oct 2011 19:51:41 +0000</pubDate>
		<guid isPermaLink="false">http://ottopress.com/?p=479#comment-9904</guid>
		<description><![CDATA[[...] recently discovered that a couple of old posts of mine about decoding code used by hackers were no longer loading up. Everything else worked, but not those posts. I couldn&#8217;t even pull [...]]]></description>
		<content:encoded><![CDATA[<p>[...] recently discovered that a couple of old posts of mine about decoding code used by hackers were no longer loading up. Everything else worked, but not those posts. I couldn&#8217;t even pull [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Jonny</title>
		<link>http://ottopress.com/2011/decoding-a-russian-hackers-code/comment-page-1/#comment-8395</link>
		<dc:creator>Jonny</dc:creator>
		<pubDate>Mon, 16 May 2011 17:14:37 +0000</pubDate>
		<guid isPermaLink="false">http://ottopress.com/?p=479#comment-8395</guid>
		<description><![CDATA[Hey Otto I have a list of theme sites to avoid over at http://wpthemedepot.com/2011/03/dodgy-wp-theme-sites/ I keep it updated whenever I come across sites distributing bad code.

If anyone knows of sites I haven&#039;t listed, feel free to contact me on the site or via twitter, @Furciferrising 

Jonny]]></description>
		<content:encoded><![CDATA[<p>Hey Otto I have a list of theme sites to avoid over at <a href="http://wpthemedepot.com/2011/03/dodgy-wp-theme-sites/" rel="nofollow">http://wpthemedepot.com/2011/03/dodgy-wp-theme-sites/</a> I keep it updated whenever I come across sites distributing bad code.</p>
<p>If anyone knows of sites I haven&#8217;t listed, feel free to contact me on the site or via twitter, @Furciferrising </p>
<p>Jonny</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: De gevaren van Free Templates &#124; Nieuw en Beter</title>
		<link>http://ottopress.com/2011/decoding-a-russian-hackers-code/comment-page-1/#comment-8368</link>
		<dc:creator>De gevaren van Free Templates &#124; Nieuw en Beter</dc:creator>
		<pubDate>Fri, 13 May 2011 00:51:59 +0000</pubDate>
		<guid isPermaLink="false">http://ottopress.com/?p=479#comment-8368</guid>
		<description><![CDATA[[...] http://ottopress.com/2011/decoding-a-russian-hackers-code/#comments   Dit bericht is geplaatst in security, templates, wordpress. Bookmark de permalink.    &#8592; testingtest [...]]]></description>
		<content:encoded><![CDATA[<p>[...] <a href="http://ottopress.com/2011/decoding-a-russian-hackers-code/#comments" rel="nofollow">http://ottopress.com/2011/decoding-a-russian-hackers-code/#comments</a>   Dit bericht is geplaatst in security, templates, wordpress. Bookmark de permalink.    &larr; testingtest [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: ⓁⓄⓧ</title>
		<link>http://ottopress.com/2011/decoding-a-russian-hackers-code/comment-page-1/#comment-8333</link>
		<dc:creator>ⓁⓄⓧ</dc:creator>
		<pubDate>Tue, 10 May 2011 00:48:41 +0000</pubDate>
		<guid isPermaLink="false">http://ottopress.com/?p=479#comment-8333</guid>
		<description><![CDATA[Quite scaring, what if some developers include that in some wordpress plugins over at wp.org? We are all exposed to such backdoors...]]></description>
		<content:encoded><![CDATA[<p>Quite scaring, what if some developers include that in some wordpress plugins over at wp.org? We are all exposed to such backdoors&#8230;</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Jose Rojas</title>
		<link>http://ottopress.com/2011/decoding-a-russian-hackers-code/comment-page-1/#comment-8239</link>
		<dc:creator>Jose Rojas</dc:creator>
		<pubDate>Fri, 29 Apr 2011 15:19:27 +0000</pubDate>
		<guid isPermaLink="false">http://ottopress.com/?p=479#comment-8239</guid>
		<description><![CDATA[Yeah eval is the dead giveaway... but regardless to that... those random strings look very suspect.  Good investigative work.]]></description>
		<content:encoded><![CDATA[<p>Yeah eval is the dead giveaway&#8230; but regardless to that&#8230; those random strings look very suspect.  Good investigative work.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Brian Layman</title>
		<link>http://ottopress.com/2011/decoding-a-russian-hackers-code/comment-page-1/#comment-8186</link>
		<dc:creator>Brian Layman</dc:creator>
		<pubDate>Mon, 25 Apr 2011 21:57:26 +0000</pubDate>
		<guid isPermaLink="false">http://ottopress.com/?p=479#comment-8186</guid>
		<description><![CDATA[Strike that. I forgot to check functions.php on the second clean one. It was full of obfuscated code.  So 1 of 5 was clean.]]></description>
		<content:encoded><![CDATA[<p>Strike that. I forgot to check functions.php on the second clean one. It was full of obfuscated code.  So 1 of 5 was clean.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Brian Layman</title>
		<link>http://ottopress.com/2011/decoding-a-russian-hackers-code/comment-page-1/#comment-8185</link>
		<dc:creator>Brian Layman</dc:creator>
		<pubDate>Mon, 25 Apr 2011 21:52:28 +0000</pubDate>
		<guid isPermaLink="false">http://ottopress.com/?p=479#comment-8185</guid>
		<description><![CDATA[Feel free to edit &quot;That said only but only one &quot; to be &quot;That said, only one&quot; and delete this comment. :D I should never go back and edit what I type. I never do it right, but see what I&#039;m expecting it to say until after I hit publish. :P]]></description>
		<content:encoded><![CDATA[<p>Feel free to edit &#8220;That said only but only one &#8221; to be &#8220;That said, only one&#8221; and delete this comment. <img src='http://ottopress.com/wp-includes/images/smilies/icon_biggrin.gif' alt=':D' class='wp-smiley' />  I should never go back and edit what I type. I never do it right, but see what I&#8217;m expecting it to say until after I hit publish. <img src='http://ottopress.com/wp-includes/images/smilies/icon_razz.gif' alt=':P' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Brian Layman</title>
		<link>http://ottopress.com/2011/decoding-a-russian-hackers-code/comment-page-1/#comment-8184</link>
		<dc:creator>Brian Layman</dc:creator>
		<pubDate>Mon, 25 Apr 2011 21:48:43 +0000</pubDate>
		<guid isPermaLink="false">http://ottopress.com/?p=479#comment-8184</guid>
		<description><![CDATA[Oh really! That&#039;s great news.  

I did a quick test and it looks like there are a lot more valid results now.  I downloaded 5 themes from different sites I found using that search.  Two only had valid attributions back to the download site. The other three had links to cell phone purchases and travel sites. That said only but only one of those was obfuscated (ev&lt;em&gt;&lt;/em&gt;al(gzinflate(str_rot13(base 64_decode(&#039;FZhSEoRLFlK30rOuCga4UlgF...). 

That actually IS much better especially since the clean ones were on the ones from first page of Google.  We&#039;re not &lt;i&gt;there&lt;/i&gt; yet, but it&#039;s better.]]></description>
		<content:encoded><![CDATA[<p>Oh really! That&#8217;s great news.  </p>
<p>I did a quick test and it looks like there are a lot more valid results now.  I downloaded 5 themes from different sites I found using that search.  Two only had valid attributions back to the download site. The other three had links to cell phone purchases and travel sites. That said only but only one of those was obfuscated (ev<em></em>al(gzinflate(str_rot13(base 64_decode(&#8216;FZhSEoRLFlK30rOuCga4UlgF&#8230;). </p>
<p>That actually IS much better especially since the clean ones were on the ones from first page of Google.  We&#8217;re not <i>there</i> yet, but it&#8217;s better.</p>
]]></content:encoded>
	</item>
</channel>
</rss>

<!-- Performance optimized by W3 Total Cache. Learn more: http://www.w3-edge.com/wordpress-plugins/

Object Caching 426/444 objects using xcache

 Served from: ottodestruct.com @ 2013-05-22 17:26:57 by W3 Total Cache -->