<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Ask Regina Smola&#187; WordPress security</title>
	<atom:link href="http://askreginasmola.com/category/wordpress-security/feed" rel="self" type="application/rss+xml" />
	<link>http://askreginasmola.com</link>
	<description>WordPress and Telewebcast Consultant, Regina Smola provides training and tips on WordPress websites and producing Telewebcasts for Internet business.</description>
	<lastBuildDate>Tue, 16 Feb 2010 20:51:25 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>WordPress Security Webinar — 6 Things you need to know</title>
		<link>http://askreginasmola.com/wordpress-security-webinar-6-things-you-need-to-know.html</link>
		<comments>http://askreginasmola.com/wordpress-security-webinar-6-things-you-need-to-know.html#comments</comments>
		<pubDate>Tue, 16 Feb 2010 20:50:37 +0000</pubDate>
		<dc:creator>Regina Smola</dc:creator>
				<category><![CDATA[WordPress security]]></category>
		<category><![CDATA[webinar]]></category>

		<guid isPermaLink="false">http://askreginasmola.com/?p=533</guid>
		<description><![CDATA[
If you're running a WordPress blog or website on your own domain, as with any website, there are potential security risks. As the website owner, it's your responsibility to secure your website.
On Wednesday, February 24, 2010, I'm giving a WordPress Security Webinar where I will give you six valuable tips you can start using now [...]]]></description>
			<content:encoded><![CDATA[<p><img style=' float: left; padding: 4px; margin: 0 7px 2px 0;'  class="    alignleft" title="WordPress Security Webinar" src="http://www.wpsecuritylock.com/images/wordpress-security-webinar-150.png" alt="" width="150" height="178" /></p>
<p>If you're running a WordPress blog or website on your own domain, as with any website, there are potential security risks. As the website owner, it's your responsibility to secure your website.</p>
<p>On Wednesday, February 24, 2010, I'm giving a WordPress Security Webinar where I will give you six valuable tips you can start using now to help secure your website. It's starts 9pm Eastern Time (6pm Pacific, 7pm Mountain or 8pm Central time).</p>
<p>With all your hard work and the time you've spent creating content, don't let yourself be the next victim of cyber crime.</p>
<p>Hurry, space is limited. You don't want to miss it!</p>
<p>For more information and to register, <a href="http://www.wpsecuritylock.com/upcoming-events/wordpress-security-webinar/">click here</a>.
<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
<p>			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Faskreginasmola.com%2Fwordpress-security-webinar-6-things-you-need-to-know.html"></p>
<p>				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Faskreginasmola.com%2Fwordpress-security-webinar-6-things-you-need-to-know.html&amp;source=reginasmola&amp;style=normal&amp;service=bit.ly" height="61" width="50" /></p>
<p>			</a></p></div>
<script src="http://feeds.feedburner.com/~s/AskReginaSmola?i=http://askreginasmola.com/wordpress-security-webinar-6-things-you-need-to-know.html" type="text/javascript" charset="utf-8"></script>]]></content:encoded>
			<wfw:commentRss>http://askreginasmola.com/wordpress-security-webinar-6-things-you-need-to-know.html/feed</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Error 403 blocking Bad Behavior on your website</title>
		<link>http://askreginasmola.com/error-403-blocking-your-website-visitors.html</link>
		<comments>http://askreginasmola.com/error-403-blocking-your-website-visitors.html#comments</comments>
		<pubDate>Sat, 17 Oct 2009 13:09:46 +0000</pubDate>
		<dc:creator>Regina Smola</dc:creator>
				<category><![CDATA[WordPress security]]></category>
		<category><![CDATA[1872-ff63-2b02-1b1f]]></category>
		<category><![CDATA[403 error]]></category>
		<category><![CDATA[bad behavior]]></category>
		<category><![CDATA[Project Honey Pot]]></category>
		<category><![CDATA[protecting wordpress]]></category>
		<category><![CDATA[WordPress plugins]]></category>

		<guid isPermaLink="false">http://askreginasmola.com/?p=415</guid>
		<description><![CDATA[There have been some issues recently from people I know receiving a 403 Error when trying to access WordPress self-hosted websites.
After some research, I collected the following information for you just in case you run into this issue.
This is what the error may look like:
Error 403
We're sorry, but we could not fulfill your request for [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://askreginasmola.com/img/error-403.gif"><img style=' float: left; padding: 4px; margin: 0 7px 2px 0;'  class="alignleft size-thumbnail wp-image-421" title="Error 403 blocking IP" src="http://askreginasmola.com/img/error-403-150x150.gif" alt="Error 403 blocking IP" width="150" height="150" /></a>There have been some issues recently from people I know receiving a 403 Error when trying to access WordPress self-hosted websites.</p>
<p>After some research, I collected the following information for you just in case you run into this issue.</p>
<p><strong>This is what the error may look like:</strong></p>
<p>Error 403<br />
We're sorry, but we could not fulfill your request for / on this server.</p>
<p>You do not have permission to access this server. Before trying again, run anti-virus and anti-spyware software and remove any viruses and spyware from your computer.</p>
<p>Your technical support key is: 1872-ff63-2b02-1b1f</p>
<p>You can use this key to fix this problem yourself.</p>
<p>If you are unable to fix the problem yourself, please contact [SITE OWNER] at [SITE EMAIL] and be sure to provide the technical support key shown above.</p>
<p><strong>What does it mean? Well, here's the answer…<br />
</strong></p>
<p><span id="more-415"></span></p>
<p>A friend and colleague of mine had a <span style="text-decoration: underline;">trusted</span> associate come to her self-hosted WordPress website. However, when opening the website, the above error was shown instead of the website. She was completely unable to see ANY webpage on her site. All she saw was a page with the error above. She contacted me to check out why this was happening.</p>
<p>After some thought and disabling of some plugins, I deducted that it was the Bad Behavior plugin causing this error. Once I disabled it, she was able to open the website fine. Hmmm, I knew I had to find a solution for her.</p>
<p>I emailed Michael Hampton over at the <a href="http://www.bad-behavior.ioerror.us/ ">Bad Behavior</a> website (Home of the premier link spam killer) and he got back to me <span style="text-decoration: underline;">right away</span> with the answer.</p>
<p><strong>Here's what he said:</strong></p>
<blockquote><p>In this case the IP address of your friend's computer is on the third-party http:BL blacklist to which you subscribed when you configured Bad Behavior. Most likely Rogers has assigned your friend an IP address which was used by another subscriber to send spam in the recent past.</p>
<p>You can usually get a new (and hopefully clean) IP address by resetting the cable modem. You can also disable or retune the http:BL feature.</p>
<p style="text-align: right;">Michael Hampton<br />
Author of Bad Behavior Plugin</p>
</blockquote>
<p>I would personally like to thank Michael for the wonderful support he gave me and his very quick reply.</p>
<p><strong>Be sure to install the Bad Behavior plugin!</strong></p>
<p>You can find out more information and download it here<a href="http://www.bad-behavior.ioerror.us/"></p>
<p>http://www.bad-behavior.ioerror.us/</a></p>
<p>Now, it all made sense to me. I immediately went over to <a href="http://www.projecthoneypot.org/">Project Honey Pot</a> and entered in her IP address. And <strong>WOW</strong>, there were many "Bad Behaviors" coming from the same IP address she had. We knew it wasn't her. She lives in a very rural area and her IP is shared by many.</p>
<p><strong>Here's how you search to see if an IP is on the "Bad Behavior" list:</strong></p>
<ol>
<li>Go to Project Honey Pot:<br />
<a href="http://www.projecthoneypot.org">http://www.projecthoneypot.org</a></li>
<li>Click on the "IP Data" tab. This is the Directory of Malicious IPs they've collected.</li>
<li>Click on the sub-tab "Lookup IP."</li>
<li>Type in the IP address you want to look up and hit the search button.Not to personally target a bad hacker, but as an example, try searching this IP: 93.174.93.58. (Note: This is not the IP of my friend's friend.)
<p>At this particular moment there are 70,410 web post submissions sent and it's consistent with a comment spammer sending porn keywords and links to various uninviting websites.</li>
</ol>
<p><strong>In conclusion…</strong></p>
<p>The Bad Behavior plugin was <strong>doing</strong> it's job! It was blocking all these bad hackers from accessing her website. It does a fantastic job and I highly recommend that you use this plugin if you are self-hosting a WordPress site. Be sure to utilize the http:BL Access Key built in too. This is what makes the error message work and blocks them from access your site.</p>
<p><a href="http://askreginasmola.com/img/bad-behavior.gif"><img style=' float: left; padding: 4px; margin: 0 7px 2px 0;'  class="alignleft size-thumbnail wp-image-418" title="Bad Behavior Stats" src="http://askreginasmola.com/img/bad-behavior-150x142.gif" alt="Bad Behavior Stats" width="150" height="142" /></a>I just looked at my stats for this very website and Bad Behavior has blocked  over 794 in the last 7 days.</p>
<p>To the left is a screen shot from my admin panel (click to enlarge) showing my current stats.</p>
<p>I know that my friend's associate couldn't get on her site, but what about the other multitude of bad guys that use that same IP? Do you want to risk that?</p>
<p>If you know someone that you trust that can't access your website, have them try Michael's tip about unplugging their modem and restarting it. Hopefully, it will give them a new IP. If not, ask them to contact their Internet provider, as it's them that assign the IP to them.</p>
<p>Of course, there are ways to whitelist an IP within WP, but I don't recommend it for someone that shares an IP, even if you trust them.</p>
<p><strong>What would I do if my IP was blocked?</strong></p>
<p>For me, I would contact my IP provider and tell them was was going on. I would also send them the link to look it up at Project Honey Pot so they could see the results of my IP block. Then, I would <strong>demand</strong> a new IP immediately. If they didn't comply, I would seek a new Internet provider or see if I could get a dedicated IP address that is exclusively for me.</p>
<p>Hopefully, they would take measures to get rid of these people if they were their clients too.</p>
<p>I know it's tough to stop bad hackers from doing what they do, but if you have a website, you need to take the measure necessary to try to stop them.</p>
<p>Let me know if you're using the Bad Behavior plugin and how you like it or if you have a question about it, leave a comment below.</p>
<p>Disclosure: I am not affiliated with this product or it's producers. This is only my opinion.
<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
<p>			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Faskreginasmola.com%2Ferror-403-blocking-your-website-visitors.html"></p>
<p>				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Faskreginasmola.com%2Ferror-403-blocking-your-website-visitors.html&amp;source=reginasmola&amp;style=normal&amp;service=bit.ly" height="61" width="50" /></p>
<p>			</a></p></div>
<script src="http://feeds.feedburner.com/~s/AskReginaSmola?i=http://askreginasmola.com/error-403-blocking-your-website-visitors.html" type="text/javascript" charset="utf-8"></script>]]></content:encoded>
			<wfw:commentRss>http://askreginasmola.com/error-403-blocking-your-website-visitors.html/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>15 Tips for WordPress Security</title>
		<link>http://askreginasmola.com/15-tips-for-wordpress-security.html</link>
		<comments>http://askreginasmola.com/15-tips-for-wordpress-security.html#comments</comments>
		<pubDate>Thu, 15 Oct 2009 21:13:25 +0000</pubDate>
		<dc:creator>Regina Smola</dc:creator>
				<category><![CDATA[WordPress security]]></category>
		<category><![CDATA[protecting wordpress]]></category>
		<category><![CDATA[regina smola]]></category>
		<category><![CDATA[WordPress plugins]]></category>

		<guid isPermaLink="false">http://askreginasmola.com/?p=383</guid>
		<description><![CDATA[If you're running a self-hosted WordPress website, one thing you cannot overlook is keeping it secure. Just installing WordPress, adding some plugins and writing some content isn't going to cut it.
If you're looking for ways to keep bad hackers out of your WordPress site, then my newly released mini-guide can help.
I will show you 15 [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://askreginasmola.com/img/15-tips-for-wordpress-security-by-regina-smola1.gif"><img style=' float: left; padding: 4px; margin: 0 7px 2px 0;'  class="alignleft size-thumbnail wp-image-384" title="15 Tips for WordPress Security by Regina Smola" src="http://askreginasmola.com/img/15-tips-for-wordpress-security-by-regina-smola1-150x193.gif" alt="15 Tips for WordPress Security by Regina Smola" width="150" height="193" /></a>If you're running a self-hosted WordPress website, one thing you cannot overlook is keeping it secure. Just installing WordPress, adding some plugins and writing some content isn't going to cut it.</p>
<p>If you're looking for ways to keep bad hackers out of your WordPress site, then my newly released mini-guide can help.</p>
<p>I will show you 15 different things you must do to your WordPress site to help secure it now.</p>
<p><strong>Get your copy today:</strong></p>
<p><strong>"15 Tips for WordPress Security"<br />
How to help protect your self-hosted<br />
WordPress website from being hacked<br />
by Regina Smola</strong></p>
<p><strong><object><form action="https://www.paypal.com/us/cgi-bin/webscr" method="post"><input type="hidden" name="cmd" value="_xclick" /><input type="hidden" name="business" value="reginasmola@gmail.com" /><input type="hidden" name="item_name" value="15 Tips for WordPress Security Mini Guide" /><input type="hidden" name="amount" value="7.00" /><input type="hidden" name="currency_code" value="USD" /><input type="hidden" name="item_number" value="1" /><input type="hidden" name="notify_url" value="http://askreginasmola.com/wp-content/plugins/wp-cart-for-digital-products/paypal.php" /><input type="hidden" name="return" value="http://askreginasmola.com/thank-you-for-your-order/" /><input type="hidden" name="mrb" value="3FWGC6LFTMTUG" /><input type="hidden" name="rm" value="2"><input type="hidden" name="custom" value="subsc_ref=15tipswpsecurity" id="eStore_custom_values" /><input type="submit" value="Buy Now" /></form></object><br />
Only $7</strong></p>
<p><strong>Instant Download!</strong>
<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
<p>			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Faskreginasmola.com%2F15-tips-for-wordpress-security.html"></p>
<p>				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Faskreginasmola.com%2F15-tips-for-wordpress-security.html&amp;source=reginasmola&amp;style=normal&amp;service=bit.ly" height="61" width="50" /></p>
<p>			</a></p></div>
<script src="http://feeds.feedburner.com/~s/AskReginaSmola?i=http://askreginasmola.com/15-tips-for-wordpress-security.html" type="text/javascript" charset="utf-8"></script>]]></content:encoded>
			<wfw:commentRss>http://askreginasmola.com/15-tips-for-wordpress-security.html/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
