• Uncategorized

    WordPress PHP injection?

    I just found a creepy case of injection in my index.php file. I noticed this morning that my homepage was throwing a “headers already sent” message pointing to index.php, line 10 when it wasn’t cached by Supercache. A reload of the page cleaned it up. But my RSS feed (which currently goes through Feedburner) was also trashed, and /feed wasn’t redirecting. All with the same error. Disabling Supercache fixed the homepage warning, but not the feed. Being PHP awesome, I checked index.php for trailing whitespace, and found this snippet of code above the standard WordPress code: That’s a problem. That forum file is, as you might expect, a crap ton…

  • On Life and Love

    “Breached defenses” posted

    Back to Witches this week for “Breached defenses“: Hardi blinked. “I think I’m done here,” she muttered as she stood with her tray. “Have a good day, Dr. Yuk.” “Robert,” he said around another mouthful of food, “and it really helps if you soften the ‘u’. Make it just a bit more like ‘yook’ than ‘yuck’.” Hardi looked down at him. “Yuk,” she said, trying it out as he suggested. “Yup,” he said with a nod. “See, it’s much less interesting that way. You’ll be bored with ‘Yuk’ and onto ‘Robert’ soon.” He grinned impishly. This is part three of the Witches series.

  • On Life and Love

    Quasi-daily linkage

    Coding Horror: The Non-Programming Programmer – Unfortunately, I’ve worked with a programmer who truly could not program, and it wasn’t pleasant. He talked a decent game and was crunk about technology, but he couldn’t bang out solutions to problems, and we all paid for it. That said, I’m in the middle of Seth Godin’s “Linchpin”, and while if you’re looking for a programmer, you should screen for that, rapport and general intelligence are pretty damn important. Also: I really like Noahlz’s February 22, 2010 6:48 PM comment in that thread. Nice process, but what about the engineering bits? – "The major issue is in focusing so much effort and time…