<?xml version="1.0" encoding="UTF-8"?> <rss
version="2.0"
xmlns:content="http://purl.org/rss/1.0/modules/content/"
xmlns:wfw="http://wellformedweb.org/CommentAPI/"
xmlns:dc="http://purl.org/dc/elements/1.1/"
xmlns:atom="http://www.w3.org/2005/Atom"
xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
><channel><title>JaypeeOnline &#187; passwords</title> <atom:link href="http://jaypeeonline.net/tag/passwords/feed/" rel="self" type="application/rss+xml" /><link>http://jaypeeonline.net</link> <description>Technology, Blogging News, WordPress Theme and Plugin Reviews, Tips and Tricks</description> <lastBuildDate>Mon, 21 May 2012 03:17:06 +0000</lastBuildDate> <language>en</language> <sy:updatePeriod>hourly</sy:updatePeriod> <sy:updateFrequency>1</sy:updateFrequency> <generator>http://wordpress.org/?v=</generator> <item><title>WordPress.com Servers Hacked</title><link>http://jaypeeonline.net/wordpress/wordpress-com-servers-hacked/</link> <comments>http://jaypeeonline.net/wordpress/wordpress-com-servers-hacked/#comments</comments> <pubDate>Thu, 14 Apr 2011 17:13:31 +0000</pubDate> <dc:creator>Jaypee Habaradas</dc:creator> <category><![CDATA[WordPress]]></category> <category><![CDATA[matt-mullenweg]]></category> <category><![CDATA[passwords]]></category> <category><![CDATA[phpass]]></category> <category><![CDATA[wordpress.com]]></category> <category><![CDATA[wordpress.com hack]]></category> <category><![CDATA[wordpress.com servers hacked]]></category><guid
isPermaLink="false">http://jaypeeonline.net/?p=9424</guid> <description><![CDATA[Just found out earlier today that some of the WordPress.com servers were hacked. Matt Mullenweg revealed the incident and posted a warning about passwords via the WordPress.com blog. Although the hacks were low-level, there&#8217;s a possibility that all or any of the information kept on those servers could&#8217;ve been revealed. Matt Mullenweg has this to [...]]]></description> <content:encoded><![CDATA[<p><img
src="http://maxcdn.jaypeeonline.net/images/wplogo.png" alt="WordPress" /></p><p>Just found out earlier today that some of the <a
href="http://en.blog.wordpress.com/2011/04/13/security/">WordPress.com servers were hacked</a>. Matt Mullenweg revealed the incident and posted a warning about passwords via the WordPress.com blog. Although the hacks were low-level, there&#8217;s a possibility that all or any of the information kept on those servers could&#8217;ve been revealed.</p><p>Matt Mullenweg has this to say about the incident:</p><blockquote><p>We have been diligently reviewing logs and records about the break-in to determine the extent of the information exposed, and re-securing avenues used to gain access. We presume our source code was exposed and copied. While much of our code is Open Source, there are sensitive bits of our and our partners’ code. Beyond that, however, it appears information disclosed was limited.</p></blockquote><p>Even though <a
href="http://jaypeeonline.net/category/wordpress/">WordPress</a> passwords are hard to crack because they use <strong>phpass</strong> &#8211; a Portable PHP password hashing (password encryption) framework, it&#8217;s still a good idea to update your password after an event like this. Additional advise for <strong>WordPress.com</strong> users  &#8211; <strong>use strong passwords</strong> (at least 8 characters &#8211; using combinations of letters, numbers and characters), <strong>use different passwords</strong> for different sites and <strong>never use the same password for two different sites</strong>.</p><p>Please take note that the ones affected by this hacking incident are blogs hosted on WordPress.com not WordPress.org (self-hosted blogs). However, if you run a self-hosted blog but also have a WordPress.com account, make sure that you don&#8217;t use the same password for both sites.</p><div
id="crp_related"><ul><li><a
href="http://jaypeeonline.net/wordpress/wordpress-org-resets-passwords/" rel="bookmark" class="crp_title">WordPress.org Resets Passwords</a></li><li><a
href="http://jaypeeonline.net/blog/dreamhost-security-breach/" rel="bookmark" class="crp_title">DreamHost Security Breach</a></li><li><a
href="http://jaypeeonline.net/technology/how-secure-is-your-password/" rel="bookmark" class="crp_title">How Secure Is Your Password?</a></li><li><a
href="http://jaypeeonline.net/wordpress/wordpress-262/" rel="bookmark" class="crp_title">WordPress 2.6.2</a></li><li><a
href="http://jaypeeonline.net/tips-tricks/how-to-recover-wordpress-password-part-ii/" rel="bookmark" class="crp_title">How To: Recover WordPress Password Part II</a></li><li><a
href="http://jaypeeonline.net/tips-tricks/how-to-recover-wordpress-password-i/" rel="bookmark" class="crp_title">HowTo: Recover WordPress Password Part I</a></li><li><a
href="http://jaypeeonline.net/wordpress/wordpress-2-8-4-security-release/" rel="bookmark" class="crp_title">WordPress 2.8.4 Security Release</a></li><li><a
href="http://jaypeeonline.net/wordpress/wordpress-android-1-4/" rel="bookmark" class="crp_title">WordPress for Android 1.4 Now Available</a></li><li><a
href="http://jaypeeonline.net/wordpress/wordpress-security-keys/" rel="bookmark" class="crp_title">WordPress Security Keys</a></li><li><a
href="http://jaypeeonline.net/wordpress/50-million-websites-blogs-powered-by-wordpress/" rel="bookmark" class="crp_title">50 Million Websites &#038; Blogs Powered by WordPress</a></li></ul></div>]]></content:encoded> <wfw:commentRss>http://jaypeeonline.net/wordpress/wordpress-com-servers-hacked/feed/</wfw:commentRss> <slash:comments>0</slash:comments> </item> <item><title>How Secure Is Your Password?</title><link>http://jaypeeonline.net/technology/how-secure-is-your-password/</link> <comments>http://jaypeeonline.net/technology/how-secure-is-your-password/#comments</comments> <pubDate>Thu, 30 Aug 2007 02:40:29 +0000</pubDate> <dc:creator>Jaypee Habaradas</dc:creator> <category><![CDATA[Internet]]></category> <category><![CDATA[Technology]]></category> <category><![CDATA[password-generator]]></category> <category><![CDATA[passwords]]></category><guid
isPermaLink="false">http://jaypeeonline.net/internet/introduce-the-world-to-business-30/</guid> <description><![CDATA[Many people take for granted the importance and security of their passwords. In my experience as a Desktop Support person, I&#8217;ve seen people write down their passwords on post-its or pieces of paper and stick it on their computer monitor, some even share their passwords with friends or family members. It&#8217;s either that or they [...]]]></description> <content:encoded><![CDATA[<p>Many people take for granted the importance and security of their passwords. In my experience as a Desktop Support person, I&#8217;ve seen people write down their passwords on post-its or pieces of paper and stick it on their computer monitor, some even share their passwords with friends or family members. It&#8217;s either that or they use weak and very predictable passwords like their pet&#8217;s name or their birth date.</p><p>Aside from negligence, the reason why some people&#8217;s email accounts or social network accounts gets easily hacked is because they use weak passwords. A good example of a weak password would be &#8220;password&#8221; which is #1 in the list of <a
href="http://www.jdavidmacor.com/2007/04/26/10-most-commonly-used-passwords-online/">most commonly used passwords online</a>. So what is a strong password? Strong passwords are relatively long (at least 8 characters) and uses a combination of lower and upper case letters, digits and symbols.</p><p>If you&#8217;re having a hard time creating or thinking of a strong password,<br
/> here are some tools that can help you:</p><p><strong>Websites</strong>:</p><ul><li><a
href="https://passpub.com/">PassPub</a></li><li><a
href="http://strongpasswordgenerator.com/">Strong Password Generator</a></li><li><a
href="http://www.pctools.com/guides/password/">PC Tools Password Generator</a></li></ul><p><strong>Offline Programs</strong>:</p><ul><li><a
href="http://www.iliumsoft.com/site/fp/passbuild.htm">PassBuilder</a></li><li><a
href="http://pwgen-win.sourceforge.net/">PWGen</a></li></ul><p><strong>Firefox Add-ons</strong>:</p><ul><li><a
href="https://addons.mozilla.org/en-US/firefox/addon/135">SecurePassword Generator</a></li><li><a
href="https://addons.mozilla.org/en-US/firefox/addon/874">Magic Password Generator</a></li></ul><p>Now that you have a strong password, please keep it and guard it with your life. That might be a little exaggerated but I know you get my point. I hope that after you read this post, you won&#8217;t be too lazy or negligent with your passwords and that you&#8217;ll practice safe computing from now on.</p><p>So how secure is your password? What are your methods of choosing or creating passwords? Do you know of other reliable password generators? Do you have any experiences of having your accounts hacked? Please share it with us.</p><p>Btw, do you know that <a
href="http://www.microsoft.com/windows/products/windowsxp/default.mspx">Windows XP</a> has a secret password generator? If you wanna know how to use it, you&#8217;ll have to come back next time coz there&#8217;s not much time left to talk about it here. So stay tuned!</p><div
id="crp_related"><ul><li><a
href="http://jaypeeonline.net/tips-tricks/windows-xp-hidden-password-generator/" rel="bookmark" class="crp_title">Windows XP Hidden Password Generator</a></li><li><a
href="http://jaypeeonline.net/wordpress/wordpress-com-servers-hacked/" rel="bookmark" class="crp_title">WordPress.com Servers Hacked</a></li><li><a
href="http://jaypeeonline.net/wordpress/wordpress-org-resets-passwords/" rel="bookmark" class="crp_title">WordPress.org Resets Passwords</a></li><li><a
href="http://jaypeeonline.net/blog/dreamhost-security-breach/" rel="bookmark" class="crp_title">DreamHost Security Breach</a></li><li><a
href="http://jaypeeonline.net/tips-tricks/fast-boot-windows/" rel="bookmark" class="crp_title">Fast Boot Windows</a></li><li><a
href="http://jaypeeonline.net/tips-tricks/how-to-recover-wordpress-password-i/" rel="bookmark" class="crp_title">HowTo: Recover WordPress Password Part I</a></li><li><a
href="http://jaypeeonline.net/social-networks/facebook-password-reset-scam/" rel="bookmark" class="crp_title">Facebook Password Reset Scam</a></li><li><a
href="http://jaypeeonline.net/tips-tricks/how-to-recover-wordpress-password-part-ii/" rel="bookmark" class="crp_title">How To: Recover WordPress Password Part II</a></li><li><a
href="http://jaypeeonline.net/social-networks/exclusive-video-of-osama-dead-facebook-scam/" rel="bookmark" class="crp_title">Exclusive Video of Osama Dead [Facebook SCAM]</a></li><li><a
href="http://jaypeeonline.net/tips-tricks/3-ways-to-secure-wifi-router/" rel="bookmark" class="crp_title">3 Basic Ways To Secure Your WiFi Router</a></li></ul></div>]]></content:encoded> <wfw:commentRss>http://jaypeeonline.net/technology/how-secure-is-your-password/feed/</wfw:commentRss> <slash:comments>26</slash:comments> </item> <item><title>DreamHost Security Breach</title><link>http://jaypeeonline.net/blog/dreamhost-security-breach/</link> <comments>http://jaypeeonline.net/blog/dreamhost-security-breach/#comments</comments> <pubDate>Thu, 07 Jun 2007 02:12:29 +0000</pubDate> <dc:creator>Jaypee Habaradas</dc:creator> <category><![CDATA[Blog]]></category> <category><![CDATA[Web Hosting]]></category> <category><![CDATA[dreamhost]]></category> <category><![CDATA[ftp]]></category> <category><![CDATA[passwords]]></category> <category><![CDATA[web-host]]></category><guid
isPermaLink="false">http://jaypeeonline.net/?p=290</guid> <description><![CDATA[Several days ago, I got 500 Internal Server errors while trying to access my blog and WordPress admin panel so I immediately I sent a ticket to Dreamhost&#8217;s support staff. Right after that, I accessed Dreamhost&#8217;s status page to check if there were known issues or problems with the servers or hosting in general. In [...]]]></description> <content:encoded><![CDATA[<p></p><p>Several days ago, I got 500 Internal Server errors while trying to access my blog and WordPress admin panel so I immediately I sent a ticket to Dreamhost&#8217;s support staff. Right after that, I accessed <a
href="http://www.dreamhoststatus.com/">Dreamhost&#8217;s status page</a> to check if there were known issues or problems with the servers or hosting in general. In a recent post, I read one person mention something about a FTP password security breach in Dreamhost. I totally forgot about it and I didn&#8217;t get to find out what it was all about.</p><p>Then earlier today, I received this email from Dreamhost:</p><blockquote><p>A very small subset of our user accounts have been compromised due to a security flaw in our web control panel software. We have already notified those of you affected directly via email, aside from dedicated server customers who are being notified right now. If you are not on a dedicated server and you have not gotten an email from us your account has not been compromised and is likely safe. It’s still a good idea to change your ftp and web control panel password as a precautionary measure.</p><p>The security flaw allowed the attackers to log into our web panel with the access privileges of another user. From our web panel they were able to access individual user password information. The attackers also attempted to gain access to our central database and billing information but were ultimately thwarted in that attempt. No credit card information or customer personal information was obtained.</p></blockquote><p>After reading this, I went and tried to do a Google search on this incident. I found out that about 3,500 separate FTP account passwords were leaked and used by hackers in an effort to gain access to the database and billing information of Dreamhost.</p><p>Right that moment, I logged on to my Dreamhost web panel and changed all my passwords. Then I checked my folders and files to see if there were any changes made and also checked if there were files uploaded without my knowledge.</p><p>I know of some Dreamhost clients who left and moved to a different web host after this incident. Me? I think I&#8217;ll stay for now but it does make me think of looking for a better web host just in case I need to move.</p><div
id="crp_related"><ul><li><a
href="http://jaypeeonline.net/web-hosting/dreamhost-billing-nightmare/" rel="bookmark" class="crp_title">Dreamhost Billing Nightmare</a></li><li><a
href="http://jaypeeonline.net/blog/goodbye-dreamhost-hello-mediatemple/" rel="bookmark" class="crp_title">Goodbye Dreamhost, Hello MediaTemple!</a></li><li><a
href="http://jaypeeonline.net/internet/best-buy-email-breach/" rel="bookmark" class="crp_title">Email Breach Hits Best Buy, TiVo &#038; Other Companies</a></li><li><a
href="http://jaypeeonline.net/wordpress/wordpress-com-servers-hacked/" rel="bookmark" class="crp_title">WordPress.com Servers Hacked</a></li><li><a
href="http://jaypeeonline.net/web-hosting/dreamhost-blocks-googlebot/" rel="bookmark" class="crp_title">DreamHost Blocks Googlebot?</a></li><li><a
href="http://jaypeeonline.net/blog/dreamhost-upgrades-php-installations/" rel="bookmark" class="crp_title">Dreamhost Upgrades PHP Installations</a></li><li><a
href="http://jaypeeonline.net/tips-tricks/how-to-recover-wordpress-password-i/" rel="bookmark" class="crp_title">HowTo: Recover WordPress Password Part I</a></li><li><a
href="http://jaypeeonline.net/blog/jaypeeonline-dreamhost/" rel="bookmark" class="crp_title">JaypeeOnline @ Dreamhost</a></li><li><a
href="http://jaypeeonline.net/wordpress/wordpress-2-8-4-security-release/" rel="bookmark" class="crp_title">WordPress 2.8.4 Security Release</a></li><li><a
href="http://jaypeeonline.net/wordpress/wordpress-org-resets-passwords/" rel="bookmark" class="crp_title">WordPress.org Resets Passwords</a></li></ul></div>]]></content:encoded> <wfw:commentRss>http://jaypeeonline.net/blog/dreamhost-security-breach/feed/</wfw:commentRss> <slash:comments>5</slash:comments> </item> </channel> </rss>
<!-- Performance optimized by W3 Total Cache. Learn more: http://www.w3-edge.com/wordpress-plugins/

Minified using disk
Page Caching using disk (enhanced) (User agent is rejected)
Database Caching 5/13 queries in 0.156 seconds using disk
Object Caching 996/1008 objects using disk
Content Delivery Network via maxcdn.jaypeeonline.net

Served from: jaypeeonline.net @ 2012-05-27 01:26:02 -->
