<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments for Crained</title>
	<atom:link href="http://www.crained.com/comments/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.crained.com</link>
	<description>Marketing, Football and other musings</description>
	<lastBuildDate>Fri, 13 Aug 2010 20:05:39 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0</generator>
	<item>
		<title>Comment on MediaTemple&#8217;s Database exploit and why I&#8217;m Glad I left by Charlie</title>
		<link>http://www.crained.com/554/mediatemples-database-exploit-and-why-im-glad-i-left/comment-page-1/#comment-304</link>
		<dc:creator>Charlie</dc:creator>
		<pubDate>Fri, 13 Aug 2010 20:05:39 +0000</pubDate>
		<guid isPermaLink="false">http://www.crained.com/?p=554#comment-304</guid>
		<description>I did some research and Rackspace did experience the same problem. It&#039;s a lack of updating patches on their system. And then it took until today for them to notify anyone about the issue. We had clients forwarding us emails about the issue today. Sure, Media Temple was fixing the issue, but I wrote about this on the 6th and it was a known problem. That&#039;s not great service. I have as many hosts on other hosting companies and none experienced the problem. It would seem to me that GoDaddy and 1and1 would be prime targets as well.</description>
		<content:encoded><![CDATA[<p>I did some research and Rackspace did experience the same problem. It&#8217;s a lack of updating patches on their system. And then it took until today for them to notify anyone about the issue. We had clients forwarding us emails about the issue today. Sure, Media Temple was fixing the issue, but I wrote about this on the 6th and it was a known problem. That&#8217;s not great service. I have as many hosts on other hosting companies and none experienced the problem. It would seem to me that GoDaddy and 1and1 would be prime targets as well.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on MediaTemple&#8217;s Database exploit and why I&#8217;m Glad I left by Craig</title>
		<link>http://www.crained.com/554/mediatemples-database-exploit-and-why-im-glad-i-left/comment-page-1/#comment-303</link>
		<dc:creator>Craig</dc:creator>
		<pubDate>Fri, 13 Aug 2010 20:01:41 +0000</pubDate>
		<guid isPermaLink="false">http://www.crained.com/?p=554#comment-303</guid>
		<description>Same story for us as well. Every site on eachof our clients&#039; unique grid service accounts have been hit and all themes we make are custom as well. Like Brent all of the plugins vary from site to site and the only sites that have this script inserted by Wordpress are on MT. We&#039;ve been using MT for the last year and things were great until about a month ago. Both Wordpress and the sites themselves are ridiculously slow, and every couple days we continually have to clean out the script that Charlie has been talking about (http://bit.ly/91vTvU).

We will be moving all of our clients over to a new host very soon, canceling our accounts, and until this issue is sorted out we won&#039;t be adding any new clients&#039; sites to MT. 

MT get your shit together.</description>
		<content:encoded><![CDATA[<p>Same story for us as well. Every site on eachof our clients&#8217; unique grid service accounts have been hit and all themes we make are custom as well. Like Brent all of the plugins vary from site to site and the only sites that have this script inserted by WordPress are on MT. We&#8217;ve been using MT for the last year and things were great until about a month ago. Both WordPress and the sites themselves are ridiculously slow, and every couple days we continually have to clean out the script that Charlie has been talking about (<a href="http://bit.ly/91vTvU" rel="nofollow">http://bit.ly/91vTvU</a>).</p>
<p>We will be moving all of our clients over to a new host very soon, canceling our accounts, and until this issue is sorted out we won&#8217;t be adding any new clients&#8217; sites to MT. </p>
<p>MT get your shit together.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on MediaTemple&#8217;s Database exploit and why I&#8217;m Glad I left by Zach Wingo</title>
		<link>http://www.crained.com/554/mediatemples-database-exploit-and-why-im-glad-i-left/comment-page-1/#comment-302</link>
		<dc:creator>Zach Wingo</dc:creator>
		<pubDate>Fri, 13 Aug 2010 17:46:39 +0000</pubDate>
		<guid isPermaLink="false">http://www.crained.com/?p=554#comment-302</guid>
		<description>BTW, http://packetstormsecurity.org/filedesc/major_rls80.txt.html</description>
		<content:encoded><![CDATA[<p>BTW, <a href="http://packetstormsecurity.org/filedesc/major_rls80.txt.html" rel="nofollow">http://packetstormsecurity.org/filedesc/major_rls80.txt.html</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on MediaTemple&#8217;s Database exploit and why I&#8217;m Glad I left by Zach Wingo</title>
		<link>http://www.crained.com/554/mediatemples-database-exploit-and-why-im-glad-i-left/comment-page-1/#comment-301</link>
		<dc:creator>Zach Wingo</dc:creator>
		<pubDate>Fri, 13 Aug 2010 17:41:55 +0000</pubDate>
		<guid isPermaLink="false">http://www.crained.com/?p=554#comment-301</guid>
		<description>You accuse Media Temple of being at fault here and jumped to conclusions which were based on nothing more than weak theories only to find out that you were wrong. Several of Media Temple&#039;s customers reported on their forums that they were running Wordpress v. 2.9.2 while others said they were using the latest version. Well guess what? The latest version is about 2 week old and they&#039;ve now reported it&#039;s vulnerable to Cross Site Scripting attacks. So all those people who used the latest version and blamed (mt) should be angry at Wordpress and bloggers like yourself who jumped to conclusion because it&#039;s easier to make assumptions than look at the facts. The fact is Media Temple was not to blame nor was Rackspace. Yes, I know it&#039;s probably a shock to you that Media Temple wasn&#039;t the only host affected by a larger than normal number of hacked Wordpress sites. A simple Twitter search and a little time would have revealed the dozens of reports from customers of other hosting companies reporting their Wordpress sites being hacked even though they were using the latest version.

The real shame is that so bloggers like yourself not only don&#039;t apologize for your irresponsible and unfounded comments about a company, you usually attempt to justify your comments by trying to accuse the company of deserving it because of their history. Which for the record, with the exception of one (1) security problem they had with FTP passwords, Media Temple has had the best security and been the most open and proactive hosting company I&#039;ve used.</description>
		<content:encoded><![CDATA[<p>You accuse Media Temple of being at fault here and jumped to conclusions which were based on nothing more than weak theories only to find out that you were wrong. Several of Media Temple&#8217;s customers reported on their forums that they were running WordPress v. 2.9.2 while others said they were using the latest version. Well guess what? The latest version is about 2 week old and they&#8217;ve now reported it&#8217;s vulnerable to Cross Site Scripting attacks. So all those people who used the latest version and blamed (mt) should be angry at WordPress and bloggers like yourself who jumped to conclusion because it&#8217;s easier to make assumptions than look at the facts. The fact is Media Temple was not to blame nor was Rackspace. Yes, I know it&#8217;s probably a shock to you that Media Temple wasn&#8217;t the only host affected by a larger than normal number of hacked WordPress sites. A simple Twitter search and a little time would have revealed the dozens of reports from customers of other hosting companies reporting their WordPress sites being hacked even though they were using the latest version.</p>
<p>The real shame is that so bloggers like yourself not only don&#8217;t apologize for your irresponsible and unfounded comments about a company, you usually attempt to justify your comments by trying to accuse the company of deserving it because of their history. Which for the record, with the exception of one (1) security problem they had with FTP passwords, Media Temple has had the best security and been the most open and proactive hosting company I&#8217;ve used.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on MediaTemple&#8217;s Database exploit and why I&#8217;m Glad I left by Elijah Johannson</title>
		<link>http://www.crained.com/554/mediatemples-database-exploit-and-why-im-glad-i-left/comment-page-1/#comment-299</link>
		<dc:creator>Elijah Johannson</dc:creator>
		<pubDate>Tue, 10 Aug 2010 13:58:14 +0000</pubDate>
		<guid isPermaLink="false">http://www.crained.com/?p=554#comment-299</guid>
		<description>Why were my comments not approved? I have been using Rackspace and had 3 of 4 Wordpress sites hacked this past week. I found at least a dozen other people on twitter that are non-Media Temple customers two others were Rackspace also and the others were various hosts. What concerns me most is this is a Wordpress probably a Wordpress vulnerability but no one is looking for it because they&#039;re busy blaming Media Temple and Rackspace. I think you&#039;re being pretty narrow minded blaming the hosts when these types of attacks where a single/few hosts have been targeted. Back in May Godaddy, Bluehost and Dreamhost were all the target of attacks while most other hosts were left virtually untouched. All I know is I will not be using Wordpress anymore.</description>
		<content:encoded><![CDATA[<p>Why were my comments not approved? I have been using Rackspace and had 3 of 4 WordPress sites hacked this past week. I found at least a dozen other people on twitter that are non-Media Temple customers two others were Rackspace also and the others were various hosts. What concerns me most is this is a WordPress probably a WordPress vulnerability but no one is looking for it because they&#8217;re busy blaming Media Temple and Rackspace. I think you&#8217;re being pretty narrow minded blaming the hosts when these types of attacks where a single/few hosts have been targeted. Back in May Godaddy, Bluehost and Dreamhost were all the target of attacks while most other hosts were left virtually untouched. All I know is I will not be using WordPress anymore.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on MediaTemple&#8217;s Database exploit and why I&#8217;m Glad I left by Brent Lagerman</title>
		<link>http://www.crained.com/554/mediatemples-database-exploit-and-why-im-glad-i-left/comment-page-1/#comment-298</link>
		<dc:creator>Brent Lagerman</dc:creator>
		<pubDate>Mon, 09 Aug 2010 23:25:25 +0000</pubDate>
		<guid isPermaLink="false">http://www.crained.com/?p=554#comment-298</guid>
		<description>thanks for the advice, I already know a good amount about apache, so I think I could figure it out.  I just figured someone more qualified should be doing the sys admin work, but being hands-off with the server has gotten me into this situation... so maybe it&#039;s time for a switch...</description>
		<content:encoded><![CDATA[<p>thanks for the advice, I already know a good amount about apache, so I think I could figure it out.  I just figured someone more qualified should be doing the sys admin work, but being hands-off with the server has gotten me into this situation&#8230; so maybe it&#8217;s time for a switch&#8230;</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on MediaTemple&#8217;s Database exploit and why I&#8217;m Glad I left by Charlie</title>
		<link>http://www.crained.com/554/mediatemples-database-exploit-and-why-im-glad-i-left/comment-page-1/#comment-297</link>
		<dc:creator>Charlie</dc:creator>
		<pubDate>Mon, 09 Aug 2010 20:53:51 +0000</pubDate>
		<guid isPermaLink="false">http://www.crained.com/?p=554#comment-297</guid>
		<description>They have firewalls in place on the server and at the hosting provider. I&#039;ve never had an issue with a VPS on any host we&#039;ve had for 6+ years. There is a small learning curve to get started--but once you did you&#039;ll love the freedom.</description>
		<content:encoded><![CDATA[<p>They have firewalls in place on the server and at the hosting provider. I&#8217;ve never had an issue with a VPS on any host we&#8217;ve had for 6+ years. There is a small learning curve to get started&#8211;but once you did you&#8217;ll love the freedom.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on MediaTemple&#8217;s Database exploit and why I&#8217;m Glad I left by Brent Lagerman</title>
		<link>http://www.crained.com/554/mediatemples-database-exploit-and-why-im-glad-i-left/comment-page-1/#comment-296</link>
		<dc:creator>Brent Lagerman</dc:creator>
		<pubDate>Mon, 09 Aug 2010 20:48:41 +0000</pubDate>
		<guid isPermaLink="false">http://www.crained.com/?p=554#comment-296</guid>
		<description>I&#039;ve never wanted to use a VPS because I don&#039;t want to deal with my server being upgraded and protect it&#039;s security manually, I figured that being on a shared server provided more security because if something goes wrong they&#039;d fix it right away, but it seems like shared servers are becoming targets for hackers...</description>
		<content:encoded><![CDATA[<p>I&#8217;ve never wanted to use a VPS because I don&#8217;t want to deal with my server being upgraded and protect it&#8217;s security manually, I figured that being on a shared server provided more security because if something goes wrong they&#8217;d fix it right away, but it seems like shared servers are becoming targets for hackers&#8230;</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on MediaTemple&#8217;s Database exploit and why I&#8217;m Glad I left by Charlie</title>
		<link>http://www.crained.com/554/mediatemples-database-exploit-and-why-im-glad-i-left/comment-page-1/#comment-295</link>
		<dc:creator>Charlie</dc:creator>
		<pubDate>Mon, 09 Aug 2010 20:19:43 +0000</pubDate>
		<guid isPermaLink="false">http://www.crained.com/?p=554#comment-295</guid>
		<description>Brent,

If you get a Virtual Server and Plesk you don&#039;t need to use GoDaddy&#039;s admin area. Plesk is really easy to use and you are then in charge of your virtual server. You can get that for the price of a Grid Server. Or go to 1and1 Hosting. They are very good too. I had issues with GoDaddy in the past too for their general shared hosting, but have a completely different experience with the Virtual Server--even though at first I had issues--which I blogged about. Part of that was my fault and part was GoDaddy&#039;s lack of providing decent documentation. 

Thanks!
Charlie</description>
		<content:encoded><![CDATA[<p>Brent,</p>
<p>If you get a Virtual Server and Plesk you don&#8217;t need to use GoDaddy&#8217;s admin area. Plesk is really easy to use and you are then in charge of your virtual server. You can get that for the price of a Grid Server. Or go to 1and1 Hosting. They are very good too. I had issues with GoDaddy in the past too for their general shared hosting, but have a completely different experience with the Virtual Server&#8211;even though at first I had issues&#8211;which I blogged about. Part of that was my fault and part was GoDaddy&#8217;s lack of providing decent documentation. </p>
<p>Thanks!<br />
Charlie</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on MediaTemple&#8217;s Database exploit and why I&#8217;m Glad I left by Brent Lagerman</title>
		<link>http://www.crained.com/554/mediatemples-database-exploit-and-why-im-glad-i-left/comment-page-1/#comment-294</link>
		<dc:creator>Brent Lagerman</dc:creator>
		<pubDate>Mon, 09 Aug 2010 20:13:28 +0000</pubDate>
		<guid isPermaLink="false">http://www.crained.com/?p=554#comment-294</guid>
		<description>same story here, every site on our grid service account has been hit and all themes we make are custom, the plugins vary from site to site but if you search this exploit you will see that all people that get this script inserted by wordpress are on MediaTemple, and there&#039;s plenty of infected sites out there... Not possibly a coincidence.  Also when I&#039;m in MediaTemple&#039;s admin area and go to the databases and click to go to phpMyAdmin it brings a &#039;this is not a trusted site&#039; page on FireFox... very scary stuff... The thing that concerns me most about this is how adamant MT is about how it&#039;s not their fault, blaming it on anything they can when it&#039;s pretty obviously their problem...

I can&#039;t say I&#039;m happy with GoDaddy though, in the past I&#039;ve used them and found their admin area a pain in the butt to get around...  Wish there was something comparable to the grid service out there that I could point clients to, at the moment I&#039;m searching...

brent
@
mimoYmima.com</description>
		<content:encoded><![CDATA[<p>same story here, every site on our grid service account has been hit and all themes we make are custom, the plugins vary from site to site but if you search this exploit you will see that all people that get this script inserted by wordpress are on MediaTemple, and there&#8217;s plenty of infected sites out there&#8230; Not possibly a coincidence.  Also when I&#8217;m in MediaTemple&#8217;s admin area and go to the databases and click to go to phpMyAdmin it brings a &#8216;this is not a trusted site&#8217; page on FireFox&#8230; very scary stuff&#8230; The thing that concerns me most about this is how adamant MT is about how it&#8217;s not their fault, blaming it on anything they can when it&#8217;s pretty obviously their problem&#8230;</p>
<p>I can&#8217;t say I&#8217;m happy with GoDaddy though, in the past I&#8217;ve used them and found their admin area a pain in the butt to get around&#8230;  Wish there was something comparable to the grid service out there that I could point clients to, at the moment I&#8217;m searching&#8230;</p>
<p>brent<br />
@<br />
mimoYmima.com</p>
]]></content:encoded>
	</item>
</channel>
</rss>
