<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet href="http://feeds.feedburner.com/~d/styles/rss2full.xsl" type="text/xsl" media="screen"?><?xml-stylesheet href="http://feeds.feedburner.com/~d/styles/itemcontent.css" type="text/css" media="screen"?><rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:wfw="http://wellformedweb.org/CommentAPI/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0">

<channel>
	<title>Copes Flavio</title>
	
	<link>http://www.copesflavio.com/en/blog</link>
	<description>Joomla, Web Development, Joomla Templates</description>
	<pubDate>Tue, 25 Nov 2008 05:36:33 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.6.3</generator>
	<language>en</language>
	<xhtml:meta xmlns:xhtml="http://www.w3.org/1999/xhtml" name="robots" content="noindex" />
		<atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="self" href="http://feeds.feedburner.com/copeswebdesign_en" type="application/rss+xml" /><item>
		<title>Joomla User Groups Permissions</title>
		<link>http://www.copesflavio.com/en/blog/cms/joomla/joomla-user-groups-permissions</link>
		<comments>http://www.copesflavio.com/en/blog/cms/joomla/joomla-user-groups-permissions#comments</comments>
		<pubDate>Tue, 25 Nov 2008 05:36:33 +0000</pubDate>
		<dc:creator>Copes Flavio</dc:creator>
		
		<category><![CDATA[Joomla]]></category>

		<category><![CDATA[ACL]]></category>

		<category><![CDATA[Group Access]]></category>

		<guid isPermaLink="false">http://www.copesflavio.com/en/blog/?p=167</guid>
		<description><![CDATA[I copy here this nice table published by Brian Teeman on his blog:

This lists the permissions of the Joomla user groups, separated in frontend and backend.

	Tags: ACL, Group Access, Joomla
]]></description>
			<content:encoded><![CDATA[<p>I copy here this nice table published by <a href="http://brian.teeman.net/joomla-gps/joomla-15-acl-explained.html">Brian Teeman</a> on his blog:</p>
<p><img class="alignnone size-full wp-image-856" title="Permessi utente Joomla" src="http://www.copesflavio.com/blog/wp-content/uploads/2008/11/img-14.jpg" alt="" width="450" height="391" /></p>
<p>This lists the permissions of the Joomla user groups, separated in frontend and backend.</p>

	Tags: <a href="http://www.copesflavio.com/en/blog/tag/acl/" title="ACL" rel="tag">ACL</a>, <a href="http://www.copesflavio.com/en/blog/tag/group-access/" title="Group Access" rel="tag">Group Access</a>, <a href="http://www.copesflavio.com/en/blog/tag/joomla/" title="Joomla" rel="tag">Joomla</a><br />
]]></content:encoded>
			<wfw:commentRss>http://www.copesflavio.com/en/blog/cms/joomla/joomla-user-groups-permissions/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Fight SQL Injection</title>
		<link>http://www.copesflavio.com/en/blog/web-development/fight-sql-injection</link>
		<comments>http://www.copesflavio.com/en/blog/web-development/fight-sql-injection#comments</comments>
		<pubDate>Mon, 24 Nov 2008 19:44:30 +0000</pubDate>
		<dc:creator>Copes Flavio</dc:creator>
		
		<category><![CDATA[Web Development]]></category>

		<category><![CDATA[MySQL]]></category>

		<category><![CDATA[PHP]]></category>

		<category><![CDATA[Programming]]></category>

		<category><![CDATA[Security]]></category>

		<category><![CDATA[SQL Injection]]></category>

		<guid isPermaLink="false">http://www.copesflavio.com/en/blog/?p=169</guid>
		<description><![CDATA[From Wikipedia:
SQL injection is a technique that exploits a security vulnerability occurring in the database layer of an application
Here&#8217;s a link to a great reference against SQL Injection attacks: how to recognize the flaws and fight them!


	Tags: MySQL, PHP, Programming, Security, SQL Injection
]]></description>
			<content:encoded><![CDATA[<p>From Wikipedia:</p>
<blockquote><p><em><strong>SQL injection</strong> is a technique that exploits a security vulnerability occurring in the database layer of an application</em></p></blockquote>
<p>Here&#8217;s a <a href="http://ferruh.mavituna.com/sql-injection-cheatsheet-oku/">link to a great reference against SQL Injection attacks</a>: how to recognize the flaws and fight them!</p>
<p><img class="alignnone size-full wp-image-170" title="SQL injection cheat sheed" src="http://www.copesflavio.com/en/blog/wp-content/uploads/2008/11/img-1.jpg" alt="" width="397" height="167" /></p>

	Tags: <a href="http://www.copesflavio.com/en/blog/tag/mysql/" title="MySQL" rel="tag">MySQL</a>, <a href="http://www.copesflavio.com/en/blog/tag/php/" title="PHP" rel="tag">PHP</a>, <a href="http://www.copesflavio.com/en/blog/tag/programming/" title="Programming" rel="tag">Programming</a>, <a href="http://www.copesflavio.com/en/blog/tag/security/" title="Security" rel="tag">Security</a>, <a href="http://www.copesflavio.com/en/blog/tag/sql-injection/" title="SQL Injection" rel="tag">SQL Injection</a><br />
]]></content:encoded>
			<wfw:commentRss>http://www.copesflavio.com/en/blog/web-development/fight-sql-injection/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Two nice Joomla! Day presentations</title>
		<link>http://www.copesflavio.com/en/blog/cms/joomla/two-nice-joomla-day-presentations</link>
		<comments>http://www.copesflavio.com/en/blog/cms/joomla/two-nice-joomla-day-presentations#comments</comments>
		<pubDate>Fri, 05 Sep 2008 06:26:52 +0000</pubDate>
		<dc:creator>Copes Flavio</dc:creator>
		
		<category><![CDATA[Joomla]]></category>

		<category><![CDATA[Arno Zijlstra]]></category>

		<category><![CDATA[Joomla Day]]></category>

		<category><![CDATA[Joomla-Template]]></category>

		<category><![CDATA[Mitch Pirtle]]></category>

		<category><![CDATA[Presentations]]></category>

		<guid isPermaLink="false">http://www.copesflavio.com/en/blog/?p=164</guid>
		<description><![CDATA[On April 4th-5th 2008 there&#8217;s been a Joomla Day in Utrecht, Nederlands.
Here are two great presentations, published on the Arno Zijlstra blog.
The first, made by Mitch Pirtle (one of the Joomla founders) is a 10 minutes talk about the Web site branding. At the end of the presentation, Mitch tells us about how templates should [...]]]></description>
			<content:encoded><![CDATA[<p>On April 4th-5th 2008 there&#8217;s been a Joomla Day in Utrecht, Nederlands.</p>
<p>Here are two great presentations, <a href="http://woofandwarp.com/blog/2-joomla/15-the-joomla-days-are-past-looking-back">published</a> on the Arno Zijlstra blog.</p>
<p>The first, made by Mitch Pirtle (one of the Joomla founders) is a 10 minutes talk about the <strong>Web site branding</strong>. At the end of the presentation, Mitch tells us about how templates should be improved by the site designer to improve the branding of a website.</p>
<p><object classid="clsid:D27CDB6E-AE6D-11cf-96B8-444553540000 "id="http://joomladagen.cleverinsert.com/kickapps/flash/premium_drop_v3.swf?b=1&#038;widgetHost=joomladagen.cleverinsert.com&#038;mediaType=VIDEO&#038;mediaId=184573&#038;as=27439" width="420" height="365"codebase="http://fpdownload.macromedia.com/get/flashplayer/current/swflash.cab"><param name="movie" value="http://joomladagen.cleverinsert.com/kickapps/flash/premium_drop_v3.swf?b=1&#038;widgetHost=joomladagen.cleverinsert.com&#038;mediaType=VIDEO&#038;mediaId=184573&#038;as=27439"/><param name="quality" value="high" /><param name="menu" value="false" /><param name="allowScriptAccess" value="always" /><param name="bgcolor" value="#ffffff" /><param name="allowFullScreen" value="true" /><embed type="application/x-shockwave-flash" pluginspage="http://www.macromedia.com/shockwave/download/index.cgi?P1_Prod_Version=ShockwaveFlash"  allowFullScreen="true" allowScriptAccess="always" quality="high" menu="false" bgcolor="#ffffff" src="http://joomladagen.cleverinsert.com/kickapps/flash/premium_drop_v3.swf?b=1&#038;widgetHost=joomladagen.cleverinsert.com&#038;mediaType=VIDEO&#038;mediaId=184573&#038;as=27439"type="application/x-shockwave-flash" width="420"height="365"></embed></object></p>
<p>The second, made by Arno Zijlstra (a Joomla founder), talks about <strong>Joomla 1.5 template design</strong>. </p>
<p>He talks a lot about <strong>template overrides</strong>, <a href="http://woofandwarp.com/blog/2-joomla/19-having-fun-with-joomla-module-chrome-and-suffix">Module Chrome</a>, used to modify components and modules output.<br />
Arno talks about menu management and uses JMenuSite to change template depending on the active menu.</p>
<p><object classid="clsid:D27CDB6E-AE6D-11cf-96B8-444553540000 "id="http://joomladagen.cleverinsert.com/kickapps/flash/premium_drop_v3.swf?b=1&#038;widgetHost=joomladagen.cleverinsert.com&#038;mediaType=VIDEO&#038;mediaId=184595&#038;as=27439" width="420" height="365"codebase="http://fpdownload.macromedia.com/get/flashplayer/current/swflash.cab"><param name="movie" value="http://joomladagen.cleverinsert.com/kickapps/flash/premium_drop_v3.swf?b=1&#038;widgetHost=joomladagen.cleverinsert.com&#038;mediaType=VIDEO&#038;mediaId=184595&#038;as=27439"/><param name="quality" value="high" /><param name="menu" value="false" /><param name="allowScriptAccess" value="always" /><param name="bgcolor" value="#ffffff" /><param name="allowFullScreen" value="true" /><embed type="application/x-shockwave-flash" pluginspage="http://www.macromedia.com/shockwave/download/index.cgi?P1_Prod_Version=ShockwaveFlash"  allowFullScreen="true" allowScriptAccess="always" quality="high" menu="false" bgcolor="#ffffff" src="http://joomladagen.cleverinsert.com/kickapps/flash/premium_drop_v3.swf?b=1&#038;widgetHost=joomladagen.cleverinsert.com&#038;mediaType=VIDEO&#038;mediaId=184595&#038;as=27439"type="application/x-shockwave-flash" width="420"height="365"></embed></object></p>

	Tags: <a href="http://www.copesflavio.com/en/blog/tag/arno-zijlstra/" title="Arno Zijlstra" rel="tag">Arno Zijlstra</a>, <a href="http://www.copesflavio.com/en/blog/tag/joomla/" title="Joomla" rel="tag">Joomla</a>, <a href="http://www.copesflavio.com/en/blog/tag/joomla-day/" title="Joomla Day" rel="tag">Joomla Day</a>, <a href="http://www.copesflavio.com/en/blog/tag/joomla-template/" title="Joomla-Template" rel="tag">Joomla-Template</a>, <a href="http://www.copesflavio.com/en/blog/tag/mitch-pirtle/" title="Mitch Pirtle" rel="tag">Mitch Pirtle</a>, <a href="http://www.copesflavio.com/en/blog/tag/presentations/" title="Presentations" rel="tag">Presentations</a><br />
]]></content:encoded>
			<wfw:commentRss>http://www.copesflavio.com/en/blog/cms/joomla/two-nice-joomla-day-presentations/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Joomla template parameters</title>
		<link>http://www.copesflavio.com/en/blog/cms/joomla/joomla-template-parameters</link>
		<comments>http://www.copesflavio.com/en/blog/cms/joomla/joomla-template-parameters#comments</comments>
		<pubDate>Wed, 20 Aug 2008 08:09:27 +0000</pubDate>
		<dc:creator>Copes Flavio</dc:creator>
		
		<category><![CDATA[Joomla]]></category>

		<category><![CDATA[Joomla-Template]]></category>

		<category><![CDATA[PHP]]></category>

		<category><![CDATA[Template Parameters]]></category>

		<guid isPermaLink="false">http://www.copesflavio.com/en/blog/?p=152</guid>
		<description><![CDATA[Joomla has a great template system that let you change the website look and feel in a snap.
Sometimes you can change how certain elements of the template look like, by setting its parameters in the administrator interface.
Before the 1.5 release, the way these parameters were used was not consistent across different templates, as it didn&#8217;t [...]]]></description>
			<content:encoded><![CDATA[<p>Joomla has a great template system that let you change the website <strong>look and feel</strong> in a snap.</p>
<p>Sometimes you can change how certain elements of the template look like, by setting its parameters in the administrator interface.</p>
<p>Before the 1.5 release, the way these parameters were used was not consistent across different templates, as it didn&#8217;t exist a common architecture and each template vendor had to find a way to do that.</p>
<p>Reinventing the wheel is not a <strong>nice and smart</strong> way to do things, so Joomla 1.5 introduced <strong>template parameters</strong>. Also used for extension development, these parameters are a <strong>great improvement</strong> regarding template development.</p>
<p>Let&#8217;s try to open the template manager, and select the template RHUK Milkyway. On the right, you can see the &#8220;Parameters&#8221; box.</p>
<p><img class="alignnone size-full wp-image-431" title="Parametri del template" src="http://www.copesflavio.com/blog/wp-content/uploads/2008/08/parametri.jpg" alt="" width="400" height="159" /></p>
<p>As you can see, we have 3 parameters: the first defines the dominant color on the page, the second sets the background color and the third decides the page width.</p>
<p><img class="alignnone size-full wp-image-432" title="Variazioni di colore" src="http://www.copesflavio.com/blog/wp-content/uploads/2008/08/variazioni-di-colore.jpg" alt="" width="500" height="328" /></p>
<p>The template parameters creating is up to the designer, that must declare them in the <strong>templateDetails.xml</strong> file, add a line to <strong>params.ini</strong> and manage this value in the <strong>PHP code</strong> of the template.</p>
<p>There&#8217;s a great guide on how to manage template parameters on the Joomla Documentation Wiki, called <a href="http://docs.joomla.org/Tutorial:Template_parameters">Tutorial: Template Parameters</a>.</p>
<p>That&#8217;s an invaluable piece of documentation that every template developer should print and keep on his desk <img src='http://www.copesflavio.com/en/blog/wp-includes/images/smilies/icon_smile.gif' alt=':-)' class='wp-smiley' /></p>

	Tags: <a href="http://www.copesflavio.com/en/blog/tag/joomla/" title="Joomla" rel="tag">Joomla</a>, <a href="http://www.copesflavio.com/en/blog/tag/joomla-template/" title="Joomla-Template" rel="tag">Joomla-Template</a>, <a href="http://www.copesflavio.com/en/blog/tag/php/" title="PHP" rel="tag">PHP</a>, <a href="http://www.copesflavio.com/en/blog/tag/template-parameters/" title="Template Parameters" rel="tag">Template Parameters</a><br />
]]></content:encoded>
			<wfw:commentRss>http://www.copesflavio.com/en/blog/cms/joomla/joomla-template-parameters/feed/</wfw:commentRss>
		</item>
		<item>
		<title>JSST, security-related Joomla squad</title>
		<link>http://www.copesflavio.com/en/blog/cms/joomla/jsst-security-related-joomla-squad</link>
		<comments>http://www.copesflavio.com/en/blog/cms/joomla/jsst-security-related-joomla-squad#comments</comments>
		<pubDate>Tue, 19 Aug 2008 07:45:47 +0000</pubDate>
		<dc:creator>Copes Flavio</dc:creator>
		
		<category><![CDATA[Joomla]]></category>

		<category><![CDATA[Joomla Core Team]]></category>

		<category><![CDATA[Joomla Security]]></category>

		<category><![CDATA[JSST]]></category>

		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://www.copesflavio.com/en/blog/?p=150</guid>
		<description><![CDATA[After the security hole that lead to the release of Joomla! 1.5.6, the Joomla Core Team decided that it was time to create a group of people devoted to the security of the CMS.
As Anthony Ferrara told us yesterday on the Core Team Blog, this squad will be called JSST (Joomla Security *** Team). More [...]]]></description>
			<content:encoded><![CDATA[<p>After the security hole that lead to the release of <a href="http://www.copesflavio.com/en/blog/cms/joomla/joomla-156-released-a-critical-security-fix">Joomla! 1.5.6</a>, the Joomla Core Team decided that it was time to create a group of people devoted to the <strong>security</strong> of the CMS.</p>
<p>As Anthony Ferrara <a href="http://community.joomla.org/core-team-blog/468-jsst-is-coming.html">told us</a> yesterday on the Core Team Blog, this squad will be called <strong>JSST</strong> (<a href="http://www.copesflavio.com/en/blog/tag/joomla-security/">Joomla Security</a> *** Team). More details will be uncovered during this week, so stay tuned <img src='http://www.copesflavio.com/en/blog/wp-includes/images/smilies/icon_smile.gif' alt=':-)' class='wp-smiley' /></p>

	Tags: <a href="http://www.copesflavio.com/en/blog/tag/joomla/" title="Joomla" rel="tag">Joomla</a>, <a href="http://www.copesflavio.com/en/blog/tag/joomla-core-team/" title="Joomla Core Team" rel="tag">Joomla Core Team</a>, <a href="http://www.copesflavio.com/en/blog/tag/joomla-security/" title="Joomla Security" rel="tag">Joomla Security</a>, <a href="http://www.copesflavio.com/en/blog/tag/jsst/" title="JSST" rel="tag">JSST</a>, <a href="http://www.copesflavio.com/en/blog/tag/security/" title="Security" rel="tag">Security</a><br />
]]></content:encoded>
			<wfw:commentRss>http://www.copesflavio.com/en/blog/cms/joomla/jsst-security-related-joomla-squad/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Joomla! 1.5.6 Released: a critical security fix</title>
		<link>http://www.copesflavio.com/en/blog/cms/joomla/joomla-156-released-a-critical-security-fix</link>
		<comments>http://www.copesflavio.com/en/blog/cms/joomla/joomla-156-released-a-critical-security-fix#comments</comments>
		<pubDate>Wed, 13 Aug 2008 11:11:57 +0000</pubDate>
		<dc:creator>Copes Flavio</dc:creator>
		
		<category><![CDATA[Joomla]]></category>

		<category><![CDATA[Joomla Security]]></category>

		<category><![CDATA[Release Software]]></category>

		<guid isPermaLink="false">http://www.copesflavio.com/en/blog/?p=148</guid>
		<description><![CDATA[This morning the Joomla! dev team released a new Joomla version: 1.5.6.
That&#8217;s a released made to correct a security hole that was discovered yesterday: it seems that anyone could get administrator access using the Password Remind functionality, used to reset a password when it&#8217;s forgotten.
After a couple of hours the Joomla Team released an official [...]]]></description>
			<content:encoded><![CDATA[<p>This morning the Joomla! dev team released a new Joomla version: <a href="http://www.joomla.org/content/view/5235/1/">1.5.6</a>.</p>
<p>That&#8217;s a released made to correct a <a href="http://developer.joomla.org/security/news/241-20080801-core-password-remind-functionality.html">security hole</a> that was discovered yesterday: it seems that anyone could get <strong>administrator access</strong> using the Password Remind functionality, used to reset a password when it&#8217;s forgotten.</p>
<p>After a couple of hours the Joomla Team released an official patch on the Joomla.org website.</p>
<p>CompassDesigns.net <a href="http://www.compassdesigns.net/joomla-blog/Admin-Password-Reset-Vulnerability-in-Joomla-1.5.html">was hacked</a> because of this problem.</p>
<p><strong>Every Joomla! 1.5 installation is infected by this problem</strong>, that now is of public domain. It&#8217;s a good idea to <strong>upgrade your websites</strong>!</p>

	Tags: <a href="http://www.copesflavio.com/en/blog/tag/joomla/" title="Joomla" rel="tag">Joomla</a>, <a href="http://www.copesflavio.com/en/blog/tag/joomla-security/" title="Joomla Security" rel="tag">Joomla Security</a>, <a href="http://www.copesflavio.com/en/blog/tag/release-software/" title="Release Software" rel="tag">Release Software</a><br />
]]></content:encoded>
			<wfw:commentRss>http://www.copesflavio.com/en/blog/cms/joomla/joomla-156-released-a-critical-security-fix/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Preventing SQL injection in Joomla</title>
		<link>http://www.copesflavio.com/en/blog/cms/joomla/preventing-sql-injection-in-joomla</link>
		<comments>http://www.copesflavio.com/en/blog/cms/joomla/preventing-sql-injection-in-joomla#comments</comments>
		<pubDate>Thu, 10 Jul 2008 09:01:59 +0000</pubDate>
		<dc:creator>Copes Flavio</dc:creator>
		
		<category><![CDATA[Joomla]]></category>

		<category><![CDATA[Joomla Security]]></category>

		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://www.copesflavio.com/en/blog/?p=145</guid>
		<description><![CDATA[Anthony Ferrara, one of the lead developers of Joomla!, wrote a great post on the Joomla! Developers Blog that teach us how to avoid SQL Injection problems.
Since most of the Joomla! extensions security issues involve SQL injection, I suggest to read this piece very carefully 

	Tags: Joomla, Joomla Security, Security
]]></description>
			<content:encoded><![CDATA[<p>Anthony Ferrara, one of the lead developers of Joomla!, wrote a great post on the Joomla! Developers Blog that teach us <a href="http://developer.joomla.org/tutorials/33-tutorials/181-preventing-sql-injections.html">how to avoid SQL Injection problems</a>.</p>
<p>Since most of the Joomla! extensions security issues involve SQL injection, I suggest to read this piece very carefully <img src='http://www.copesflavio.com/en/blog/wp-includes/images/smilies/icon_smile.gif' alt=':-)' class='wp-smiley' /></p>

	Tags: <a href="http://www.copesflavio.com/en/blog/tag/joomla/" title="Joomla" rel="tag">Joomla</a>, <a href="http://www.copesflavio.com/en/blog/tag/joomla-security/" title="Joomla Security" rel="tag">Joomla Security</a>, <a href="http://www.copesflavio.com/en/blog/tag/security/" title="Security" rel="tag">Security</a><br />
]]></content:encoded>
			<wfw:commentRss>http://www.copesflavio.com/en/blog/cms/joomla/preventing-sql-injection-in-joomla/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Differences between URL generated by Joomla! 1.0 and 1.5</title>
		<link>http://www.copesflavio.com/en/blog/cms/joomla/differences-between-url-generated-by-joomla-10-and-15</link>
		<comments>http://www.copesflavio.com/en/blog/cms/joomla/differences-between-url-generated-by-joomla-10-and-15#comments</comments>
		<pubDate>Thu, 26 Jun 2008 16:46:16 +0000</pubDate>
		<dc:creator>Copes Flavio</dc:creator>
		
		<category><![CDATA[Joomla]]></category>

		<category><![CDATA[Joomla-1.5]]></category>

		<guid isPermaLink="false">http://www.copesflavio.com/en/blog/?p=143</guid>
		<description><![CDATA[Here&#8217;s a great post by Alledia showing a few differences between the URLs generated by the popular CMS Joomla!.

	Tags: Joomla, Joomla-1.5
]]></description>
			<content:encoded><![CDATA[<p>Here&#8217;s a <a href="http://www.alledia.com/blog/seo/url-changes-in-joomla-1.5/">great post by Alledia</a> showing a few differences between the URLs generated by the popular CMS Joomla!.</p>

	Tags: <a href="http://www.copesflavio.com/en/blog/tag/joomla/" title="Joomla" rel="tag">Joomla</a>, <a href="http://www.copesflavio.com/en/blog/tag/joomla-15/" title="Joomla-1.5" rel="tag">Joomla-1.5</a><br />
]]></content:encoded>
			<wfw:commentRss>http://www.copesflavio.com/en/blog/cms/joomla/differences-between-url-generated-by-joomla-10-and-15/feed/</wfw:commentRss>
		</item>
		<item>
		<title>A great giveaway for WordPress enthusiasts!</title>
		<link>http://www.copesflavio.com/en/blog/blog/wordpress/a-great-giveaway-for-wordpress-enthusiasts</link>
		<comments>http://www.copesflavio.com/en/blog/blog/wordpress/a-great-giveaway-for-wordpress-enthusiasts#comments</comments>
		<pubDate>Sat, 17 May 2008 16:39:41 +0000</pubDate>
		<dc:creator>Copes Flavio</dc:creator>
		
		<category><![CDATA[Wordpress]]></category>

		<category><![CDATA[Prize]]></category>

		<guid isPermaLink="false">http://www.copesflavio.com/en/blog/?p=142</guid>
		<description><![CDATA[A couple of days ago UpStartBlogger started a great giveaway: the winner will get a nice website, and that includes a 5-letters domain name and hosting!
The site we&#8217;re talking about is a WordPress showcase site, it&#8217;s already generating revenue (not a lot I think, if they give it away for free), and it could be [...]]]></description>
			<content:encoded><![CDATA[<p>A couple of days ago UpStartBlogger started a <a href="http://www.upstartblogger.com/giving-away-an-established-money-making-blog-with-existing-advertising-revenue">great giveaway</a>: the winner will get a nice website, and that includes a 5-letters domain name and hosting!</p>
<p>The site we&#8217;re talking about is a <a href="http://www.copesflavio.com/en/blog/tag/wordpress">WordPress</a> showcase site, it&#8217;s already generating revenue (not a lot I think, if they give it away for free), and it could be a nice prize to win <img src='http://www.copesflavio.com/en/blog/wp-includes/images/smilies/icon_smile.gif' alt=':-)' class='wp-smiley' /> </p>
<p>How to win it? Just write a post about it, like I&#8217;m doing now!</p>

	Tags: <a href="http://www.copesflavio.com/en/blog/tag/prize/" title="Prize" rel="tag">Prize</a>, <a href="http://www.copesflavio.com/en/blog/tag/wordpress/" title="Wordpress" rel="tag">Wordpress</a><br />
]]></content:encoded>
			<wfw:commentRss>http://www.copesflavio.com/en/blog/blog/wordpress/a-great-giveaway-for-wordpress-enthusiasts/feed/</wfw:commentRss>
		</item>
		<item>
		<title>One of the worst WordPress security threats still alive</title>
		<link>http://www.copesflavio.com/en/blog/cms/joomla/one-of-the-worst-wordpress-security-threats-still-alive</link>
		<comments>http://www.copesflavio.com/en/blog/cms/joomla/one-of-the-worst-wordpress-security-threats-still-alive#comments</comments>
		<pubDate>Fri, 16 May 2008 09:00:07 +0000</pubDate>
		<dc:creator>Copes Flavio</dc:creator>
		
		<category><![CDATA[Extensions]]></category>

		<category><![CDATA[Joomla]]></category>

		<category><![CDATA[Wordpress]]></category>

		<category><![CDATA[Security]]></category>

		<category><![CDATA[WordPress Security]]></category>

		<guid isPermaLink="false">http://www.copesflavio.com/en/blog/?p=140</guid>
		<description><![CDATA[The standard WordPress installation has a problem I consider a big security threat: by default, anyone can have a list of all the plugins (and see their version) installed in the system.
I fixed this problem on my blog a few months ago when I discovered it, but 2 days ago I saw a page talking [...]]]></description>
			<content:encoded><![CDATA[<p>The standard WordPress installation has a problem I consider a big security threat: by default, <strong>anyone</strong> can have a <strong>list of all the plugins</strong> (and see their version) installed in the system.</p>
<p>I fixed this problem on my blog a few months ago when I discovered it, but 2 days ago I saw a page talking about this and I tried <a href="http://www.google.com/search?hl=en&amp;safe=off&amp;q=Index+of+%2Fwp-content%2Fplugins&amp;btnG=Search">this Google query</a>.. it&#8217;s incredible to see how many blogs on the Web suffer this issue.</p>
<p>The <strong>solution</strong> to this problem is rather simple: all you have to do to <strong>stop showing the world how to hack your site</strong> is putting an empty file called index.html in the wp-content/plugins directory.</p>
<p>Looking at the SERPs, It&#8217;s not a surprise to see blogs such as FreeRangeLibrarian or Speed of Creativity, because they&#8217;re not technical blog.. but it&#8217;s a <strong>BIG SURPRISE</strong> to see the <strong>Blog Herald</strong> listed in the first positions..</p>
<p><img class="alignnone size-full wp-image-141" title="blog-herald" src="http://www.copesflavio.com/en/blog/wp-content/uploads/2008/05/blog-herald.jpg" alt="The Blog Herald plugin directory" width="300" height="157" /></p>
<p>For those who don&#8217;t know it, <a href="http://www.blogherald.com/">Blog Herald</a> is a big network blog that publishes posts from many important bloggers, such as <a href="http://www.chrisg.com/">Chris Garrett</a> and <a href="http://lorelle.wordpress.com/">Lorelle Van Fossen</a>.</p>
<p>I thought about this a lot, and I concluded that listing the version of the plugins installed on your system is <strong>a good idea</strong> and it improves security, don&#8217;t you think? Otherwise, why a blog such as that, that talks about blogging, security and so on all day.. would make <strong>life easier</strong> for hackers?</p>
<p>(Irony, of course)</p>

	Tags: <a href="http://www.copesflavio.com/en/blog/tag/security/" title="Security" rel="tag">Security</a>, <a href="http://www.copesflavio.com/en/blog/tag/wordpress/" title="Wordpress" rel="tag">Wordpress</a>, <a href="http://www.copesflavio.com/en/blog/tag/wordpress-security/" title="WordPress Security" rel="tag">WordPress Security</a><br />
]]></content:encoded>
			<wfw:commentRss>http://www.copesflavio.com/en/blog/cms/joomla/one-of-the-worst-wordpress-security-threats-still-alive/feed/</wfw:commentRss>
		</item>
	</channel>
</rss>
