Secure File Permissions Matter
Tuesday, April 13th, 2010Summary: A web host had a crappy server configuration that allowed people on the same box to read each others’ configuration files, and some members of the “security” press have tried to turn this into a “WordPress vulnerability” story. WordPress, like all other web applications, must store database connection info in clear text. Encrypting credentials [...]