<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	>
<channel>
	<title>Comments on: Plugins&#8230;..</title>
	<atom:link href="http://www.tamba2.org.uk/T2/2006/09/23/plugins-2/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.tamba2.org.uk/T2/2006/09/23/plugins-2/</link>
	<description>Eclectic.</description>
	<pubDate>Thu, 08 Jan 2009 12:51:21 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.7</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: WordPress Plugin Security: Dangerous Combinations &#124; Technosailor.com</title>
		<link>http://www.tamba2.org.uk/T2/2006/09/23/plugins-2/comment-page-1/#comment-248917</link>
		<dc:creator>WordPress Plugin Security: Dangerous Combinations &#124; Technosailor.com</dc:creator>
		<pubDate>Sat, 29 Nov 2008 20:14:52 +0000</pubDate>
		<guid isPermaLink="false">http://www.tamba2.org.uk/T2/archives/2006/09/23/plugins-2/#comment-248917</guid>
		<description>[...] What is a dangerous combination? [...]</description>
		<content:encoded><![CDATA[<p>[...] What is a dangerous combination? [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: WordPress Plugin Security: What is Dangerous? &#124; Technosailor.com</title>
		<link>http://www.tamba2.org.uk/T2/2006/09/23/plugins-2/comment-page-1/#comment-248915</link>
		<dc:creator>WordPress Plugin Security: What is Dangerous? &#124; Technosailor.com</dc:creator>
		<pubDate>Sat, 29 Nov 2008 20:02:45 +0000</pubDate>
		<guid isPermaLink="false">http://www.tamba2.org.uk/T2/archives/2006/09/23/plugins-2/#comment-248915</guid>
		<description>[...] WordPress support maven, Podz, asks on his blog, &#8220;What is Dangerous?&#8221; [...]</description>
		<content:encoded><![CDATA[<p>[...] WordPress support maven, Podz, asks on his blog, &#8220;What is Dangerous?&#8221; [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: WordPress Plugin Security: Less is More &#187; Technology, Blogging and New Media</title>
		<link>http://www.tamba2.org.uk/T2/2006/09/23/plugins-2/comment-page-1/#comment-156428</link>
		<dc:creator>WordPress Plugin Security: Less is More &#187; Technology, Blogging and New Media</dc:creator>
		<pubDate>Mon, 23 Apr 2007 04:04:59 +0000</pubDate>
		<guid isPermaLink="false">http://www.tamba2.org.uk/T2/archives/2006/09/23/plugins-2/#comment-156428</guid>
		<description>[...] diverge off the mapped out route and organically grow this series a little more. Hopefully it suits Mark and WordPress users everywhere. To reiterate, this series is designed for the non-developer, the [...]</description>
		<content:encoded><![CDATA[<p>[...] diverge off the mapped out route and organically grow this series a little more. Hopefully it suits Mark and WordPress users everywhere. To reiterate, this series is designed for the non-developer, the [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: WordPress Plugin Security: Less is More &#187; Technology, Blogging and New Media</title>
		<link>http://www.tamba2.org.uk/T2/2006/09/23/plugins-2/comment-page-1/#comment-28749</link>
		<dc:creator>WordPress Plugin Security: Less is More &#187; Technology, Blogging and New Media</dc:creator>
		<pubDate>Thu, 12 Oct 2006 17:57:16 +0000</pubDate>
		<guid isPermaLink="false">http://www.tamba2.org.uk/T2/archives/2006/09/23/plugins-2/#comment-28749</guid>
		<description>[...] As I continue in my ongoing series on plugin security for WordPress, I&#8217;m going to diverge off the mapped out route and organically grow this series a little more. Hopefully it suits Mark and WordPress users everywhere. To reiterate, this series is designed for the non-developer, the &#8220;average guy&#8221; so to speak. Security is a mystifying area but it requires a good bit of demystifying. [...]</description>
		<content:encoded><![CDATA[<p>[...] As I continue in my ongoing series on plugin security for WordPress, I&#8217;m going to diverge off the mapped out route and organically grow this series a little more. Hopefully it suits Mark and WordPress users everywhere. To reiterate, this series is designed for the non-developer, the &#8220;average guy&#8221; so to speak. Security is a mystifying area but it requires a good bit of demystifying. [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: WordPress Plugin Security: Dangerous Combinations &#187; Technology, Blogging and New Media</title>
		<link>http://www.tamba2.org.uk/T2/2006/09/23/plugins-2/comment-page-1/#comment-28490</link>
		<dc:creator>WordPress Plugin Security: Dangerous Combinations &#187; Technology, Blogging and New Media</dc:creator>
		<pubDate>Wed, 11 Oct 2006 03:17:42 +0000</pubDate>
		<guid isPermaLink="false">http://www.tamba2.org.uk/T2/archives/2006/09/23/plugins-2/#comment-28490</guid>
		<description>[...] What is a dangerous combination? [...]</description>
		<content:encoded><![CDATA[<p>[...] What is a dangerous combination? [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: WordPress Plugin Security: What is Dangerous? &#187; Technology, Blogging and New Media</title>
		<link>http://www.tamba2.org.uk/T2/2006/09/23/plugins-2/comment-page-1/#comment-26455</link>
		<dc:creator>WordPress Plugin Security: What is Dangerous? &#187; Technology, Blogging and New Media</dc:creator>
		<pubDate>Thu, 28 Sep 2006 16:06:31 +0000</pubDate>
		<guid isPermaLink="false">http://www.tamba2.org.uk/T2/archives/2006/09/23/plugins-2/#comment-26455</guid>
		<description>[...] WordPress support maven, Mark, asks on his blog, &#8220;What is Dangerous?&#8221; [...]</description>
		<content:encoded><![CDATA[<p>[...] WordPress support maven, Mark, asks on his blog, &#8220;What is Dangerous?&#8221; [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Mark</title>
		<link>http://www.tamba2.org.uk/T2/2006/09/23/plugins-2/comment-page-1/#comment-25836</link>
		<dc:creator>Mark</dc:creator>
		<pubDate>Mon, 25 Sep 2006 08:54:26 +0000</pubDate>
		<guid isPermaLink="false">http://www.tamba2.org.uk/T2/archives/2006/09/23/plugins-2/#comment-25836</guid>
		<description>aJ - I have no problem with the core code. Never have. I have no particular problem with plugins either. I made the above post in response to a quote on Technosailor's blog and it was directed very carefully at "those that code". Notice how so far only Technosailor has taken up the challenge....

Skippy has one point, Matt has another and I think all hosts should allow cron jobs. Any plugin that requires regular user action will fail that user at some point - people just do not take enough backups. That's not a plugin fault, it's inertia and yes it applies to the new xml feature too.

Like I said though I do not have a problem with code code - there are too many people picking holes. You want to have a pop about this? Go poke the guy who called it a 'security nightmare' - I have dozens on people who call on me for services and skippy's plugin has never been an issue.

As for the change? Like Matt says it will happen again with something and the forums will still recommend it.</description>
		<content:encoded><![CDATA[<p>aJ - I have no problem with the core code. Never have. I have no particular problem with plugins either. I made the above post in response to a quote on Technosailor&#8217;s blog and it was directed very carefully at &#8220;those that code&#8221;. Notice how so far only Technosailor has taken up the challenge&#8230;.</p>
<p>Skippy has one point, Matt has another and I think all hosts should allow cron jobs. Any plugin that requires regular user action will fail that user at some point - people just do not take enough backups. That&#8217;s not a plugin fault, it&#8217;s inertia and yes it applies to the new xml feature too.</p>
<p>Like I said though I do not have a problem with code code - there are too many people picking holes. You want to have a pop about this? Go poke the guy who called it a &#8217;security nightmare&#8217; - I have dozens on people who call on me for services and skippy&#8217;s plugin has never been an issue.</p>
<p>As for the change? Like Matt says it will happen again with something and the forums will still recommend it.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: aJ</title>
		<link>http://www.tamba2.org.uk/T2/2006/09/23/plugins-2/comment-page-1/#comment-25834</link>
		<dc:creator>aJ</dc:creator>
		<pubDate>Mon, 25 Sep 2006 08:33:38 +0000</pubDate>
		<guid isPermaLink="false">http://www.tamba2.org.uk/T2/archives/2006/09/23/plugins-2/#comment-25834</guid>
		<description>&lt;a href="http://www.skippy.net/blog/2006/09/24/autocrattic/" rel="nofollow"&gt;Followup&lt;/a&gt; to the above trac ticket. I think Skippy makes a very fair point.

Ps. I am in no way associated with Skippy except a very pleased and thankful user of his excellent plugin.</description>
		<content:encoded><![CDATA[<p><a href="http://www.skippy.net/blog/2006/09/24/autocrattic/" rel="nofollow">Followup</a> to the above trac ticket. I think Skippy makes a very fair point.</p>
<p>Ps. I am in no way associated with Skippy except a very pleased and thankful user of his excellent plugin.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: aJ</title>
		<link>http://www.tamba2.org.uk/T2/2006/09/23/plugins-2/comment-page-1/#comment-25833</link>
		<dc:creator>aJ</dc:creator>
		<pubDate>Mon, 25 Sep 2006 08:31:50 +0000</pubDate>
		<guid isPermaLink="false">http://www.tamba2.org.uk/T2/archives/2006/09/23/plugins-2/#comment-25833</guid>
		<description>&lt;a&gt;This&lt;/a&gt; is a perfect example of what your post asks people not do. Your post is excellent and the questions are very relevant for people not involved in the development effort.

And the above comment, coming from Matt is even worse since he is the administrator/creator/ or WP and he should be more responsible especially after making WP a community effort.. Such attitude sucks and will turn off potential plugin writers :(</description>
		<content:encoded><![CDATA[<p><a>This</a> is a perfect example of what your post asks people not do. Your post is excellent and the questions are very relevant for people not involved in the development effort.</p>
<p>And the above comment, coming from Matt is even worse since he is the administrator/creator/ or WP and he should be more responsible especially after making WP a community effort.. Such attitude sucks and will turn off potential plugin writers :(</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Understanding Implications of WordPress Plugin Security &#187; Technology, Blogging and New Media</title>
		<link>http://www.tamba2.org.uk/T2/2006/09/23/plugins-2/comment-page-1/#comment-25575</link>
		<dc:creator>Understanding Implications of WordPress Plugin Security &#187; Technology, Blogging and New Media</dc:creator>
		<pubDate>Sat, 23 Sep 2006 17:18:18 +0000</pubDate>
		<guid isPermaLink="false">http://www.tamba2.org.uk/T2/archives/2006/09/23/plugins-2/#comment-25575</guid>
		<description>[...] Yesterday, I posted details about a cross-site scripting (XSS) exploit in a popular WordPress plugin which prompted Mark, support maven for WordPress to challenge the WordPress development community to contribute back to the community by detailing what makes plugins unsafe. [...]</description>
		<content:encoded><![CDATA[<p>[...] Yesterday, I posted details about a cross-site scripting (XSS) exploit in a popular WordPress plugin which prompted Mark, support maven for WordPress to challenge the WordPress development community to contribute back to the community by detailing what makes plugins unsafe. [...]</p>
]]></content:encoded>
	</item>
</channel>
</rss>
