• 53 Posts
  • 536 Comments
Joined 3 years ago
cake
Cake day: June 2nd, 2023

help-circle
  • The problem is that you also get malware with legit premium plugins. I bought a $59 plugin on codecanyon and my WordPress install was hacked because it had an unpatched bug that allowed anyone to register as admin.

    Did not get any single warning email from codecanyon or the dev, I just got lucky that the hacker was dumb enough to try to claim my site on Google search console and Google warned me immediately, so I could just revert a backup after understanding what was going on. Luckily, again, the hacker left the hints in the admin panel by uninstalling my “premium” plugin, so I understood that was how he could get inside.

    If it’s a new website, avoid WordPress. It’s a security mess and extremely inefficient. I am burdened by this technical debt, migrating now it’s very time consuming.












  • Italian here: one Saturday I start to get lots of downtime notifications

    I don’t understand what’s happening, because they come and go, I get hundreds of them

    I connect to the server, waste four hours, everything looks ok but pages don’t load? Weird?

    I go to sleep without solving the problem

    The morning everything looks fine, so I can go to my self hosted news reader and I discover in my feeds that the FUCKING soccer league blocked cloudflare “accidentally”

    The best part of our system is that if the block isn’t disputed within a week, then the IP address is permanently banned. Can it be more stupid than that? Do they really think that pirates won’t change their ip address?

    We gave the keys of our internet to two litigious copyright trolls

    And this exclusively harms honest people because pirates just use a VPN. I saw pirate websites that when accessed from an Italian IP address have some legitimate content, need to access from a VPN. So the block is completely useless