<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments for Pixel Bunyip</title>
	<atom:link href="http://pixelbunyip.com/comments/feed" rel="self" type="application/rss+xml" />
	<link>http://pixelbunyip.com</link>
	<description>Celebrating Graphic Mastery</description>
	<lastBuildDate>Thu, 17 May 2012 18:41:59 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.1</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>Comment on How do I deactivate or remove my current Wordpress theme? by Salomon</title>
		<link>http://pixelbunyip.com/wordpress-theme/how-do-i-deactivate-or-remove-my-current-wordpress-theme-2/comment-page-1#comment-56174</link>
		<dc:creator>Salomon</dc:creator>
		<pubDate>Thu, 17 May 2012 18:41:59 +0000</pubDate>
		<guid isPermaLink="false">http://pixelbunyip.com/wordpress-theme/how-do-i-deactivate-or-remove-my-current-wordpress-theme-2#comment-56174</guid>
		<description>In order to remove the theme using ftp, in your Wordpress installation folder, browse to wp-content/themes and remove the folder of the theme you are wishing to remove.

In future to smoothly install your blog, use FreeWPInstaller.com

Cheers&lt;br&gt;&lt;b&gt;References : &lt;/b&gt;&lt;br&gt;http://www.freewpinstaller.com</description>
		<content:encoded><![CDATA[<p>In order to remove the theme using ftp, in your Wordpress installation folder, browse to wp-content/themes and remove the folder of the theme you are wishing to remove.</p>
<p>In future to smoothly install your blog, use FreeWPInstaller.com</p>
<p>Cheers<br /><b>References : </b><br /><a href="http://www.freewpinstaller.com" rel="nofollow">http://www.freewpinstaller.com</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on How do I deactivate or remove my current Wordpress theme? by Divine.project.team</title>
		<link>http://pixelbunyip.com/wordpress-theme/how-do-i-deactivate-or-remove-my-current-wordpress-theme-2/comment-page-1#comment-56173</link>
		<dc:creator>Divine.project.team</dc:creator>
		<pubDate>Thu, 17 May 2012 17:55:59 +0000</pubDate>
		<guid isPermaLink="false">http://pixelbunyip.com/wordpress-theme/how-do-i-deactivate-or-remove-my-current-wordpress-theme-2#comment-56173</guid>
		<description>To do it via FTP, you must connect to the FTP server, where your theme is located. Find your theme folder (usually it is \wp-content\themes) and remove/rename it. Pretty simple)

By the way, you can always create your own Wordpress theme with Divine Elemente.&lt;br&gt;&lt;b&gt;References : &lt;/b&gt;&lt;br&gt;http://www.divine-project.com/</description>
		<content:encoded><![CDATA[<p>To do it via FTP, you must connect to the FTP server, where your theme is located. Find your theme folder (usually it is \wp-content\themes) and remove/rename it. Pretty simple)</p>
<p>By the way, you can always create your own Wordpress theme with Divine Elemente.<br /><b>References : </b><br /><a href="http://www.divine-project.com/" rel="nofollow">http://www.divine-project.com/</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on How do I deactivate or remove my current Wordpress theme? by Tim</title>
		<link>http://pixelbunyip.com/wordpress-theme/how-do-i-deactivate-or-remove-my-current-wordpress-theme-2/comment-page-1#comment-56172</link>
		<dc:creator>Tim</dc:creator>
		<pubDate>Thu, 17 May 2012 17:12:59 +0000</pubDate>
		<guid isPermaLink="false">http://pixelbunyip.com/wordpress-theme/how-do-i-deactivate-or-remove-my-current-wordpress-theme-2#comment-56172</guid>
		<description>There&#039;s two ways to change the theme of a wordpress.org site. Either you can log into your dahsboard, go to Appearance, and choose another theme and activate it OR you can go into your website via FTP and rename the current themes folder. This will force WordPress to use the default theme for your installation. I hope this helps!&lt;br&gt;&lt;b&gt;References : &lt;/b&gt;&lt;br&gt;</description>
		<content:encoded><![CDATA[<p>There&#8217;s two ways to change the theme of a wordpress.org site. Either you can log into your dahsboard, go to Appearance, and choose another theme and activate it OR you can go into your website via FTP and rename the current themes folder. This will force WordPress to use the default theme for your installation. I hope this helps!<br /><b>References : </b></p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on TimThumbCraft &#8211; Wordpress Theme Vulnerability by Kidde15</title>
		<link>http://pixelbunyip.com/wordpress-theme/timthumbcraft-wordpress-theme-vulnerability/comment-page-1#comment-56186</link>
		<dc:creator>Kidde15</dc:creator>
		<pubDate>Thu, 17 May 2012 14:34:12 +0000</pubDate>
		<guid isPermaLink="false">http://pixelbunyip.com/wordpress-theme/timthumbcraft-wordpress-theme-vulnerability#comment-56186</guid>
		<description>&lt;b&gt;DnB!﻿&lt;/b&gt; &lt;br&gt; DnB!﻿</description>
		<content:encoded><![CDATA[<p><b>DnB!﻿</b> <br /> DnB!﻿</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on TimThumbCraft &#8211; Wordpress Theme Vulnerability by maxel3g3nd</title>
		<link>http://pixelbunyip.com/wordpress-theme/timthumbcraft-wordpress-theme-vulnerability/comment-page-1#comment-56185</link>
		<dc:creator>maxel3g3nd</dc:creator>
		<pubDate>Thu, 17 May 2012 14:33:56 +0000</pubDate>
		<guid isPermaLink="false">http://pixelbunyip.com/wordpress-theme/timthumbcraft-wordpress-theme-vulnerability#comment-56185</guid>
		<description>&lt;b&gt;Python. If you need ...&lt;/b&gt; &lt;br&gt; Python. If you need any further help, I suggest you start with the basics, before diving into more advanced exploits like this, where﻿ you need to know how it works and why.</description>
		<content:encoded><![CDATA[<p><b>Python. If you need &#8230;</b> <br /> Python. If you need any further help, I suggest you start with the basics, before diving into more advanced exploits like this, where﻿ you need to know how it works and why.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on TimThumbCraft &#8211; Wordpress Theme Vulnerability by MrMacpluto</title>
		<link>http://pixelbunyip.com/wordpress-theme/timthumbcraft-wordpress-theme-vulnerability/comment-page-1#comment-56184</link>
		<dc:creator>MrMacpluto</dc:creator>
		<pubDate>Thu, 17 May 2012 14:33:37 +0000</pubDate>
		<guid isPermaLink="false">http://pixelbunyip.com/wordpress-theme/timthumbcraft-wordpress-theme-vulnerability#comment-56184</guid>
		<description>&lt;b&gt;maxe is real legend ...&lt;/b&gt; &lt;br&gt; maxe is real legend. you are my idol﻿ dude.</description>
		<content:encoded><![CDATA[<p><b>maxe is real legend &#8230;</b> <br /> maxe is real legend. you are my idol﻿ dude.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on TimThumbCraft &#8211; Wordpress Theme Vulnerability by nknicracker</title>
		<link>http://pixelbunyip.com/wordpress-theme/timthumbcraft-wordpress-theme-vulnerability/comment-page-1#comment-56183</link>
		<dc:creator>nknicracker</dc:creator>
		<pubDate>Thu, 17 May 2012 14:33:14 +0000</pubDate>
		<guid isPermaLink="false">http://pixelbunyip.com/wordpress-theme/timthumbcraft-wordpress-theme-vulnerability#comment-56183</guid>
		<description>&lt;b&gt;i have an error in ...&lt;/b&gt; &lt;br&gt; i have an error in a real case:

remote host &quot;xxx. xxx . com&quot; not allowed
Query﻿ String : src= xxx . xxx . com / test.php
TimThumb version : 1.19</description>
		<content:encoded><![CDATA[<p><b>i have an error in &#8230;</b> <br /> i have an error in a real case:</p>
<p>remote host &#8220;xxx. xxx . com&#8221; not allowed<br />
Query﻿ String : src= xxx . xxx . com / test.php<br />
TimThumb version : 1.19</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on TimThumbCraft &#8211; Wordpress Theme Vulnerability by maxel3g3nd</title>
		<link>http://pixelbunyip.com/wordpress-theme/timthumbcraft-wordpress-theme-vulnerability/comment-page-1#comment-56182</link>
		<dc:creator>maxel3g3nd</dc:creator>
		<pubDate>Thu, 17 May 2012 14:33:08 +0000</pubDate>
		<guid isPermaLink="false">http://pixelbunyip.com/wordpress-theme/timthumbcraft-wordpress-theme-vulnerability#comment-56182</guid>
		<description>&lt;b&gt;In this real case, ...&lt;/b&gt; &lt;br&gt; In this real case, you haven&#039;t fully understood how this exploit works. The video is simply a short demonstration of the exploit, not a﻿ complete tutorial as some things, has been left out for you to discover.

First, I recommend you read the entire blog entry at Exploit-DB. Then read the PoC (which is also located at Exploit-DB).

Then you need to understand, that the PHP file on your server, is executed as PHP, and not shown as raw text which it also has to be.</description>
		<content:encoded><![CDATA[<p><b>In this real case, &#8230;</b> <br /> In this real case, you haven&#8217;t fully understood how this exploit works. The video is simply a short demonstration of the exploit, not a﻿ complete tutorial as some things, has been left out for you to discover.</p>
<p>First, I recommend you read the entire blog entry at Exploit-DB. Then read the PoC (which is also located at Exploit-DB).</p>
<p>Then you need to understand, that the PHP file on your server, is executed as PHP, and not shown as raw text which it also has to be.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on TimThumbCraft &#8211; Wordpress Theme Vulnerability by maxel3g3nd</title>
		<link>http://pixelbunyip.com/wordpress-theme/timthumbcraft-wordpress-theme-vulnerability/comment-page-1#comment-56181</link>
		<dc:creator>maxel3g3nd</dc:creator>
		<pubDate>Thu, 17 May 2012 14:32:57 +0000</pubDate>
		<guid isPermaLink="false">http://pixelbunyip.com/wordpress-theme/timthumbcraft-wordpress-theme-vulnerability#comment-56181</guid>
		<description>&lt;b&gt;When you&#039;ve ...&lt;/b&gt; &lt;br&gt; When you&#039;ve realized all this,﻿ you also need to understand, that the webmaster of your target, could easily open timthumb.php, and remove all externally allowed websites, or for that sake, patch it manually. This is why you always test advanced exploits like this locally, before you even attempt to do it on any remote targets (legally AND ethically).

There are also WAF&#039;s (Web Application Firewalls), SPI Firewalls, etc. which can prohibit the exploit from working. 

Enjoy! ;-)</description>
		<content:encoded><![CDATA[<p><b>When you&#8217;ve &#8230;</b> <br /> When you&#8217;ve realized all this,﻿ you also need to understand, that the webmaster of your target, could easily open timthumb.php, and remove all externally allowed websites, or for that sake, patch it manually. This is why you always test advanced exploits like this locally, before you even attempt to do it on any remote targets (legally AND ethically).</p>
<p>There are also WAF&#8217;s (Web Application Firewalls), SPI Firewalls, etc. which can prohibit the exploit from working. </p>
<p>Enjoy! <img src='http://pixelbunyip.com/wp-includes/images/smilies/icon_wink.gif' alt=';-)' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on TimThumbCraft &#8211; Wordpress Theme Vulnerability by nknicracker</title>
		<link>http://pixelbunyip.com/wordpress-theme/timthumbcraft-wordpress-theme-vulnerability/comment-page-1#comment-56180</link>
		<dc:creator>nknicracker</dc:creator>
		<pubDate>Thu, 17 May 2012 14:32:53 +0000</pubDate>
		<guid isPermaLink="false">http://pixelbunyip.com/wordpress-theme/timthumbcraft-wordpress-theme-vulnerability#comment-56180</guid>
		<description>&lt;b&gt;Yes,﻿ is the ...&lt;/b&gt; &lt;br&gt; Yes,﻿ is the Firewall Problem, because the .htaccess is correctly: AddType text/plain .php   :) thx maxel</description>
		<content:encoded><![CDATA[<p><b>Yes,﻿ is the &#8230;</b> <br /> Yes,﻿ is the Firewall Problem, because the .htaccess is correctly: AddType text/plain .php   <img src='http://pixelbunyip.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' />  thx maxel</p>
]]></content:encoded>
	</item>
</channel>
</rss>

