PHPIDS - get it!

WPIDS version 0.1.2 released

Article written by philipp

This plug-in is hopelessly outdated and not being maintained by the author anymore. Please do not use this plug-in but only the native version of the PHPIDS. Thank you.

We are pleased to announce the long overdue new WPIDS release. This package is supposed to be a bug-fix release, since several problems were reported and have been wiped out. Here’s a small list of the most important issues:

  • In previous versions XML-RPC was blocked completely, now you have a option to enable/disable it
  • The search now works for non English chars. Before the fix all non English characters where dropped
  • A bug within the logging facility caused it that all logged entries were added with a lower impact than supposed to be

Of course this version ships with the latest PHPIDS version which is currently 0.4.7. Anyway they’re still lots of work to do. For example the login page is displayed with some error/warning message. Also it turned out to not be very wise to check on the HTTP_REFERER since it throws too many false alerts.

Since the mentioned problems don’t affect your site’s security nor work flow, are they planned to resist up to the next bigger release. The next release is planned to be the Version 0.2 of WPIDS, which will be completely rewritten. Some features of Lockdown – the embedded sister project – will be kept and will be manages as opt out. Furthermore Version 0.2 will come with more granular maintenance and configuration options.

The download is available as Full Package, or you can get it from the SVN.

13 Responses to “WPIDS version 0.1.2 released”

  1. BlogSecurity » Blog Archive » WPIDS v0.1.2 officially released Says:

    [...] original release is available at phpids.org, a Full Package is ready for Download, or you can get your latest Copy from the Subversion. [...]

  2. WPIDS v0.1.2 released | PhSoftware Programming Blog - PSPB Says:

    [...] you surely recognized from php-ids.org and BlogSecurity.net already I made a new release of WPIDS. This release fixes several problems [...]

  3. Hypotheek Says:

    Nice article philipp! Security is important for me, so i read it all, keep it coming! Regards, aislin

  4. Securing your Wordpress Blog from Intruders… | Les Aventures de Techiemaque... Says:

    [...] my Wordpress Blog from such attempts in the future and after a lot of trial and error i settled on WPIDS. It is based on the PHPIDS (PHP Intrusion Detection) Library and works on a set of regularly [...]

  5. .mario Says:

    Please note that the WPIDS 0.1.2 – the latest version – is hopelessly outdated and should not be used at all. Please stick to the PHPIDS and not to badly maintained extensions for working site security.

    Greetings,
    .mario

  6. Hypotheekrente Says:

    @mario, thanks for the notice!

  7. 20 Ultimate Wordpress Plugins - Čolović Vladan Says:

    [...] for your PHP based web application. I found two implementation of it, neither final and stable: WPIDS, and PHPIDS for [...]

  8. Lenen met BKR Says:

    Great. Is this still the current version or are there updates available since the release?

  9. .mario Says:

    Hi, no no – this version is totally outdated and we don’t support the WPIDS any longer since the author didn’t keep track with the upgrades. Please don’t use the WPIDS but just the official PHPIDS.

    Greetings,
    .mario

  10. bedrijfspand Says:

    I use the full package since the release. No problems at all, and very stabable. Recommended! greetz, Bram

  11. hypotheekrente Says:

    Thanks….. Greetz Robert

  12. WordPress 2.8 以前には思ったより危険なセキュリティホールが - Nire.Com Says:

    [...] WPIDS のセキュリティ設定を変更することができる [...]

  13. Il blog di Andrea Barbaglia − Vulnerabilità versione in uso di Wordpress Says:

    [...] Counter http://wordpress.org/download/counter/ [10] WordPress Intrusion Detection System Plugin http://php-ids.org/2008/02/21/wpids-version-012-released/ [11] Hardening WordPress with htaccess http://blogsecurity.net/wordpress/article-210607 11. About [...]

Leave a Reply