Problems at Wordpress could mean malicious plugins - while Dropbox admits it failed to enforce passwords for logins for four hours on Tuesday.

Dory Carr-Harris, PSFK
  • 23 june 2011

Powered by
This article titled “ plugins hacked, Dropbox lets its passwords down” was written by Charles Arthur, for on Wednesday 22nd June 2011 17.03 UTC

From the (that is, the code development site, not the blog hosting site, which is

Earlier today the WordPress team noticed suspicious commits to several popular plugins (AddThis, WPtouch, and W3 Total Cache) containing cleverly disguised backdoors. We determined the commits were not from the authors, rolled them back, pushed updates to the plugins, and shut down access to the plugin repository while we looked for anything else unsavory.

We’re still investigating what happened, but as a prophylactic measure we’ve decided to force-reset all passwords on To use the forums, trac, or commit to a plugin or theme, you’ll need to reset your password to a new one. (Same for and

They also offer standard good advice:

As a user, make sure to never use the same password for two different services, and we encourage you not to reset your password to be the same as your old one.

Second, if you use AddThis, WPtouch, or W3 Total Cache and there’s a possibility you could have updated in the past day, make sure to visit your updates page and upgrade each to the latest version.

WordPress has had similar problems in the past, including an occasion when a fake “new” version was rolled out with a backdoor in it.

Meanwhile Dropbox, the digital locker service, has had to face the fact that it broke its own authentication system for four hours on Tuesday – which meant that anyone could log in to anyone else’s account. Dropbox says that it thinks only 1% of people logged into accounts in that time, though of course it doesn’t know if they were the ones who were meant to log in to them.

Many people might say “no harm done – all that’s happened is that someone might stick some files in your Dropbox.” Yes, or read them. Or, as someone suggested, stick a malware-infected file in. It’s a bad lapse for Dropbox. There’s enough hacking going on as it is without this. © Guardian News & Media Limited 2010

Published via the Guardian News Feed plugin for WordPress.


Fitness Advocate: Paving The Future of Workouts With Audio

Fitness & Sport
Brand Development Today

Swipe Left On A Dating World Built To Keep You Single And Disconnected

Hinge's VP of Marketing Karen Fein tells us about the service's daring ditch of the swiping culture that's designed to attract advertising revenue, not meaningful connections

Arts & Culture Today

Marvel Comic Tells The Story Of A Heroic Syrian Mother

Madaya Mom is the true tale of a family trapped inside a town for over a year


Get PSFK's Related Report: Future of Automotive

See All
Retail Today

Brooklyn Cafe Lets Customers Pay By The Hour, Not By The Cup

Glasshour is an establishment that provides free coffee and pastries and charges for the time guests spend there

Technology Today

Electric Spoon Changes The Way Food Tastes

The Taste Buddy is being developed to manipulate your taste buds and make everything more delicious

Travel Today

Bike Path In Poland Can Glow For 20 Years Using Solar Power

Cyclists can follow the shimmering blue lanes for better safety each time they ride

Technology Today

Open-Source Toolkit Lets Communities Build Their Own Street Furniture

The Wikiblock database contains 30 blueprints of different neighborhood fixtures including benches, bus stops, and kiosks

Food Today

Tiny Pub Only Has Space For Three People

Make Time For It is a small London pop-up bar that encourages conversation without the distraction of technology


Future Of Automotive
Scenarios Driving The Digital Transformation Of An Industry

PSFK Op-Ed Today

Community Builder: How to Hack Slack

Claire Wasserman, Founder of Ladies Get Paid, describes how she's using an internal team communication tool to build a network of thousands

PSFK Labs october 21, 2016

PSFK Picks: Top 5 Performance-Enhancing Wearables

Our new report looks at innovations pioneering the future of performance through intelligent activewear and predictive analytics

Advertising Today

This Beer Was Brewed Just For Scotch Drinkers

Highland Park Scotch Whisky & Sixpoint Brewery have teamed up to create two limited-edition pairings for New York City boilermakers

Mobile Today

Let An AI Librarian Help Sort Your Digital Bookmarks

A new app uses machine learning to help organize your virtual life

Mobile Today

Pizza Hut Tattoo Lets You Place An Order From Your Body

The latest gimmick from the fast-food chain is a tattoo-like sticker that lets customers get delivery with a simple tap on their arm

Travel Today

Reinvented Bicycle Inspired By Supercar Design

The yellow bike based on a Lamborghini has sharp edges and an aluminum alloy frame

Health Today

Health Platform Gives Perspective On Your Weekly Habits

Gyroscope is a new wellness app that works by amalgamating data about your life into beautifully designed visuals

Beauty Today

Korean Beauty Brand Uses VR To Let Customers Pick Their Ingredients

Innisfree created a unique experience for its Shanghai Disneyland customers with a virtual reality trip to select what goes into their purchase

Arts & Culture Today

3D-Printed Creations Resemble Floating Paper Outlines

Japanese design firm Nendo's exhibition features works that look like sheets of material being folded, torn, and crumpled

Technology october 21, 2016

Concept Camera Designed To Only Take Unique Photos

Camera Restricta is tool that prompts photographers to only capture one-of-a-kind images

No search results found.