<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Danilo apologizes for writing the 2nd post on AG that hammers REALTOR.com&#8230;</title>
	<atom:link href="http://4realz.net/2008/06/danilo-apologizes-for-writing-the-2nd-post-on-ag-that-hammers-realtorcom/feed/" rel="self" type="application/rss+xml" />
	<link>http://4realz.net/2008/06/danilo-apologizes-for-writing-the-2nd-post-on-ag-that-hammers-realtorcom/</link>
	<description>Authentic Real Estate and Internet Marketing Conversations</description>
	<lastBuildDate>Thu, 18 Mar 2010 21:12:22 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: Kevin Tomlinson</title>
		<link>http://4realz.net/2008/06/danilo-apologizes-for-writing-the-2nd-post-on-ag-that-hammers-realtorcom/#comment-2211</link>
		<dc:creator>Kevin Tomlinson</dc:creator>
		<pubDate>Tue, 24 Jun 2008 00:21:26 +0000</pubDate>
		<guid isPermaLink="false">http://4realz.wordpress.com/?p=713#comment-2211</guid>
		<description>I love Vicodin.

Please send.

I want---more than real estate, anyway.</description>
		<content:encoded><![CDATA[<p>I love Vicodin.</p>
<p>Please send.</p>
<p>I want&#8212;more than real estate, anyway.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Dustin</title>
		<link>http://4realz.net/2008/06/danilo-apologizes-for-writing-the-2nd-post-on-ag-that-hammers-realtorcom/#comment-2213</link>
		<dc:creator>Dustin</dc:creator>
		<pubDate>Sat, 21 Jun 2008 17:52:27 +0000</pubDate>
		<guid isPermaLink="false">http://4realz.wordpress.com/?p=713#comment-2213</guid>
		<description>Trace and Benn,

You guys are both hitting the right questions and, while I know the answers to some of the issues, I&#039;m honestly not sure what is appropriate to make public, so I&#039;m being quiet in terms of the actual technologies being used by the various domains... other than to say it is definitely a wordpress backend since I made that public on numerous occasions when I worked at Move (and helped design the original implementation of the platform).   Nonetheless, the questions you both are raising are extremely valid and, in my opinion, deserve answers.</description>
		<content:encoded><![CDATA[<p>Trace and Benn,</p>
<p>You guys are both hitting the right questions and, while I know the answers to some of the issues, I&#8217;m honestly not sure what is appropriate to make public, so I&#8217;m being quiet in terms of the actual technologies being used by the various domains&#8230; other than to say it is definitely a wordpress backend since I made that public on numerous occasions when I worked at Move (and helped design the original implementation of the platform).   Nonetheless, the questions you both are raising are extremely valid and, in my opinion, deserve answers.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Benn</title>
		<link>http://4realz.net/2008/06/danilo-apologizes-for-writing-the-2nd-post-on-ag-that-hammers-realtorcom/#comment-2212</link>
		<dc:creator>Benn</dc:creator>
		<pubDate>Sat, 21 Jun 2008 17:37:54 +0000</pubDate>
		<guid isPermaLink="false">http://4realz.wordpress.com/?p=713#comment-2212</guid>
		<description>&quot;@Benn: talk.realtor.com is based on WordPress MU. To clarify, the the Realtor.com blog was hacked…. talk.realtor.com, sorry if that was not clear. There were multiple posts that were affected…. and have since been removed.&quot;

:)

&quot;There was spam injected into posts, this could be from caused by many things, all of which we are forced to speculate about…. was the server breached? was it a faulty plugin? was personal data compromised? That’s the point….&quot;

We 1000% agree here and I wish we knew more because the problem they are facing, we&#039;re all exposed too as well - as we all use the same engine.

&quot;is a responsibility to keep the community informed…. it’s good for both parties.&quot;

I do not have an account with talk.realtor.com to write on this blog nor does it appear any other agents do either- I could be missing something here, but here is why I see a problem:

talk.realtor.com is a directory (where the breaches took place) that has closed comments and does not appear to actually host contributors- it simply links out to:

*.featuredblog.com

so talk.realtor.com allows you to feedreader all of the content on a dialy basis writen on each individual featuredblog.com accounts and is actually a pretty neat form of daily directory of posts - this was compromised, and there are no outside user accounts- which from a security standpoint makes sense.

*.featuredblog.com/ appears to be subdomained user accounts hosted seperately from one another- non-multi-user, which would mean nothing has been exposed?

So, if anything, they could communicate with us what engine they&#039;re running and a fix they dream up for the the problem on talk.realtor.com , but it appears to me that the priority data to protect is fine on individual.featuredblog.com?</description>
		<content:encoded><![CDATA[<p>&#8220;@Benn: talk.realtor.com is based on WordPress MU. To clarify, the the Realtor.com blog was hacked…. talk.realtor.com, sorry if that was not clear. There were multiple posts that were affected…. and have since been removed.&#8221;<br />
 <img src='http://4realz.net/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
<p>&#8220;There was spam injected into posts, this could be from caused by many things, all of which we are forced to speculate about…. was the server breached? was it a faulty plugin? was personal data compromised? That’s the point….&#8221;</p>
<p>We 1000% agree here and I wish we knew more because the problem they are facing, we&#8217;re all exposed too as well &#8211; as we all use the same engine.</p>
<p>&#8220;is a responsibility to keep the community informed…. it’s good for both parties.&#8221;</p>
<p>I do not have an account with talk.realtor.com to write on this blog nor does it appear any other agents do either- I could be missing something here, but here is why I see a problem:</p>
<p>talk.realtor.com is a directory (where the breaches took place) that has closed comments and does not appear to actually host contributors- it simply links out to:</p>
<p>*.featuredblog.com</p>
<p>so talk.realtor.com allows you to feedreader all of the content on a dialy basis writen on each individual featuredblog.com accounts and is actually a pretty neat form of daily directory of posts &#8211; this was compromised, and there are no outside user accounts- which from a security standpoint makes sense.</p>
<p>*.featuredblog.com/ appears to be subdomained user accounts hosted seperately from one another- non-multi-user, which would mean nothing has been exposed?</p>
<p>So, if anything, they could communicate with us what engine they&#8217;re running and a fix they dream up for the the problem on talk.realtor.com , but it appears to me that the priority data to protect is fine on individual.featuredblog.com?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Trace</title>
		<link>http://4realz.net/2008/06/danilo-apologizes-for-writing-the-2nd-post-on-ag-that-hammers-realtorcom/#comment-2210</link>
		<dc:creator>Trace</dc:creator>
		<pubDate>Sat, 21 Jun 2008 05:46:25 +0000</pubDate>
		<guid isPermaLink="false">http://4realz.wordpress.com/?p=713#comment-2210</guid>
		<description>@Benn: talk.realtor.com is based on WordPress MU. To clarify, the the Realtor.com blog was hacked.... talk.realtor.com, sorry if that was not clear. There were multiple posts that were affected.... and have since been removed.

There was spam injected into posts, this could be from caused by many things, all of which we are forced to speculate about.... was the server breached? was it a faulty plugin? was personal data compromised? That&#039;s the point.... we don&#039;t know. whether or not the information that might have been compromised is information like a social or the like is irrelevant.... there is a responsibility in guarding ANY personal data.... and at this point, there may have been no compromised data or extensive data compromised.... nobody knows and that is exactly the point, when something happens there is a responsibility to keep the community informed.... it&#039;s good for both parties.</description>
		<content:encoded><![CDATA[<p>@Benn: talk.realtor.com is based on WordPress MU. To clarify, the the Realtor.com blog was hacked&#8230;. talk.realtor.com, sorry if that was not clear. There were multiple posts that were affected&#8230;. and have since been removed.</p>
<p>There was spam injected into posts, this could be from caused by many things, all of which we are forced to speculate about&#8230;. was the server breached? was it a faulty plugin? was personal data compromised? That&#8217;s the point&#8230;. we don&#8217;t know. whether or not the information that might have been compromised is information like a social or the like is irrelevant&#8230;. there is a responsibility in guarding ANY personal data&#8230;. and at this point, there may have been no compromised data or extensive data compromised&#8230;. nobody knows and that is exactly the point, when something happens there is a responsibility to keep the community informed&#8230;. it&#8217;s good for both parties.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Dustin</title>
		<link>http://4realz.net/2008/06/danilo-apologizes-for-writing-the-2nd-post-on-ag-that-hammers-realtorcom/#comment-2209</link>
		<dc:creator>Dustin</dc:creator>
		<pubDate>Fri, 20 Jun 2008 23:28:25 +0000</pubDate>
		<guid isPermaLink="false">http://4realz.wordpress.com/?p=713#comment-2209</guid>
		<description>Thanks for for stopping by Todd and Danilo...

Todd: I obviously agree with your last sentiment.   It&#039;s not the hacking that&#039;s news, it&#039;s what they did afterward that&#039;s news.

and Danilo... I suspected you weren&#039;t too sorry.  ;)</description>
		<content:encoded><![CDATA[<p>Thanks for for stopping by Todd and Danilo&#8230;</p>
<p>Todd: I obviously agree with your last sentiment.   It&#8217;s not the hacking that&#8217;s news, it&#8217;s what they did afterward that&#8217;s news.</p>
<p>and Danilo&#8230; I suspected you weren&#8217;t too sorry.  <img src='http://4realz.net/wp-includes/images/smilies/icon_wink.gif' alt=';)' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Danilo Bogdanovic</title>
		<link>http://4realz.net/2008/06/danilo-apologizes-for-writing-the-2nd-post-on-ag-that-hammers-realtorcom/#comment-2208</link>
		<dc:creator>Danilo Bogdanovic</dc:creator>
		<pubDate>Fri, 20 Jun 2008 23:15:52 +0000</pubDate>
		<guid isPermaLink="false">http://4realz.wordpress.com/?p=713#comment-2208</guid>
		<description>With so much money and so many resources at their disposal, it&#039;s sad that someone like you or me can fix the issue faster and better than them.

Thanks for noticing the post. (And I&#039;m not THAT sorry)</description>
		<content:encoded><![CDATA[<p>With so much money and so many resources at their disposal, it&#8217;s sad that someone like you or me can fix the issue faster and better than them.</p>
<p>Thanks for noticing the post. (And I&#8217;m not THAT sorry)</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: toddwcarpenter</title>
		<link>http://4realz.net/2008/06/danilo-apologizes-for-writing-the-2nd-post-on-ag-that-hammers-realtorcom/#comment-2207</link>
		<dc:creator>toddwcarpenter</dc:creator>
		<pubDate>Fri, 20 Jun 2008 22:48:30 +0000</pubDate>
		<guid isPermaLink="false">http://4realz.wordpress.com/?p=713#comment-2207</guid>
		<description>Isn&#039;t the blog in question a WordPress MU sight? I&#039;m not sure if thate makes a difference or not.

Anyway, I agree with Trace that this is noteworthy. The main reason is that REALTOR.com is in the &quot;business&quot; of hosting blogs for real estate agents.

Even if they are offering them for free, we all know that blogs are not free. Nobody want to put a bunch of work into something that might eventually embarrass them.

For every agent that associates their name with one of these blogs, I would think it would be important to know how competent or dedicated the guys running the network are.

People get hacked, that&#039;s not news. What they do once they&#039;ve been hacked is newsworthy, especially when they are also responsible for protecting hundreds of other professionals from a similar fate.</description>
		<content:encoded><![CDATA[<p>Isn&#8217;t the blog in question a WordPress MU sight? I&#8217;m not sure if thate makes a difference or not.</p>
<p>Anyway, I agree with Trace that this is noteworthy. The main reason is that REALTOR.com is in the &#8220;business&#8221; of hosting blogs for real estate agents.</p>
<p>Even if they are offering them for free, we all know that blogs are not free. Nobody want to put a bunch of work into something that might eventually embarrass them.</p>
<p>For every agent that associates their name with one of these blogs, I would think it would be important to know how competent or dedicated the guys running the network are.</p>
<p>People get hacked, that&#8217;s not news. What they do once they&#8217;ve been hacked is newsworthy, especially when they are also responsible for protecting hundreds of other professionals from a similar fate.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Dustin</title>
		<link>http://4realz.net/2008/06/danilo-apologizes-for-writing-the-2nd-post-on-ag-that-hammers-realtorcom/#comment-2206</link>
		<dc:creator>Dustin</dc:creator>
		<pubDate>Fri, 20 Jun 2008 21:25:21 +0000</pubDate>
		<guid isPermaLink="false">http://4realz.wordpress.com/?p=713#comment-2206</guid>
		<description>Trace:  Somehow I missed your comment the first time.  It should be interesting to read your post about the C&amp;D letter.</description>
		<content:encoded><![CDATA[<p>Trace:  Somehow I missed your comment the first time.  It should be interesting to read your post about the C&amp;D letter.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Dustin</title>
		<link>http://4realz.net/2008/06/danilo-apologizes-for-writing-the-2nd-post-on-ag-that-hammers-realtorcom/#comment-2205</link>
		<dc:creator>Dustin</dc:creator>
		<pubDate>Fri, 20 Jun 2008 20:46:45 +0000</pubDate>
		<guid isPermaLink="false">http://4realz.wordpress.com/?p=713#comment-2205</guid>
		<description>Benn:

You make a very good point.   The only element that has been compromised (as far as I can tell) was a single blog hosted at &lt;a href=&quot;http://talk.realtor.com&quot; rel=&quot;nofollow&quot;&gt; http://talk.realtor.com&lt;/a&gt;.</description>
		<content:encoded><![CDATA[<p>Benn:</p>
<p>You make a very good point.   The only element that has been compromised (as far as I can tell) was a single blog hosted at <a href="http://talk.realtor.com" rel="nofollow"> </a><a href="http://talk.realtor.com" rel="nofollow">http://talk.realtor.com</a>.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Benn</title>
		<link>http://4realz.net/2008/06/danilo-apologizes-for-writing-the-2nd-post-on-ag-that-hammers-realtorcom/#comment-2204</link>
		<dc:creator>Benn</dc:creator>
		<pubDate>Fri, 20 Jun 2008 20:41:36 +0000</pubDate>
		<guid isPermaLink="false">http://4realz.wordpress.com/?p=713#comment-2204</guid>
		<description>&quot;Realtors, operates one of the largest real estate portals in the world and when they are unable to exercise responsibility in upgrading their website&quot;

Realtor.com is not run on wordpress, user identification on realtor.com hasn&#039;t been proven to have been compromised, a wordpress blog with a known vulner is the problem.  This isn&#039;t credit cards and social security numbers we&#039;re talking about here.

Unless you are reporting as fact that Realtor.com has in fact been hacked and user records have been breached? I&#039;m unclear.</description>
		<content:encoded><![CDATA[<p>&#8220;Realtors, operates one of the largest real estate portals in the world and when they are unable to exercise responsibility in upgrading their website&#8221;</p>
<p>Realtor.com is not run on wordpress, user identification on realtor.com hasn&#8217;t been proven to have been compromised, a wordpress blog with a known vulner is the problem.  This isn&#8217;t credit cards and social security numbers we&#8217;re talking about here.</p>
<p>Unless you are reporting as fact that Realtor.com has in fact been hacked and user records have been breached? I&#8217;m unclear.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
