K’s Weblog

Technology and the Interweb for the Real World

Rocky beach near Port McNeill, BC

WordPress 2.6 Launches new Security Feature

July 17th, 2008 · 1 Comment

WordPress 2.6 launched earlier this week and among the new features in this seemingly solid build is a significant security enhancement for how WP handles cookies.

Essentially what it boils down to is WP has separated cookies used for accessing the admin interface through HTTPS (SSL) and regular unsecured HTTP.  This allows for login information and the login cookie to be secured through the encrypted stream on every access.

The details are in Ryan Boren’s blog and get into a fair bit of detail.

Tags: Blogging · Open Source · Security

Related Posts

  • Wordpress 2.3 Released — Changes Iminent
  • Wordpress Upgrade Script
  • Canucks/Wings Live Blog — waiting….
  • Admin Links Widget for Wordpress 1.1.0 Released
  • Wordpress 2.5: The rubber hits the road



  • 1 response so far ↓

    • 1 Jeffro2pt0 // Jul 17, 2008 at 12:51 am

      It’s a shame though that the new way of handling cookies caused some people to become locked out of their blogs backend. Thankfully, clearing out the cookies worked for most people.

    Leave a Comment

    Cutline by Chris Pearson