When a website automatically posts comments to another site it is called a trackback. Essentially, Blogs and many Wiki’s automatically post comments on a website’s page (when comments are enabled) when one links to that particular page. In most cases, the trackbacks and comments are used to create a discussion around a particular subject. Hence why Wiki’s and Blogs are key to developing an internet community.
However, wiki’s are also often used in development projects, and if you are not careful with the security settings, you can give away your development secrets.
A few days ago, a new comment was posted to this blog from a url that breaks down into: ClientSite.AdvertisingAgencySite.com/DEV/ProjectName which linked to my post on using AdWords Dynamic Parameters in URLs. Without even reading the comments, I knew that Company A was launching a new AdWords campaign and which company would be running the show. However, I also received comments on the page past the URL which told me even more about the ad campaign.
My guess is that the Wiki being used had trackbacks enabled and no one checked the security settings before posting many secrets to the Wiki (which is behind a password protected page).
Then, a couple days later, another trackback showed up from a completely different source which was CompanyName.AdvertisingAgency/NewProject from yet another Wiki. After checking that the entire site was password protected, I was sure this was yet another agency launching another company’s ad campaign.
In both of these cases, I’m being passed secrets about ad campaigns which I’m sure the agency and the clients would not be happy to know. Someone didn’t do their homework about how to set up, run, and keep a Wiki secure.
If you’re running a piece of software with trackbacks (which could be a blog, wiki, forum, etc), and you do not wish anyone outside of the password protected area to see what you’re writing about - disable the trackback and ‘ping’ ability of the software package.
Possibly Related Posts:
- Yahoo Integrates Blogs into News
- links for 2008-01-11
- links for 2007-04-14
- Top 10 Ways One Pays For Free Traffic (i.e. SEO)
- Knowledge as Conversation
Comments
Sorry, the comment form is closed at this time.
- links for 2008-05-16 (1)
- Unknown: put up an exciting article this morning on eWhisper.net. Below is a small sample: Shopping for a Viral Video...
- Primer: How to host your own online applications for non-techies (1)
- Keith Casey: Former dotproject contributor here. If you’re serious about a PM tool, you should check out...
- You Host Provider can Paralyze your Website. Your Registrar can put you Out of Business. (3)
- Primer: How to host your own online applications for non-techies: Please note that you should use a different host...
- Google AdWords Quality Score Factors Demystified (24)
- Unknown: know what a Quality Score
- Google AdWords Case Study - Improving Landing Page Quality (17)
- Post-Launch PPC Process and Optimizations: PPC agenda: 1) Improving landing page quality. 2) Brainstorm session to...






No comments yet.