Recently I had to help a few people with their phpBB forums because of the rash of hacking acitivity. One of the things that made the vulnerable forums stand out is the version was published for all to see in the footer pages. So all someone has to do is search for phpbb version X footprints out there and you now have a list of vulnerable forums. As I was updating the
Tech Based Marketing blog today, I realized many WordPress themes including the default also betrayed their version numbers in the page footer. "Now that can't be good" I thought since WordPress is very popular and probably getting more so, sooner or later someone's bound to target them... So I did a very simple low-tech security measure - remove the version number from my footer pages. Of course this won't really beef up anything as far as code security is concerned but why make it easy for them to mutilate my page right?