Just a suggestion...<div><br></div><div>In WordPress core itself, if we add some preventive measures like:</div><div><ol><li>Showing a warning on &quot;upload&quot; theme page about possible threats/security issues when user lands on that page</li>

<li>Running security check on uploaded theme - similar to checks which run when theme-developers upload theme here</li></ol></div><div>We can think of more ways!</div><div><br clear="all">--<br>Rahul Bansal | Founder &amp; CEO | rtCamp Solutions Pvt. Ltd.<br>

Mobile: +91-9860501882 | Web: <a href="http://rtcamp.com/" target="_blank">http://rtcamp.com/</a><br><br>
<br><br><div class="gmail_quote">On Mon, Jan 24, 2011 at 1:54 AM, Emil Uzelac <span dir="ltr">&lt;<a href="mailto:emil@themeid.com">emil@themeid.com</a>&gt;</span> wrote:<br><blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex;">

<div>Pretty good article. I <a href="http://twitter.com/#!/EmilUzelac/status/26882934166257664" target="_blank">tweeted</a> about that few days back. Many or all on that top 10 list shouldn&#39;t even be there, that&#39;s why it&#39;s always good idea to download themes via WordPress :)</div>




<div><br clear="all"> </div>
<div><font size="1"><strong>Emil Uzelac</strong> | ThemeID | T: 224-444-0006 | Twitter: <a href="http://twitter.com/emiluzelac" target="_blank">@EmilUzelac</a> | E: </font><a href="mailto:emil@themeid.com" target="_blank"><font size="1">emil@themeid.com</font></a><font size="1"> | </font><a href="http://themeid.com/" target="_blank"><font size="1">http://themeid.com</font></a></div>




<div><font size="1"><font color="#666666"><em>Make everything as simple as possible, but not simpler.</em> - Albert Einstein</font></font></div><br><br><br>
<div class="gmail_quote">On Sun, Jan 23, 2011 at 1:46 PM, Sayontan Sinha <span dir="ltr">&lt;<a href="mailto:sayontan@gmail.com" target="_blank">sayontan@gmail.com</a>&gt;</span> wrote:<br>
<blockquote style="border-left:#ccc 1px solid;margin:0px 0px 0px 0.8ex;padding-left:1ex" class="gmail_quote">Thought I would pass this along - a great article looking at the results from the first page of Google when you search for free themes: <a href="http://wpmu.org/why-you-should-never-search-for-free-wordpress-themes-in-google-or-anywhere-else/" target="_blank">http://wpmu.org/why-you-should-never-search-for-free-wordpress-themes-in-google-or-anywhere-else/</a>. It details which exploits are found on themes from each of those sites.<br clear="all">



<br>-- <br>Sayontan Sinha<br><a href="http://mynethome.net/" target="_blank">http://mynethome.net</a> | <a href="http://mynethome.net/blog" target="_blank">http://mynethome.net/blog</a><br><font color="#888888">--<br>Beating Australia in Cricket is like killing a celebrity. The death gets more coverage than the crime.<br>



<br></font><br>_______________________________________________<br>theme-reviewers mailing list<br><a href="mailto:theme-reviewers@lists.wordpress.org" target="_blank">theme-reviewers@lists.wordpress.org</a><br><a href="http://lists.wordpress.org/mailman/listinfo/theme-reviewers" target="_blank">http://lists.wordpress.org/mailman/listinfo/theme-reviewers</a><br>



<br></blockquote></div><br>
<br>_______________________________________________<br>
theme-reviewers mailing list<br>
<a href="mailto:theme-reviewers@lists.wordpress.org">theme-reviewers@lists.wordpress.org</a><br>
<a href="http://lists.wordpress.org/mailman/listinfo/theme-reviewers" target="_blank">http://lists.wordpress.org/mailman/listinfo/theme-reviewers</a><br>
<br></blockquote></div><br></div>