Author Archive

WordPress Tooltip Pro 4.2.8 released and feature introduction for tooltip shortcode

Posted on date Mar-29-2017 · by author  · comments Leave a Comment 

WordPress Tooltip Pro 4.2.8 released in February, 2017. I just want to thank all of our users that have been using WordPress Tooltip and have posted their problems and advices to help us continue to improve our plugin.

In WordPress Tooltip Pro 4.2.8, in order to satisfy the user requirement, we add the new important feature – Tooltip Shortcode.

Tooltip Shortcode help the users to use tooltip more flexibly, you can add tooltips to WordPress easily with the tooltip shortcode [tooltips].

Example:

Tooltips shortcode support text tooltips

[tooltips keyword="tooltips" content="Wordpress tooltips is an awesome plugin"]
[tooltips keyword="post" content="I cover some of them in this series of post"]
[tooltips keyword="content" content="Emptied the contents of the fridge into carrier bags"]
[tooltips keyword="database" content="The database is fully hyperlinked"]
Some amazing users requested that they want to add some tooltips which is not in post content, now we are happy to report you that you can use wordpress tooltips shortcode [tooltips] to add tooltips which is not in content of posts, or not in wordpress database.

Tooltips shortcode support image tooltips

[tooltips keyword='mollis' content='<img src="https://tomas.zhu.bz/wp-content/uploads/2017/03/girl-1319114_1920.jpg" >']
[tooltips keyword='Nulla' content='<img src="https://tomas.zhu.bz/wp-content/uploads/2017/03/straight-2065314_1920.jpg >']
[tooltips keyword='tellus' content='<img src="https://tomas.zhu.bz/wp-content/uploads/2017/03/namibia-2019391_1280.jpg >']
[tooltips keyword='dolor' content='<img src="https://tomas.zhu.bz/wp-content/uploads/2017/03/path-1420605_1920.jpg >']
Lorem ipsum dolor sit amet, consectetur adipiscing elit. Duis mollis augue a neque cursus ac blandit orci faucibus. Phasellust nec metus purust. Mauris venenatis, Nulla sit amet ullamcorper suscipitt, tellus scelerisque ipsum, mattis blanditt purus est sed velit. Nulla tincidunt sodales est, dolor non vulputate sem pellentesque in.

Tooltips shortcode are also available in woocommerce, tablepress, MaxButtons, Easy Pricing Tables.

We will try our best to support more and more famous plugins.

Demo:

WordPress tooltips works in WooCommerce Products
WordPress tooltips works on a button, this button generated by MaxButtons plugin
WordPress tooltips add tooltips in the table, this table generated by tablepress
WordPress Tooltips For Pricing Table

 

 

 

WordPress 4.7.2 Security Release – fix serious content injection vulnerability

Posted on date Feb-17-2017 · by author  · comments Leave a Comment 

WordPress 4.7.2 was released in January 26th, 2017. An Unauthenticated Privilege Escalation Vulnerability in a REST API Endpoint was fixed. The WordPress Official advises the users to update the sites immediately.

WordPress 4.7.2 Security Release - fix serious content injection vulnerability

WordPress 4.7.2 Security Release – fix serious content injection vulnerability

The issue reporter Sucuri said, modify the WordPress website content will produce a modified data packet, The attacker can modify URL to bypass the account verification and directly view the contents of the website by REST API, In addition, the vulnerability even allows an unauthenticated user to modify the content of any post or page within a WordPress site.other content.

Sucuri provide technical details of the vulnerability and write the conclusion in his blog:

This is a serious vulnerability that can be misused in different ways to compromise a vulnerable site. Update now!

 

 

WordPress tag cloud plugin: 3D Tag Cloud

Posted on date Jan-19-2017 · by author  · comments Leave a Comment 

 WordPress tag cloud plugin: 3D Tag Cloud

WordPress tag cloud plugin: 3D Tag Cloud

3D Tag Cloud plugin is a free wordpress plugin to allow the tag label to appears in the form of 3D animation.

3D Tag Cloud plugin has the same function as WordPress default tag, but 3D Tag Cloud plugin provides more rich effects visually, but also very flexible, 3D Tag Cloud plugin has the following features:

Title of the Tag Cloud.
Number of tags to be displayed.
Height and Width of the widget.
Background Color.
Text Color.
Font.
Font maximum size.
Font minimum size.


This plugin is very popular now, support Support multiple languages, e.g, French, German, Portuguese – Brazilian, Slovak, Spanish.

You can download here: https://wordpress.org/plugins/cardoza-3d-tag-cloud/

 

 

WordPress Security update: WordPress 4.7.1 release

Posted on date Jan-17-2017 · by author  · comments Leave a Comment 

WordPress Security update: WordPress 4.7.1 release

WordPress Security update: WordPress 4.7.1 release

The official WordPress news, 36 days after the official release of the WordPress 4.7 version, WordPress 4.7.1 release, which is a security update version.

This version fixes the vulnerability, which will affect all of the previous version of the WordPress, Tomas Zhu recommended you upgrade in time. Before the upgrade, please backup the modified theme files, WordPress files, as well as the database.

There are 8 issues about this security update:

1. Remote code execution (RCE) in PHPMailer – No specific issue appears to affect WordPress or any of the major plugins we investigated but, out of an abundance of caution, we updated PHPMailer in this release.
2. The REST API exposed user data for all users who had authored a post of a public post type. WordPress 4.7.1 limits this to only post types which have

specified that they should be shown within the REST API.
3. Cross-site scripting (XSS) via the plugin name or version header on update-core.php. Reported by Dominik Schilling of the WordPress Security Team.
4. Cross-site request forgery (CSRF) bypass via uploading a Flash file.
5. Cross-site scripting (XSS) via theme name fallback.
6. Post via email checks mail.example.com if default settings aren’t changed.
7. A cross-site request forgery (CSRF) was discovered in the accessibility mode of widget editing.
8. Weak cryptographic security for multisite activation key.

If you are not a professional technical staff, these should have little impact on us, but for the sake of safety, Tomas zhu recommended you to upgrade in time.

In addition to repair 8 major security vulnerabilities, WordPress 4.7.1 also repair 62 Bugs based on WordPress 4.7. The WordPress official had push a new version of the update notification in your site’s admin area, after backing up all the data(the modified theme files, WordPress files, as well as the database), you can updated in your site’s admin area.

The version does not involve the compatibility issues of language packs, themes and plugin, so you can update in time after having backed up.

WordPress.4.7.1 Download: https://wordpress.org/wordpress-4.7.1.zip

Thumbnails Regenerate and Thumbnail Rebuild AJAX to help rebuild all thumbnails without script timeouts on your server

Posted on date Dec-18-2016 · by author  · comments Leave a Comment 

Speak of WordPress, the colorful theme templates and omnipotent plugins is the most attractive for us, WordPress support automatically uploading pictures for users to generate thumbnails. A variety of multiple thumbnails enable us to maximize to optimize the theme visual effects.

Generally we install the theme, automatically generated thumbnail size according to the needs, so that the theme automatically calls, or we manually insert the images into the page. But when we change a new theme, the problem comes, the new theme probably needs different size of thumbnail size from prvious theme. At this time, we have a variety of ways to regenerate the Thumbnail images. But for me, the most simple, the most thorough, the most perfect way is to regenerate all of thumbnail images of the whole website.

So I found the following 2 plugins:

Thumbnails Regenerate

Thumbnails Regenerate

Thumbnails Regenerate

Thumbnail Rebuild AJAX

Thumbnail Rebuild AJAX

Thumbnail Rebuild AJAX

If you search in internet, you will find that these two plugins frequently appear in the author recommendation lists. Tomas Zhu only used Regenerate Thumbnails because it was in self built server, I set the PHP execution time limit very long, and the number of pictures on the site is not so much, so the process of regeneration thumbnails is successful. And for those users with too much images in the site, Thumbnail Rebuild AJAX may be a better choice. Read the introduction from Thumbnail Rebuild AJAX, it can solve the problem of the massive picture execution time exceeds PHP setting.

When you have a lot of full-size photos, the script on the server side takes a long time to run. Unfortunately the time a script is allowed to run is limited, which sets an upper limit to the number of thumbnails you can regenerate. This number depends on the server configuration and the computing power your server has available. When you get over this limit, you won’t be able to rebuild your thumbnails. AJAX Thumbnail Rebuild allows you to rebuild all thumbnails at once without script timeouts on your server.

 

 

EWWW Image Optimizer – image optimization plugin

Posted on date Dec-17-2016 · by author  · comments Leave a Comment 

EWWW Image Optimizer - image optimization plugin

EWWW Image Optimizer – image optimization plugin

Image compression can not only improve the image loading speed when accessing, but also reduce server bandwidth. EWWW Image Optimizer is a WordPress image optimization plugin. This Plugin can automatically optimize your images, the image has been uploaded this will be optimized, EWWW Image Optimizer achieve the optimization effect mainly by reducing the size of the image, the plugin has settings Options in admin panel, you can use lossy compression picture, lossless compression picture in default. It can optimize the images that you have already uploaded, convert your images automatically to the file format that will produce the smallest image size.

Reduce image sizes in WordPress including NextGEN, GRAND FlAGallery, FooGallery and more using lossless/lossy methods and image format conversion. EWWW Image Optimizer is very popular image optimization plugin, more than 400,000 downloads.

Free & strong WordPress security plugin – Wordfence Security

Posted on date Nov-29-2016 · by author  · comments Leave a Comment 

WordPress is very popular in recent years, but also caused a hacker’s attention. WordPress face high-intensity violence crack, do you do a good protection? Tomas zhu introduce plugins to enhance WordPress protection mechanism – Wordfence Security. Wordfence Security is a WordPress security plugin, easy to use.

It has the following features:

WordPress Firewall
Blocking Features
Login Security
Security Scanning
Monitoring Features
Multi-Site Security
IPv6 Compatible…

Free & strong WordPress security plugin - Wordfence Security

Free & strong WordPress security plugin – Wordfence Security

After installation Wordfence Security, in the home screen of Wordfence Security where you can see a summary, manage security issues and do a manual security scan.  Click “Start a Wordfence Scan” to start scanning. Often if you are unsure whether this file is a problem, select “Ignore until the file changes.” If you find that the scan isnot safe, please select “Roestor the original version of this file.”

In the Live Traffic view of Wordfence Security where you can see real-time activity on your site. If you see any dangerous behavior your visitors do on your site, block him.

block IP address: If you found that IP often paste some rubbish or improper attack on your site, you can directly block it .

block country: If you think which country’s friends you do not want them to come, you can also directly block the country’s IP, so that the people of the country can not come to your website.
Advanced Blocking: You can block a specific range of IP addresses to access your site.

Free & strong WordPress security plugin - Wordfence Security

Free & strong WordPress security plugin – Wordfence Security

“block country” and “Scheduled Tasks” are function of WordFence Premium , chargeable, Tthe Scheduled Tasks feature allows Wordfence Security to schedule website scan. For normal users, the free version is completely enough.

You can also receive alerts of email, if a security problem existed, you will receive email notification, Support Multiple email addresses. This WordPress security plugin make up for the lack of security of wordpress, to installed it, is equivalent to install a powerful scripting firewall.

Fixed Mailchimp Plugin Error: Missing argument 3 for MailChimp_API::get()

Posted on date Nov-19-2016 · by author  · comments Leave a Comment 

screenshot-5

I want to use mailchimp’s service offer a free tips for my users, I installed the best mailchimp plugin — MailChimp List Subscribe Form, I installed it a few times and I like it, it is simple, clean, admin-friendly with powerful functionality, the problem is I found in my site I can not activate it, I found there are error Warning: Missing argument 3 for MailChimp_API::get(), called in /tomas/zhu/wp-content/plugins/mailchimp/mailchimp.php on line 638 and defined in /tomas/zhu/wp-content/plugins/mailchimp/lib/mailchimp/mailchimp.php on line 21, I checked in the code and I found the error code is:

 

public function get($endpoint, $count=10, $fields) {


I changed it as:


public function get($endpoint, $count=10, $fields=array()) {


And they works well on my site now. 🙂

It seems the official team is still fix it, I just attached a temp version in here for myself — when I install it in my other sites, once the official team fixed it, please follow their version.

Download: mailchimp

Tags :   , ,

Customize your WordPress page layouts – Page Builder by SiteOrigin

Posted on date Nov-18-2016 · by author  · comments Leave a Comment 

Customize your WordPress page layouts - Page Builder by SiteOrigin

Customize your WordPress page layouts – Page Builder by SiteOrigin

Page Builder by SiteOrigin is a free WordPress page layout customization plugin, using the page layout plugin, you can visualize the drag effect function, the plugin operation is simple and intuitive, can help the website easily achieve different layout structure and the effect of the website style.

WordPress Widget is usually only used in sidebar, and the Page Builder by SiteOrigin allows you to use the Widget at any position, not only WordPress’s own Widget, but also the widget by installing other plugins can also call by Page Builder.

Customize your WordPress page layouts - Page Builder by SiteOrigin

Customize your WordPress page layouts – Page Builder by SiteOrigin

After the activation of Page Builder by SiteOrigin, you will see a switch button in the area of post editor at the backend, and then we will see the edit interface, can customize the layout, add a variety of widget. Tomas zhu advise you to try to use your imagination and design skills at this time. More functional, please go to here Https://siteorigin.com/page-builder/.

WordPress security scan plugin – Acunetix WP Security

Posted on date Nov-16-2016 · by author  · comments Leave a Comment 

Acunetix WP Security, WordPress security scan plugin

Acunetix WP Security, WordPress security scan plugin

Acunetix WP Security  is a wordpress security scan plugin. Network security, website security has been plagued all the people, for the WordPress, the security is an easily overlooked but very important problem, especially when your website has a certain group of users, if the website is attacked by the hacker, it is worthLost, website security, no delay.

Acunetix WP Security, WordPress security scan plugin

Acunetix WP Security, WordPress security scan plugin

Although we can not completely guarantee the website safety, but we have to do to take preventive measures, look at the wordpress security plugin: Acunetix WP Securityhttps://wordpress.org/plugins/wp-security-scan/, a relatively simple security scan wordpress plugin, Acunetix WP Security check whether your website is safe, check your password, file permissions, database security, WP version hidden and so on function.

If Acunetix WP Security find some internet security vulnerabilities. It will give some suggestions through security scanning result, convenient for you to improve your website setup, so as to improve
Safety of your website.