So one of my websites seemed to drop in the search engines and I figured it was just some of the normal fluctuations that happen at times with Google. Today, as I'm checking out my Google Accounts webmater control panel, in the section on "what googlebot sees", it has a ton of spam terms listed in my site's content. It took a bit of digging around, but I found out that hundreds of spam links had been inserted into the theme footer. I run two websites with wordpress and this happened to both sites.
I don't follow these sites super-closely, and I hadn't updated the site for about a year, but that is a pretty slick exploit that someone figured out. I of course have now updated to the most current version of wordpress and I repaired the footer in my theme. I hope that whatever the exploit is was fixed, but for all I know, I could have a trojan in my theme files. Time will tell. I will have to keep a closer eye on the source code of the pages generated from wordpress.
I'm curious if anyone has any additional information on how this happened, and whether it is fixed with the newest version of wordpress, or whether it was tainted themes I used on both of my wordpress sites.
Here's some early information about the exploit. Seems that it is fairly widespread. I hope it's fixed in wordpress 2.5
