What do you do to secure your Wordpress sites from hackers?

by troy23
9 replies
I realize it is impossible to completely protect your site from hackers, but what should one do to tighten things up. Is there backup software for example. I have seen backup buddy, but the restore part seems cumbersome.

I use Dreamhost for my hosting and have been hacked twice recently. The latest hack coming last night. They would not install the last known configuration so I am left in the dark. I am looking at new hosting. It's really frustrating.
#hackers #secure #sites #wordpress
  • Profile picture of the author GeorgR.
    I have been hacked too, "luckily" they only replaced the index.php files so it was rather easy to recover my sites. The only thing you can do is have a good server with proper security (csf, firewall)....and BACKUPS every day.
    Signature
    *** Affiliate Site Quick --> The Fastest & Easiest Way to Make Affiliate Sites!<--
    -> VISIT www.1UP-SEO.com *** <- Internet Marketing, SEO Tips, Reviews & More!! ***
    *** HIGH QUALITY CONTENT CREATION +++ Manual Article Spinning (Thread Here) ***
    Content Creation, Blogging, Articles, Converting Sales Copy, Reviews, Ebooks, Rewrites
    {{ DiscussionBoard.errors[4618987].message }}
    • Profile picture of the author WillR
      Originally Posted by GeorgR. View Post

      The only thing you can do is have a good server with proper security (csf, firewall)....and BACKUPS every day.
      Actually, there is a LOT you can do to prevent these attacks from ever happening.

      The harder you make it the less likely you will become a target. Just a few simple things like NEVER using the username 'admin' as your login and always renaming the wp databases so they don't use the wp prefix. These are two very basic things that will make a big difference but there are other things you should also be doing.

      I highly suggest this WSO - it's what I have used for all my blogs and I would be VERY surprised if you ever had ANY problems with any of your blogs after following all the recommendations in this product:

      http://www.warriorforum.com/warrior-...ity-suite.html

      Wordpress security is something you should get into the habit of setting up properly for each and every site. All it takes is one hit to ruin your network of sites.
      {{ DiscussionBoard.errors[4619522].message }}
  • Profile picture of the author Willie Murray
    You can security harden your WP site, make it more difficult for hackers to disrupt your site, however your never 100% secure and should backup your stuff if you value your content.

    Although I don't use hostgator it's my understanding they backup and restore (for a small fee) their clients sites.

    Edit: link I forgot

    http://codex.wordpress.org/Hardening_WordPress
    {{ DiscussionBoard.errors[4619046].message }}
  • Profile picture of the author tamimabraham
    Actaully there no website is hack prof. But you can backup your site content and mysql database to prevent big lose.
    {{ DiscussionBoard.errors[4619059].message }}
  • Profile picture of the author seo1990
    Yes. you say right. But Hackers is very strong. when you give one point hackers is hack your all details. So, beware of hackers.
    {{ DiscussionBoard.errors[4619072].message }}
  • Profile picture of the author supershoesclub
    theere is no 100% secure way to protect the safey of the wordpress blog.but we should keep in mind to backup the content always.
    {{ DiscussionBoard.errors[4619111].message }}
  • Profile picture of the author IBank
    Which plugins are you using? Be careful with them.
    Also double check your permissions.
    {{ DiscussionBoard.errors[4619342].message }}
    • Profile picture of the author troy23
      Plugins - I tend to use all in one seo, google xml sitemaps and prettylink lite.

      I am thinking now not to use any plugins as I heard if one is out of date this can let hackers in. Problem is you have no way of knowing when it is out of date unless you log in. By that time it is too late, especially if you have many sites.
      {{ DiscussionBoard.errors[4619377].message }}
  • Profile picture of the author amritrr
    I think most people here mean that they were affected by malware when they say they were hacked. Malware is know to inject malicious code into your pages, it usually happens when you publish to your website from a system that has been compromised or infected. I have seen from my experience that securing your local system that you use to publish content to your website is of paramount importance if you wish to avoid such circumstances.
    {{ DiscussionBoard.errors[4619458].message }}

Trending Topics