[ WordPress attack - protect your websites ]

by 12 replies
14
Not sure why this is not discussed here... there are on-going WordPress attacks, so please protect/backup your WP sites. Some of my sites "almost" got attacked today. I panicked a bit.

the last thing i want to see is people crying because their businesses we destroyed... but this time, not because of Google, but a WordPress attack hahaha.

Some sources:

Protecting Against WordPress Brute-Force Attacks | Sucuri Blog
#search engine optimization #attack #protect #websites #wordpress
  • There are attacks of various types that have recently picked up the pace.

    Probably the best thing for wordpress is bulletproof security

    You might also check out this thread http://www.warriorforum.com/main-int...-heads-up.html
    • [ 1 ] Thanks
  • If people are serious about their business, and if the business is so important to them, they should have a good enough backing up system to act as a stop guard for anything too vicious. As for my wordpress sites, I've still yet to have any of my sites hacked. I keep everything up to date, and make backups at least every week.
  • It's a good idea to at least have a plugin in place to limit failed login attempts like Simple Login Lockdown.
    • [1] reply
    • Agreed, its a simple 5 second plugin download that can save you lots of heartache.

      Oh and BACK THAT UP! That is, your site occasionally

      Also for the NEWBS, be sure to get rid of you ADMIN user, and make another.
      • [1] reply
  • Cloudflare identified the attackers early on, if your site is protected by CF you're fine.
    • [1] reply
    • Banned
      So I guess cloudfare (whatever that is) knew people were trying to get into Wordpress Admin. accounts back in 2003 when Wordpress first started up?


      Not sure why people freak out about things like this, keep the CMS updated, no big deal. It takes a couple of clicks to update WP, what's that 2 seconds out of a persons life every 3-4 months?
  • [DELETED]
    • [1] reply
  • I just have a strong and long password for my Wordpress as well as captcha for my log in page. I figure at least people will need to pay for a captcha solving service or something to do brute force attacks.
  • Banned
    Lol, I had pretty obvious passwords for my sites, no not "seoservicegroup" but a hackbot that tries 100,000's of different passwords it would've been a somewhat easy guess. None of my sites is hacked though out of 400+ sites so I think this whole story is pretty exaggarated.

    Sure hosters were under DDOS attacks but I have sites at 40-50 different hosting companies, I would at least expect one to be hacked if it was really aimed at WP users.

Next Topics on Trending Feed

  • 14

    Not sure why this is not discussed here... there are on-going WordPress attacks, so please protect/backup your WP sites. Some of my sites "almost" got attacked today. I panicked a bit. the last thing i want to see is people crying because their businesses we destroyed... but this time, not because of Google, but a WordPress attack hahaha.