Web Development, support and training

March 6, 2009

[Video] Ten Steps to Secure WordPress

After a recent hack attack, Olly over at guvnr.com produced a nice on how to secure your blog.

“Why secure it, it works just fine?” you say. Well it could be defaced or used to gain access to your server where programs can be installed e.g. to share illegal files, send spam or just to steal your users’ login details including their passwords. In the video Olly covers the following steps:

  1. Upgrade WordPress.
  2. Update plugins.
  3. Change “_” database table prefix.
  4. Delete “Admin” user.
  5. Use a stronger password.
  6. Hide your WordPress version.
  7. Ensure WordPress database errors are turned off.
  8. Remove WP ID META tag.
  9. Protect the “wp-admin” folder
  10. Hide plugins.

via 10 Tips To Make WordPress Hack-Proof (update: Video has been updated as has the post so please read it carefully along with the comments)

See also


One Comment to “[Video] Ten Steps to Secure WordPress”

  1. the_guv says:

    Pleased you like my blog post and video…

    http://www.guvnr.com/web/blogging/10-tips-to-make-wordpress-hack-proof/

    You should know, though, that I’ve ammended some of the notes, after some of my readers quite rightly corrected a point or three!

    So take a look for the very best practises. And read the comments, because they add more ideas too.

    Damn, these things are out of date pradctically before they’re published ;)

    the_guv

 


All Spanish translations on this site have been produced automatically
Site Map PAULMYATT.COM © 2010