Avoid getting hacked!

Discussion in 'WordPress' started by theforexgeek, Aug 3, 2010.

  1. #1
    So my wordpress site was hacked by some loser. Well I am glad to say that it is bakc up and running. Any advice on how to prevent this again in the future?
     
    theforexgeek, Aug 3, 2010 IP
  2. thexboy

    thexboy Peon

    Messages:
    199
    Likes Received:
    2
    Best Answers:
    0
    Trophy Points:
    0
    #2
    the only method to prevent wp hacking attempts is - DON'T install any nulled plugins and try to put permissions to folders and files according to wordpress document.

    if you need any help to fix wordpress sites pls pm me i can help u for less cost :)
     
    thexboy, Aug 3, 2010 IP
  3. lelkoun

    lelkoun Active Member

    Messages:
    288
    Likes Received:
    7
    Best Answers:
    0
    Trophy Points:
    60
    #3
    lelkoun, Aug 3, 2010 IP
  4. KimiGermany

    KimiGermany Peon

    Messages:
    1,117
    Likes Received:
    15
    Best Answers:
    0
    Trophy Points:
    0
    #4
    I agree with thexboy, i guess nulled stuff (plugins or themes are a no go)

    There are tons of stuff you need to do in order to improve your blog's security (do google researches). They may differ, but changing admin loginname, wp table prefix, secure wp-admin, plugins folder, using security plugins, also limit the registration in your blog may help.

    Backing up your blog is also very important, in my opinion.
     
    KimiGermany, Aug 3, 2010 IP
  5. psharma

    psharma Prominent Member

    Messages:
    1,955
    Likes Received:
    85
    Best Answers:
    4
    Trophy Points:
    345
    #5
    psharma, Aug 4, 2010 IP
  6. trustedfire9

    trustedfire9 Active Member

    Messages:
    57
    Likes Received:
    1
    Best Answers:
    0
    Trophy Points:
    58
    #6
    change admin page directory with hard password to guess or crack the hash ( wordpress use md5 wordpress hash password it is easy to decrypt),
    check your site with Acunetix Web Vulnerability Scanner .
     
    trustedfire9, Aug 4, 2010 IP
  7. flickerman

    flickerman Peon

    Messages:
    72
    Likes Received:
    0
    Best Answers:
    0
    Trophy Points:
    0
    #7
    Use Wordpress plugins like Admin SSL and stealth login would prevent such attempts.
     
    flickerman, Aug 5, 2010 IP
  8. Cash Nebula

    Cash Nebula Peon

    Messages:
    1,197
    Likes Received:
    67
    Best Answers:
    0
    Trophy Points:
    0
    #8
    Cash Nebula, Aug 5, 2010 IP
  9. extremephp

    extremephp Peon

    Messages:
    1,290
    Likes Received:
    32
    Best Answers:
    0
    Trophy Points:
    0
    #9
    Nah Nah Nah Nah!! You All Missed Up One thing!

    Hackers basically Use FTP Injections To Hack Down Websites!! No plugins Would Help Against It!

    I had a client recently who wanted his 5 websites to be fixed up from FTP Injections!

    Plugins do help!! But there are Much more things to Worry About from the Server Side! Plugins may protect WORDPRESS! But Not Your Hosting As a Whole! :D

    ~Exp~

    Want More?
     
    extremephp, Aug 5, 2010 IP
  10. etc

    etc Well-Known Member

    Messages:
    3,239
    Likes Received:
    30
    Best Answers:
    0
    Trophy Points:
    158
    #10
    most hackers upload a script before hacking..so beware of those files with .com extension or some bashscripts.
    an anti virus plugin for wordpress works great to aviod hacking
     
    etc, Aug 5, 2010 IP
  11. extremephp

    extremephp Peon

    Messages:
    1,290
    Likes Received:
    32
    Best Answers:
    0
    Trophy Points:
    0
    #11
    Not Again!!

    Sites Can Be Hacked Up By 2 ways!

    Script Side (Or CMS Or What Ever - generally Said SCRIPT :cool:) And Server Side!

    What If Server is Cracked? I mean, CPanel Info is Tracked? Or What If FTP info was Tracked by someone?

    Well, We can Call Against Wordpress Or simply depend on Its Plugins! But should have a perspective view to the whole matching strings!

    ~Exp~
     
    extremephp, Aug 5, 2010 IP
  12. segzeey

    segzeey Active Member

    Messages:
    350
    Likes Received:
    0
    Best Answers:
    0
    Trophy Points:
    78
    #12
    Try to block the most used methods of hacking WP sites by modifying your script. if you can do it give it to a programmer to help with it.
     
    segzeey, Aug 5, 2010 IP
  13. sheril123

    sheril123 Member

    Messages:
    101
    Likes Received:
    0
    Best Answers:
    0
    Trophy Points:
    46
    #13
    word press has low security regarding hackers.. well i had the same experience.. try the security plugin for wordpress or else you can do something else with your site
     
    sheril123, Aug 5, 2010 IP