Tips to Secure Wordpress Blog

Discussion in 'WordPress' started by adouza, Apr 14, 2010.

  1. #1
    Hi everyone,

    I am a new blogger I wanted to know how to secure my wordpress based blog from spam or hackers, I am using hosting service from blue host. is there any plugin or any other software available to secure my blog.

    Thanks
     
    adouza, Apr 14, 2010 IP
  2. bob25

    bob25 Well-Known Member

    Messages:
    1,519
    Likes Received:
    12
    Best Answers:
    0
    Trophy Points:
    128
    #2
    The Wordpress code is opensource so hackers will find a way to get in. The best thing is to update as soon as an update becomes available.
     
    bob25, Apr 14, 2010 IP
  3. lelkoun

    lelkoun Active Member

    Messages:
    288
    Likes Received:
    7
    Best Answers:
    0
    Trophy Points:
    60
    #3
    Recommended plugins:
    -Invisible Defender
    -Safer Cookies
    -Chap Secure Login
    -WordPress File Monitor
    -WP Security Scan
     
    lelkoun, Apr 14, 2010 IP
  4. lukeg32

    lukeg32 Peon

    Messages:
    645
    Likes Received:
    19
    Best Answers:
    1
    Trophy Points:
    0
    #4
    Straight from the horses mouth; This has everything you need to know.

    http://codex.wordpress.org/Hardening_WordPress
     
    lukeg32, Apr 14, 2010 IP
  5. adouza

    adouza Greenhorn

    Messages:
    18
    Likes Received:
    0
    Best Answers:
    0
    Trophy Points:
    11
    #5
    Great help...Thank full to everyone.
     
    adouza, Apr 14, 2010 IP
  6. Koala

    Koala Well-Known Member

    Messages:
    1,831
    Likes Received:
    14
    Best Answers:
    0
    Trophy Points:
    185
    Digital Goods:
    5
    Articles:
    4
    #6
    I also looking for this, my blog also full of spamers.. turning off auto publishing comment is lose visitors,.
    thank you guys..
     
    Koala, Apr 14, 2010 IP
  7. juhasan

    juhasan Well-Known Member

    Messages:
    389
    Likes Received:
    11
    Best Answers:
    0
    Trophy Points:
    125
    #7
    My article ranks 2nd in Google for 'protect wordpress blog' - read this post How to protect WordPress blog, you may find it useful.

    All the best.
     
    juhasan, Apr 14, 2010 IP
  8. Abhik

    Abhik ..:: The ONE ::..

    Messages:
    11,337
    Likes Received:
    606
    Best Answers:
    0
    Trophy Points:
    410
    Digital Goods:
    2
    #8
    There's a few things that you can do..

    * always upgrade to the latest release.
    * do not use any plugin, or use as minimum as you can and always upgrade them as soon as they release.
    * Do not use any theme created by unknown developer. If you use them, make sure to check the whole template for malicious codes.
     
    Abhik, Apr 14, 2010 IP
  9. entrenewbie

    entrenewbie Peon

    Messages:
    18
    Likes Received:
    0
    Best Answers:
    0
    Trophy Points:
    0
    #9
    In every new blog I setup, I always change the default administrator username to something other then admin. If you use fantastico to setup wordpress then this is done for you right in the setup. Otherwise, you will have to use php admin to go into the users table of wordpress and edit the admin row so that the login name is whatever you want it to be.
     
    entrenewbie, Apr 16, 2010 IP
  10. joannacake

    joannacake Peon

    Messages:
    34
    Likes Received:
    0
    Best Answers:
    0
    Trophy Points:
    0
    #10
    But if you're going to flip the blog isnt it better to leave it as admin?
     
    joannacake, Apr 17, 2010 IP
  11. KimiGermany

    KimiGermany Peon

    Messages:
    1,117
    Likes Received:
    15
    Best Answers:
    0
    Trophy Points:
    0
    #11
    Having "admin" username to login is not a good idea, because most hackers know this.
    And i think having other database prefix instead of wp_ is a good idea too ;)
     
    KimiGermany, Apr 17, 2010 IP
  12. joannacake

    joannacake Peon

    Messages:
    34
    Likes Received:
    0
    Best Answers:
    0
    Trophy Points:
    0
    #12
    Thanks Kimi x
     
    joannacake, Apr 17, 2010 IP
  13. Ripul

    Ripul Member

    Messages:
    252
    Likes Received:
    0
    Best Answers:
    0
    Trophy Points:
    26
    #13
    User plugins like stealthlogin and login-attempts along with changes in your .htaccess of your wp-admin area
     
    Ripul, Apr 17, 2010 IP
  14. rilwis

    rilwis Peon

    Messages:
    104
    Likes Received:
    1
    Best Answers:
    0
    Trophy Points:
    0
    #14
    There is a plugin named Security Scan, which helps you very much by listing all security threads of WordPress blog and notice you to fix them. You should try this.
     
    rilwis, Apr 18, 2010 IP