Share Your Favorite WordPress Security Tips!
No matter how awesome content on your blog is, how properly SEOed your site may be or how much work you put into promoting it, one day all your efforts may fall short all at once because your WordPress-run blog has been hacked. What may follow is quite a depressining time actually:
- Your website might lose credibility and trust;
- Google may put that “This site may harm your computer” notice on your site SERPs listings which affects your clickthrough as well as reputation;
- Important data may get lost;
- It may take quite a long time to get everything in order (cleaning your site and filing a “malware review” and waiting for Google to figure everything out).
Anyway, it is absolutely clear that it is better to stay away from that negative experience even if you hope that won’t ever happen to your site. So let’s share our favorite tips to secure our WordPress blogs, shall we?
I’ll start and please share your tips in the comments!
- WordPress Exploit Scanner Helps Administrators Scan Their Database For Malicious Files;
- A very thorough WordPress security guide;
- 20+ Powerful WordPress Security Plugins and Some Tips and Tricks
So would you share your favorite WordPress security guides, plugins and tips?
20 Responses to “Share Your Favorite WordPress Security Tips!”
Recent Comments
- Dan on 4 Ways a Cheap Hosting Company Will Destroy Your Online Business
- noor on How to Destroy Your Online Reputation in 3 Days or Less
- Khursheed Ahmad on 4 Ways a Cheap Hosting Company Will Destroy Your Online Business
- annieblog on 5 Reasons Why MyBlogGuest is My Best Find after 5 Years as Webmaster
- Avadean on Twitter Resolutions For 2012
Tags
backlink research
backlinks
blogging
competitor research
content
conversions
domain names
duplicate content
extrenal links
facebook
Get Backlinks
google
google analytics
guest blogging
guest posts
How To Get Backlinks
interlinking
internal interlinking
keyword brainstorming
keyword research
keywords
keyword stuffing
link baiting
link building service
linking
link juice
links
Links
local
local listings
Natural Link Building
pagerank
ppc
selling seo services
seo
social bookmarking
social media
social voting
title
title tags
tools
traffic
twitter
video
wordpress
Archives
- February 2012
- January 2012
- December 2011
- November 2011
- October 2011
- September 2011
- August 2011
- July 2011
- June 2011
- May 2011
- April 2011
- March 2011
- February 2011
- January 2011
- December 2010
- November 2010
- October 2010
- September 2010
- August 2010
- July 2010
- June 2010
- May 2010
- April 2010
- March 2010
- February 2010
- January 2010
- December 2009
- November 2009
- October 2009
- September 2009
- August 2009
- July 2009
- June 2009
- May 2009
- April 2009
- March 2009
- February 2009




Share Your Favorite WordPress Security Tips! http://tinyurl.com/yjl9u48
what i believe is 1) file scan is essential before uploading file into wordpress through ftp.
2) install some plug-ins which are providing security against hack and attacks
3) Never share and your ftp password to any one.
4) Remove version of wordpress from head of index page.
Lovin’ the WP DB Backup extension. It mails me a backup of the database every friday.
I am new to wordpress and I have not though of securing it. I will sometimes follow the tips said at WordPress dashboard.
I wrote an Article about WordPress security just after hack attempt to my site. It’s bunch of tips Just visit http://bit.ly/2CNd34
better safe than sorry, right?
Loving the plugin ‘Login Lockdown’ which you can get here http://wordpress.org/extend/plugins/login-lockdown/
Best tip is to keep the darn thing updated. It’s amazing how often blog’s get hacked and 9 times out of 10 the blog was woefully behind on software updates.
Hi Ann
Looks as though you have already picked the best links to security tips and plugins LOL.
I’m new to WordPress and have been made aware of all the security issues by all the upgrades to WordPress 2.8, currently standing at 2.8.6 and counting.
So I stopped working on uploading my theme and making my blog look pretty and started looking at security. Both things you can do and plugins you can upload.
First thing is keep up to date with the latest WordPress release.
Second thing is remove the default admin user and create a new admin with secure username and even more secure password, try this site for details http://www.clickonf5.org/wordpress/delete-wordpress-default-admin-user/5447
Then start looking at plugins…
Try this one http://devel.kostdoktorn.se/limit-login-attempts
I think that it is better than login lockdown.
That’s as far as I’ve gone but I will add a few more security measures before starting to pretty up the site.
Well done on starting the ball rolling.
WP Security Scan is another good one. It scans your site to tell you what security loopholes you have and how to fix them!
Thanks for share very helpful wordpress plugins and tips. I’ll read it and download this plugin.
I like to IP restrict the WP-admin folder. It is explained how to do this in How to Make WordPress More Secure from Hackers & Robots
On my blog searcheditors.com I use the following security plugins:
Askimet
Bad Behaviour
http:BL WordPress Plugin
Invisible Defender
Limit Login Attempts
Spam Karma
WP Scanner
Wordpress Firewall Plugin
I also restrict IP for my WP-Admin folder as Gerald mentioned above. And I also have a lot of additional security rules in my .htaccess.
@John
Thanks for sharing your list.
I recognise most of the plugins but there are a few there that I have not heard of and will certainly take a look at.
Login Lockdown plugin is missing from the above list. It is very useful in Bruce force attacks.
Vinish Reply:
December 7th, 2009 at 2:10 pm
Or rather to avoid Bruce force attacks.
I use the invisible defender,it does the job for me
UE(user experience) is important for your blog.
I use a couple of plugins and so far so good although I dont think I’d really considered the threat before
For any WordPress sites which I am the only writer for I deny access to all IP but my own for the wp-admin folder.
Also have Secure WordPress and WP Firewall installed.