Advertising
Advertising

Help, I’ve Been Hacked! How To Secure Your WordPress Site Against Hackers

Help, I’ve Been Hacked! How To Secure Your WordPress Site Against Hackers

Of the top 1 million websites, WordPress has a 65% share of all Content Management Systems (CMS) being used. There are currently around 64 million WordPress blogs and websites in existence, making it an incredibly attractive target to hackers.

Advertising

wordpress logo

    Just recently, [pullquote position=”right”]WordPress made headlines when it was the subject of a massive botnet hacking attempt, which managed to compromise 90,000 sites.[/pullquote] It did this with a brute force attack, trying to log in with the standard “admin” username and a list of thousands of potential passwords.

    I myself have been the target of WordPress attacks in the past, but by following these simple steps, I’ve managed to thwart off potential attackers since.

    Advertising

    • The number one most important thing is to make sure your WordPress version, themes, and plugins are all updated to the latest version. These updates often include bug fixes and patches to secure against attacks. Updating all of these is easy! When you log into WordPress, the admin bar at the top of the screen will alert you if there are any updates available. Simply click on the update button and you can update everything to the latest version in just a few seconds!

    wordpress updates
      • It’s also important to delete any themes and plugins that you’re not using. Every theme and plugin is another potential way that hackers could get into your site. If you’re not using it, get rid of it!
      • Change your default username. The username “admin” should be one of the first things you change. In fact, if you’re doing a new WordPress installation, just choose a different username to begin with. This default username is how 90,000 WordPress blogs were hacked recently. Unfortunately, it’s all to easy to figure out if someone has changed the default username or not. If you want to see, just look at the screenshot below. If you try to log in with the username “admin” and the wrong password, WordPress actually comes back with an error saying, “The password you entered for the username admin is incorrect.” If that username doesn’t exist, WordPress returns a different error: “Invalid username.” I’m not sure why it announces to the whole world which usernames exist and which don’t, but changing from the default username is one of the best things you can do to improve the security of your WordPress installation.

      Advertising

      wordpress admin login screen
        • You should also change the standard log-in URL from yoursite.com/wp-admin to something else. It amazes me how many BIG websites haven’t even made these simple changes! Give it a try on some of your favourite websites; you’ll be surprised how many haven’t even covered the basics when it comes to security.
        • Set a secure password – don’t use dictionary words. Use a combination of upper and lower case letters, numbers, and special characters. This is not unique to WordPress; you should be employing this practice on anything that requires a password, like internet banking or computer passwords.
        • Enable 2-step authentication on your WordPress site. This is pretty straightforward to do and is something you’ve probably seen if you use internet banking. An example is if you try to transfer money, it will send a unique code via SMS to your phone, which you have to enter in addition to your regular password.
        • Remove all default posts, comments, pages, etc. as these indicate that your site might be fairly new and make it a more attractive target.
        • Change the prefix on your database tables from the default “wp_” to something else. As with the default username, this is something you can actually set when first installing WordPress.
        • Hide your WordPress version number. This way, it won’t stand out to hackers if you’re not using the latest version.
        • Back Up! There are plenty of great backup plugins available, and many are free. If the worst happens and you are hacked, you’ll be back up and running in no time.

        Are you ready for some great news? You can implement most of the ideas above and MORE with the click of a button. How? Install the Better WP Security plugin. It even has some advanced features like blocking IP addresses that attempt to log in (incorrectly) too many times, and you can create a blacklist of IPs. I’m surprised how many e-mails I get alerting me that people are trying to either log into my site or trying to access a URL that doesn’t exist (usually the default log-in page at /wp-admin/). You can also use the IP tracer to see where the attempt originated from (most of mine seem to be from Russia or China).

        Do you have a great WordPress security tip? Leave it in the comments below!

        Advertising

        And if you want to take WordPress to the next level, check out this article: Top WordPress Plugins for the Smart Blogger.

        More by this author

        How to Find the Cheapest Flights How to Get the Best Hotel Deals 21 Ways to Get the Best Travel Deals – Car Rental The Impact of the Electric Car Help, I’ve Been Hacked! How To Secure Your WordPress Site Against Hackers

        Trending in Technology

        1 7 Best Project Management Apps to Boost Productivity 2 10 Smartest Productivity Software to Improve Your Work Performance 3 16 Less Known Gmail Hacks That Will Super Boost Your Productivity 4 8 Most Effective Games and Apps to Learn to Type Fast 5 15 Organization Apps to Boost Your Personal Productivity

        Read Next

        Advertising
        Advertising
        Advertising

        Last Updated on September 25, 2019

        7 Best Project Management Apps to Boost Productivity

        7 Best Project Management Apps to Boost Productivity

        Project management doesn’t need to be a complicated thing, not if you have apps that make things a whole lot simpler. When you have project management apps, you can take care of your team, tasks and deadlines, without even being in the office. You don’t even have to spend a lot of money to get most of the apps you might need.

        Here are the 7 best project management apps to super boost your team’s productivity:

        1. Basecamp

          It’s probably the most well-known project management app out there. It allows you to organize projects that act as a central location for everything and contains such things as to-do lists, notes, events, files, and much more.

          It is user-friendly, and has a free 30-day trial period. After that, the plan is $99 per month.

          Find out more about Basecamp here.

          Advertising

          2. Asana

            If you are looking for something that is not difficult to use, check out Asana. This is a great task management app that can be used for managing projects as well.

            In a nutshell, Asana helps you create and share task lists with your team. The app is simple but smart enough and has got a lot of integrations. Teams with up to 15 members can use Asana for free. Teams with 15 members and up can choose plans that range from $10.99 per month.

            Find out more about Asana here.

            3. Casual

              This is a unique app that offers a different way of doing things. On Casual, you plan your tasks just by drawing them as a flowchart. The neat thing is that Casual helps you visualize and track dependencies between tasks.

              Advertising

              This app is incredibly intuitive and works great for personal projects, as well as for organizing projects for small teams. You can try it for free, and if you don’t like it, there is no obligation to pay for anything.

              Find out more about Casual here.

              4. Trello

                This app is incredibly user-friendly, and is based on Kanban boards. It actually works like a virtual whiteboard with post-it-notes.

                Trello is great for organizing your to-do lists, ideas, and is very easy to use. You can create several boards to use for various projects, and it’s free of cost. Trello is available to iOS and Android users as well.

                Find out more about Trello here.

                Advertising

                5. OmniPlan

                  This is an awesome app for iPhone and iPad users. If you love Gantt charts, this is definitely an app that you can get a lot out of.

                  You start out by creating a simple project outline. Then you can use the app to help you through every step of the project until its completion.

                  A standard plan for iOS costs just $99.99, and the pro plan is only $199.99.

                  Find out more about OmniPlan here.

                  6. Podio

                  Advertising

                    This is a great app for medium and large-sized teams working on projects. The special point about Podio is that there are additional features such as CRM and social intranet.

                    There are four different packages: Free, which is free for up to five employees and five external users; Basic, which is $9 per month per employee; Plus, which is $14 per month per employee, and Premium, which is $24 per month per employee.

                    Find out more about Podio here.

                    7. Microsoft Project

                      This is one of the most commonly-used project management apps. However, it is also one of the most difficult apps to use. It does have a lot of features that are popular with project managers, which is why we have chosen to include in on this list. You can customize reports, track burn rates, and stay on track until projects are complete.

                      The basic plan starts with $7 per month, which allows you project team members to collaborate in the cloud, via web browser or mobile.

                      Find out more about Microsoft Project here.

                      More Productivity Tools

                      Featured photo credit: Annie Spratt via unsplash.com

                      Read Next