Submit Search
Upload
WordPress security
•
Download as PPTX, PDF
•
0 likes
•
1,023 views
A
akshat
Follow
An introduction to WordPress Security
Read less
Read more
Technology
Slideshow view
Report
Share
Slideshow view
Report
Share
1 of 31
Download now
Recommended
AtlasCamp 2015: Back to the future with web components
AtlasCamp 2015: Back to the future with web components
Atlassian
Scott Jehl - Delivering Responsibly - beyond tellerrand Düsseldorf 2015
Scott Jehl - Delivering Responsibly - beyond tellerrand Düsseldorf 2015
beyond tellerrand
Secure All The Things!
Secure All The Things!
Dougal Campbell
Higher Order WordPress Security
Higher Order WordPress Security
Dougal Campbell
Learning jQuery @ MIT
Learning jQuery @ MIT
jeresig
WordPress security 101 - WP Jyväskylä Meetup 21.3.2017
WordPress security 101 - WP Jyväskylä Meetup 21.3.2017
Otto Kekäläinen
Zero to Online Cafe in 20 minutes
Zero to Online Cafe in 20 minutes
Steven Cooper
Responsive Design with WordPress (WCPHX)
Responsive Design with WordPress (WCPHX)
Joe Casabona
Recommended
AtlasCamp 2015: Back to the future with web components
AtlasCamp 2015: Back to the future with web components
Atlassian
Scott Jehl - Delivering Responsibly - beyond tellerrand Düsseldorf 2015
Scott Jehl - Delivering Responsibly - beyond tellerrand Düsseldorf 2015
beyond tellerrand
Secure All The Things!
Secure All The Things!
Dougal Campbell
Higher Order WordPress Security
Higher Order WordPress Security
Dougal Campbell
Learning jQuery @ MIT
Learning jQuery @ MIT
jeresig
WordPress security 101 - WP Jyväskylä Meetup 21.3.2017
WordPress security 101 - WP Jyväskylä Meetup 21.3.2017
Otto Kekäläinen
Zero to Online Cafe in 20 minutes
Zero to Online Cafe in 20 minutes
Steven Cooper
Responsive Design with WordPress (WCPHX)
Responsive Design with WordPress (WCPHX)
Joe Casabona
Defeating Cross-Site Scripting with Content Security Policy
Defeating Cross-Site Scripting with Content Security Policy
Francois Marier
Bower power
Bower power
Eric Carlisle
Varnish
Varnish
The Software House
Improving WordPress Performance with Xdebug and PHP Profiling
Improving WordPress Performance with Xdebug and PHP Profiling
Otto Kekäläinen
Leave No One Behind with HTML5 - FFWD.PRO, Croatia
Leave No One Behind with HTML5 - FFWD.PRO, Croatia
Robert Nyman
WordPress Security Blitz
WordPress Security Blitz
Nevada Interpreters and Translators Association (NITA)
Find WordPress performance bottlenecks with XDebug PHP profiling
Find WordPress performance bottlenecks with XDebug PHP profiling
Otto Kekäläinen
HTML5, The Open Web, and what it means for you - MDN Hack Day, Sao Paulo
HTML5, The Open Web, and what it means for you - MDN Hack Day, Sao Paulo
Robert Nyman
WordCamp Finland 2015 - WordPress Security
WordCamp Finland 2015 - WordPress Security
Tiia Rantanen
JavaScript APIs - The Web is the Platform - MDN Hack Day, Sao Paulo
JavaScript APIs - The Web is the Platform - MDN Hack Day, Sao Paulo
Robert Nyman
8 Ways to Hack a WordPress website
8 Ways to Hack a WordPress website
SiteGround.com
HTTPS + Let's Encrypt
HTTPS + Let's Encrypt
Walter Ebert
Seravo.com: WordPress Security 101
Seravo.com: WordPress Security 101
Seravo
WordPress mit Composer und Git verwalten
WordPress mit Composer und Git verwalten
Walter Ebert
Hidden Secrets For A Hack-Proof Joomla! Site
Hidden Secrets For A Hack-Proof Joomla! Site
Daniel Kanchev
Mehr Performance für WordPress - WordCamp Köln
Mehr Performance für WordPress - WordCamp Köln
Walter Ebert
Vagrant WordCamp Hamilton
Vagrant WordCamp Hamilton
Paul Bearne
WordPress Security - WordCamp NYC 2009
WordPress Security - WordCamp NYC 2009
Brad Williams
Lecture: Webpack 4
Lecture: Webpack 4
Sergei Iastrebov
Die .htaccess richtig nutzen
Die .htaccess richtig nutzen
Walter Ebert
WordPress Security
WordPress Security
wordpress_backup
WordCamp Mid-Atlantic WordPress Security
WordCamp Mid-Atlantic WordPress Security
Brad Williams
More Related Content
What's hot
Defeating Cross-Site Scripting with Content Security Policy
Defeating Cross-Site Scripting with Content Security Policy
Francois Marier
Bower power
Bower power
Eric Carlisle
Varnish
Varnish
The Software House
Improving WordPress Performance with Xdebug and PHP Profiling
Improving WordPress Performance with Xdebug and PHP Profiling
Otto Kekäläinen
Leave No One Behind with HTML5 - FFWD.PRO, Croatia
Leave No One Behind with HTML5 - FFWD.PRO, Croatia
Robert Nyman
WordPress Security Blitz
WordPress Security Blitz
Nevada Interpreters and Translators Association (NITA)
Find WordPress performance bottlenecks with XDebug PHP profiling
Find WordPress performance bottlenecks with XDebug PHP profiling
Otto Kekäläinen
HTML5, The Open Web, and what it means for you - MDN Hack Day, Sao Paulo
HTML5, The Open Web, and what it means for you - MDN Hack Day, Sao Paulo
Robert Nyman
WordCamp Finland 2015 - WordPress Security
WordCamp Finland 2015 - WordPress Security
Tiia Rantanen
JavaScript APIs - The Web is the Platform - MDN Hack Day, Sao Paulo
JavaScript APIs - The Web is the Platform - MDN Hack Day, Sao Paulo
Robert Nyman
8 Ways to Hack a WordPress website
8 Ways to Hack a WordPress website
SiteGround.com
HTTPS + Let's Encrypt
HTTPS + Let's Encrypt
Walter Ebert
Seravo.com: WordPress Security 101
Seravo.com: WordPress Security 101
Seravo
WordPress mit Composer und Git verwalten
WordPress mit Composer und Git verwalten
Walter Ebert
Hidden Secrets For A Hack-Proof Joomla! Site
Hidden Secrets For A Hack-Proof Joomla! Site
Daniel Kanchev
Mehr Performance für WordPress - WordCamp Köln
Mehr Performance für WordPress - WordCamp Köln
Walter Ebert
Vagrant WordCamp Hamilton
Vagrant WordCamp Hamilton
Paul Bearne
WordPress Security - WordCamp NYC 2009
WordPress Security - WordCamp NYC 2009
Brad Williams
Lecture: Webpack 4
Lecture: Webpack 4
Sergei Iastrebov
Die .htaccess richtig nutzen
Die .htaccess richtig nutzen
Walter Ebert
What's hot
(20)
Defeating Cross-Site Scripting with Content Security Policy
Defeating Cross-Site Scripting with Content Security Policy
Bower power
Bower power
Varnish
Varnish
Improving WordPress Performance with Xdebug and PHP Profiling
Improving WordPress Performance with Xdebug and PHP Profiling
Leave No One Behind with HTML5 - FFWD.PRO, Croatia
Leave No One Behind with HTML5 - FFWD.PRO, Croatia
WordPress Security Blitz
WordPress Security Blitz
Find WordPress performance bottlenecks with XDebug PHP profiling
Find WordPress performance bottlenecks with XDebug PHP profiling
HTML5, The Open Web, and what it means for you - MDN Hack Day, Sao Paulo
HTML5, The Open Web, and what it means for you - MDN Hack Day, Sao Paulo
WordCamp Finland 2015 - WordPress Security
WordCamp Finland 2015 - WordPress Security
JavaScript APIs - The Web is the Platform - MDN Hack Day, Sao Paulo
JavaScript APIs - The Web is the Platform - MDN Hack Day, Sao Paulo
8 Ways to Hack a WordPress website
8 Ways to Hack a WordPress website
HTTPS + Let's Encrypt
HTTPS + Let's Encrypt
Seravo.com: WordPress Security 101
Seravo.com: WordPress Security 101
WordPress mit Composer und Git verwalten
WordPress mit Composer und Git verwalten
Hidden Secrets For A Hack-Proof Joomla! Site
Hidden Secrets For A Hack-Proof Joomla! Site
Mehr Performance für WordPress - WordCamp Köln
Mehr Performance für WordPress - WordCamp Köln
Vagrant WordCamp Hamilton
Vagrant WordCamp Hamilton
WordPress Security - WordCamp NYC 2009
WordPress Security - WordCamp NYC 2009
Lecture: Webpack 4
Lecture: Webpack 4
Die .htaccess richtig nutzen
Die .htaccess richtig nutzen
Similar to WordPress security
WordPress Security
WordPress Security
wordpress_backup
WordCamp Mid-Atlantic WordPress Security
WordCamp Mid-Atlantic WordPress Security
Brad Williams
WordPress End-User Security
WordPress End-User Security
Dre Armeda
WordPress Plugins and Security
WordPress Plugins and Security
Think Media Inc.
Security Presentation for Boulder WordPress Meetup
Security Presentation for Boulder WordPress Meetup
Angela Bowman
WordPress Security
WordPress Security
Brad Williams
WordPress Security - WordCamp Boston 2010
WordPress Security - WordCamp Boston 2010
Brad Williams
Website security
Website security
Akhilesh Kant
Word camp pune 2013 security
Word camp pune 2013 security
Gaurav Singh
Your WordPress Site is and is not Hacked - You don't know until you check
Your WordPress Site is and is not Hacked - You don't know until you check
Angela Bowman
WordCamp Vancouver 2012 - Manage WordPress with Awesome using wp-cli
WordCamp Vancouver 2012 - Manage WordPress with Awesome using wp-cli
GetSource
WordPress 201
WordPress 201
Jason Cosper
Top Ten WordPress Security Tips for 2012
Top Ten WordPress Security Tips for 2012
Brad Williams
WordPress Security Updated - NYC Meetup 2009
WordPress Security Updated - NYC Meetup 2009
Brad Williams
Manage WordPress with Awesome using wp cli
Manage WordPress with Awesome using wp cli
GetSource
How to Increase Security on your Wordpress Website
How to Increase Security on your Wordpress Website
MeganGood12
WordPress Security Guide
WordPress Security Guide
Trainings Webversity
Hardening WordPress - Friends of Search 2014 (WordPress Security)
Hardening WordPress - Friends of Search 2014 (WordPress Security)
Bastian Grimm
Beyond the WordPress 5 minute Install
Beyond the WordPress 5 minute Install
Steve Taylor
PyCon AU 2010 - Getting Started With Apache/mod_wsgi.
PyCon AU 2010 - Getting Started With Apache/mod_wsgi.
Graham Dumpleton
Similar to WordPress security
(20)
WordPress Security
WordPress Security
WordCamp Mid-Atlantic WordPress Security
WordCamp Mid-Atlantic WordPress Security
WordPress End-User Security
WordPress End-User Security
WordPress Plugins and Security
WordPress Plugins and Security
Security Presentation for Boulder WordPress Meetup
Security Presentation for Boulder WordPress Meetup
WordPress Security
WordPress Security
WordPress Security - WordCamp Boston 2010
WordPress Security - WordCamp Boston 2010
Website security
Website security
Word camp pune 2013 security
Word camp pune 2013 security
Your WordPress Site is and is not Hacked - You don't know until you check
Your WordPress Site is and is not Hacked - You don't know until you check
WordCamp Vancouver 2012 - Manage WordPress with Awesome using wp-cli
WordCamp Vancouver 2012 - Manage WordPress with Awesome using wp-cli
WordPress 201
WordPress 201
Top Ten WordPress Security Tips for 2012
Top Ten WordPress Security Tips for 2012
WordPress Security Updated - NYC Meetup 2009
WordPress Security Updated - NYC Meetup 2009
Manage WordPress with Awesome using wp cli
Manage WordPress with Awesome using wp cli
How to Increase Security on your Wordpress Website
How to Increase Security on your Wordpress Website
WordPress Security Guide
WordPress Security Guide
Hardening WordPress - Friends of Search 2014 (WordPress Security)
Hardening WordPress - Friends of Search 2014 (WordPress Security)
Beyond the WordPress 5 minute Install
Beyond the WordPress 5 minute Install
PyCon AU 2010 - Getting Started With Apache/mod_wsgi.
PyCon AU 2010 - Getting Started With Apache/mod_wsgi.
Recently uploaded
08448380779 Call Girls In Diplomatic Enclave Women Seeking Men
08448380779 Call Girls In Diplomatic Enclave Women Seeking Men
Delhi Call girls
[2024]Digital Global Overview Report 2024 Meltwater.pdf
[2024]Digital Global Overview Report 2024 Meltwater.pdf
hans926745
Driving Behavioral Change for Information Management through Data-Driven Gree...
Driving Behavioral Change for Information Management through Data-Driven Gree...
Enterprise Knowledge
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
apidays
Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024
The Digital Insurer
The Role of Taxonomy and Ontology in Semantic Layers - Heather Hedden.pdf
The Role of Taxonomy and Ontology in Semantic Layers - Heather Hedden.pdf
Enterprise Knowledge
Real Time Object Detection Using Open CV
Real Time Object Detection Using Open CV
Khem
The Codex of Business Writing Software for Real-World Solutions 2.pptx
The Codex of Business Writing Software for Real-World Solutions 2.pptx
Malak Abu Hammad
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
HampshireHUG
CNv6 Instructor Chapter 6 Quality of Service
CNv6 Instructor Chapter 6 Quality of Service
giselly40
IAC 2024 - IA Fast Track to Search Focused AI Solutions
IAC 2024 - IA Fast Track to Search Focused AI Solutions
Enterprise Knowledge
What Are The Drone Anti-jamming Systems Technology?
What Are The Drone Anti-jamming Systems Technology?
Antenna Manufacturer Coco
How to convert PDF to text with Nanonets
How to convert PDF to text with Nanonets
naman860154
From Event to Action: Accelerate Your Decision Making with Real-Time Automation
From Event to Action: Accelerate Your Decision Making with Real-Time Automation
Safe Software
Finology Group – Insurtech Innovation Award 2024
Finology Group – Insurtech Innovation Award 2024
The Digital Insurer
Powerful Google developer tools for immediate impact! (2023-24 C)
Powerful Google developer tools for immediate impact! (2023-24 C)
wesley chun
🐬 The future of MySQL is Postgres 🐘
🐬 The future of MySQL is Postgres 🐘
RTylerCroy
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Drew Madelung
A Year of the Servo Reboot: Where Are We Now?
A Year of the Servo Reboot: Where Are We Now?
Igalia
Exploring the Future Potential of AI-Enabled Smartphone Processors
Exploring the Future Potential of AI-Enabled Smartphone Processors
debabhi2
Recently uploaded
(20)
08448380779 Call Girls In Diplomatic Enclave Women Seeking Men
08448380779 Call Girls In Diplomatic Enclave Women Seeking Men
[2024]Digital Global Overview Report 2024 Meltwater.pdf
[2024]Digital Global Overview Report 2024 Meltwater.pdf
Driving Behavioral Change for Information Management through Data-Driven Gree...
Driving Behavioral Change for Information Management through Data-Driven Gree...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024
The Role of Taxonomy and Ontology in Semantic Layers - Heather Hedden.pdf
The Role of Taxonomy and Ontology in Semantic Layers - Heather Hedden.pdf
Real Time Object Detection Using Open CV
Real Time Object Detection Using Open CV
The Codex of Business Writing Software for Real-World Solutions 2.pptx
The Codex of Business Writing Software for Real-World Solutions 2.pptx
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
CNv6 Instructor Chapter 6 Quality of Service
CNv6 Instructor Chapter 6 Quality of Service
IAC 2024 - IA Fast Track to Search Focused AI Solutions
IAC 2024 - IA Fast Track to Search Focused AI Solutions
What Are The Drone Anti-jamming Systems Technology?
What Are The Drone Anti-jamming Systems Technology?
How to convert PDF to text with Nanonets
How to convert PDF to text with Nanonets
From Event to Action: Accelerate Your Decision Making with Real-Time Automation
From Event to Action: Accelerate Your Decision Making with Real-Time Automation
Finology Group – Insurtech Innovation Award 2024
Finology Group – Insurtech Innovation Award 2024
Powerful Google developer tools for immediate impact! (2023-24 C)
Powerful Google developer tools for immediate impact! (2023-24 C)
🐬 The future of MySQL is Postgres 🐘
🐬 The future of MySQL is Postgres 🐘
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
A Year of the Servo Reboot: Where Are We Now?
A Year of the Servo Reboot: Where Are We Now?
Exploring the Future Potential of AI-Enabled Smartphone Processors
Exploring the Future Potential of AI-Enabled Smartphone Processors
WordPress security
1.
blogVAULT http://blogvault.net
2.
WordPress Security
Akshat Choudhary Founder, blogVault blogVAULT
3.
Why? Sites get Hacked!
blogVAULT
4.
Why will some
one hack a Site? Fun and Profit blogVAULT
5.
Fun: Because they
can blogVAULT
6.
Profit: To make
money SEO Affiliate Scam Redirect to a different site Political defacement Use host for hacks blogVAULT
7.
How? Vulnerabilities!
blogVAULT
8.
Where? Wordpress Core
Plugins Themes blogVAULT
9.
How do I
know if I have been hacked? blogVAULT
10.
Browser warning
blogVAULT
11.
Google Search Warning
blogVAULT
12.
Sucuri SiteCheck -
Free Tool blogVAULT
13.
Inspect Files htaccess Javascript Files Unknown
PHP files Existing PHP files blogVAULT
14.
What to do
when my site gets hacked? blogVAULT
15.
Recover from Backup
Most reliable method blogVAULT
16.
Use Sucuri Not foolproof,
costs money blogVAULT
17.
Talk to an
expert Difficult Job. Don't take lightly. blogVAULT
18.
Change Password
blogVAULT
19.
Change Authentication
keys Removes existing sessions. blogVAULT
20.
Prevention is better
than Cure blogVAULT
21.
Update Wordpress /
Plugins / Themes blogVAULT
22.
Change Database Prefix
Prevent SQL Injection attacks blogVAULT
23.
Disable File Editor define('DISALLOW_FILE_EDIT',
true); blogVAULT
24.
Make Folders /
Files Readonly blogVAULT
25.
Prevent File Execution AddHandler
cgi-script .php .pl .py .jsp .asp .htm .shtml .sh .cgi blogVAULT
26.
Use SSL /
Google Authenticator blogVAULT
27.
Set Authentication Keys define('AUTH_KEY',
'put your unique phrase here'); define('SECURE_AUTH_KEY', 'put your unique phrase here'); define('LOGGED_IN_KEY', 'put your unique phrase here'); define('NONCE_KEY', 'put your unique phrase here'); define('AUTH_SALT', 'put your unique phrase here'); define('SECURE_AUTH_SALT', 'put your unique phrase here'); define('LOGGED_IN_SALT', 'put your unique phrase here'); define('NONCE_SALT', 'put your unique phrase here'); blogVAULT
28.
Security by Obscurity remove
admin user / hide wordpress version / ... blogVAULT
29.
Automatic Backups
e.g. use blogVAULT blogVAULT
30.
What makes a
good backup solution? Complete - Database + Files Offsite - Local backup is as good as none Regular Backup History of backup Test the Restore Secure Backup blogVAULT
31.
Thank you
blogVAULT http://blogvault.net We are Hiring!
Download now