SlideShare une entreprise Scribd logo
1  sur  22
WordPress Security Tips
WooNinjas - WordPress Development Services
Is Your Web-site Secure?
WooNinjas - WordPress Development Services
If A Hacker Gains Access To
Your Web-Site (CMS), What
Can They Really do?
WooNinjas - WordPress Development Services
Anything They Want :-O
WooNinjas - WordPress Development Services
What Inspires A Hacker?
WooNinjas - WordPress Development Services
 To spy on friends, family members or even business rivals
 For thrill and excitement
 Intellectual challenge
 Money – a main motivator
 To steal services and/or valuable files
WooNinjas - WordPress Development Services
Causes Of Being Hacked?
WooNinjas - WordPress Development Services
Vulnerable Plugins And
Themes
Brute Force On
Administration
Password And Cookie Tapping
“Neighbour“ Sites
On Shared Hosting
Indirect Ways–
Phishing, Malware
(Keylogger, Saved FTP
Password)
Vulnerabilities In
WP Core
WooNinjas - WordPress Development Services
WooNinjas - WordPress Development Services
WooNinjas - WordPress Development Services
How You Can Eradicate
That?
WooNinjas - WordPress Development Services
WooNinjas - WordPress Development Services
 Use Strong Username And Password
• Recommended to change the Username ‘Admin’ to
something Different
• Use Password Generator to create Strong Passwords
WooNinjas - WordPress Development Services
 Use Recommended Plugins
Use Renowned Plugins such as
Woo-Commerce, Yoast SEO etc
WooNinjas - WordPress Development Services
 Update Update Update!
Keep your WordPress Core,
Plugins and Themes Up-
To-Date for better
performance, higher
security protocols and bug
fixes.
WooNinjas - WordPress Development Services
 Disable File Edits
Disable file edit access else the Hacker can
harm your site in various kind of ways with
the help of
“Define ( ‘DISALLOW_FILE_EDIT’, true );”
WooNinjas - WordPress Development Services
 Shared Hosting
While using a Shared Hosting,
Hackers got a huge chance to
easily hack your site.
To abolish that risk, Ask your
Hosting provider for safety
measures to encounter this
issue.
WooNinjas - WordPress Development Services
Move The Wp-config.Php File
WordPress added the ability to move the wp-config.php
file one directory above your WordPress root file
If WordPress is located here:
public_html/wordpress/wp-config.php
You can move your wp-config.php file to
here:
public_html/wp-config.php
WordPress automatically checks the parent directory if a
wp-config.php file is not found in your root directory
This makes it nearly impossible for anyone to access your wp-config.php
file as it now resides outside of your website’s root directory
WooNinjas - WordPress Development Services
 Use Strong Encryption
 Avoid plain text protocols
 Everyone should use SSL (and
make sure it’s configured
correctly)
WooNinjas - WordPress Development Services
 Backup Backup!
Backup your:
 Database
 Uploaded media (wp-content/uploads)
 Custom themes and plugins
 Wp-config.Php
 Keep a list of your installed third-party plugins
WooNinjas - WordPress Development Services
 Last But Certainly Not Least
 Use Trusted source for themes and plugins.
 Know your admins, limit codes of accounts (WP, FTP Hosting) Etc.
 Use multiple tools and tactics to protect your site.’
 Be careful of bad certificates.
 Don‘t believe everything that comes by mail.
WooNinjas - WordPress Development Services
THANKYOU 
WooNinjas - WordPress Development Services

Contenu connexe

En vedette

Project Presentation by Thaissa Fischer_Feb2015_Metro Rio_Le Parkour
Project Presentation by Thaissa Fischer_Feb2015_Metro Rio_Le ParkourProject Presentation by Thaissa Fischer_Feb2015_Metro Rio_Le Parkour
Project Presentation by Thaissa Fischer_Feb2015_Metro Rio_Le Parkour
Thaissa Fischer
 
THE STRUCTRAL AND FUNCTIONAL STUDY OF FIBRILLIN-1 PROTEIN
THE STRUCTRAL AND FUNCTIONAL STUDY OF FIBRILLIN-1 PROTEINTHE STRUCTRAL AND FUNCTIONAL STUDY OF FIBRILLIN-1 PROTEIN
THE STRUCTRAL AND FUNCTIONAL STUDY OF FIBRILLIN-1 PROTEIN
Yash Pandya
 

En vedette (11)

Project Presentation by Thaissa Fischer_Feb2015_Metro Rio_Le Parkour
Project Presentation by Thaissa Fischer_Feb2015_Metro Rio_Le ParkourProject Presentation by Thaissa Fischer_Feb2015_Metro Rio_Le Parkour
Project Presentation by Thaissa Fischer_Feb2015_Metro Rio_Le Parkour
 
THE STRUCTRAL AND FUNCTIONAL STUDY OF FIBRILLIN-1 PROTEIN
THE STRUCTRAL AND FUNCTIONAL STUDY OF FIBRILLIN-1 PROTEINTHE STRUCTRAL AND FUNCTIONAL STUDY OF FIBRILLIN-1 PROTEIN
THE STRUCTRAL AND FUNCTIONAL STUDY OF FIBRILLIN-1 PROTEIN
 
gradijator- testna
gradijator- testnagradijator- testna
gradijator- testna
 
Surinam
SurinamSurinam
Surinam
 
PNY_Gorton_0313
PNY_Gorton_0313PNY_Gorton_0313
PNY_Gorton_0313
 
Tendencias y enfoques innovadores en educación
Tendencias y enfoques innovadores en educaciónTendencias y enfoques innovadores en educación
Tendencias y enfoques innovadores en educación
 
sistema de salud en Estados Unidos
sistema de salud en Estados Unidossistema de salud en Estados Unidos
sistema de salud en Estados Unidos
 
Dipos dinero electronico
Dipos dinero electronicoDipos dinero electronico
Dipos dinero electronico
 
Progetto Lorenteggio
Progetto LorenteggioProgetto Lorenteggio
Progetto Lorenteggio
 
Perifericos mixtos
Perifericos mixtosPerifericos mixtos
Perifericos mixtos
 
"Il naviglio" libro strenna dell'Ist. Ortopedico Gaetano Pini
"Il naviglio" libro strenna dell'Ist. Ortopedico Gaetano Pini"Il naviglio" libro strenna dell'Ist. Ortopedico Gaetano Pini
"Il naviglio" libro strenna dell'Ist. Ortopedico Gaetano Pini
 

Dernier

%+27788225528 love spells in Boston Psychic Readings, Attraction spells,Bring...
%+27788225528 love spells in Boston Psychic Readings, Attraction spells,Bring...%+27788225528 love spells in Boston Psychic Readings, Attraction spells,Bring...
%+27788225528 love spells in Boston Psychic Readings, Attraction spells,Bring...
masabamasaba
 
Abortion Pills In Pretoria ](+27832195400*)[ 🏥 Women's Abortion Clinic In Pre...
Abortion Pills In Pretoria ](+27832195400*)[ 🏥 Women's Abortion Clinic In Pre...Abortion Pills In Pretoria ](+27832195400*)[ 🏥 Women's Abortion Clinic In Pre...
Abortion Pills In Pretoria ](+27832195400*)[ 🏥 Women's Abortion Clinic In Pre...
Medical / Health Care (+971588192166) Mifepristone and Misoprostol tablets 200mg
 
Large-scale Logging Made Easy: Meetup at Deutsche Bank 2024
Large-scale Logging Made Easy: Meetup at Deutsche Bank 2024Large-scale Logging Made Easy: Meetup at Deutsche Bank 2024
Large-scale Logging Made Easy: Meetup at Deutsche Bank 2024
VictoriaMetrics
 
Abortion Pill Prices Tembisa [(+27832195400*)] 🏥 Women's Abortion Clinic in T...
Abortion Pill Prices Tembisa [(+27832195400*)] 🏥 Women's Abortion Clinic in T...Abortion Pill Prices Tembisa [(+27832195400*)] 🏥 Women's Abortion Clinic in T...
Abortion Pill Prices Tembisa [(+27832195400*)] 🏥 Women's Abortion Clinic in T...
Medical / Health Care (+971588192166) Mifepristone and Misoprostol tablets 200mg
 
The title is not connected to what is inside
The title is not connected to what is insideThe title is not connected to what is inside
The title is not connected to what is inside
shinachiaurasa2
 
%+27788225528 love spells in Knoxville Psychic Readings, Attraction spells,Br...
%+27788225528 love spells in Knoxville Psychic Readings, Attraction spells,Br...%+27788225528 love spells in Knoxville Psychic Readings, Attraction spells,Br...
%+27788225528 love spells in Knoxville Psychic Readings, Attraction spells,Br...
masabamasaba
 

Dernier (20)

%+27788225528 love spells in Boston Psychic Readings, Attraction spells,Bring...
%+27788225528 love spells in Boston Psychic Readings, Attraction spells,Bring...%+27788225528 love spells in Boston Psychic Readings, Attraction spells,Bring...
%+27788225528 love spells in Boston Psychic Readings, Attraction spells,Bring...
 
%in Midrand+277-882-255-28 abortion pills for sale in midrand
%in Midrand+277-882-255-28 abortion pills for sale in midrand%in Midrand+277-882-255-28 abortion pills for sale in midrand
%in Midrand+277-882-255-28 abortion pills for sale in midrand
 
Abortion Pills In Pretoria ](+27832195400*)[ 🏥 Women's Abortion Clinic In Pre...
Abortion Pills In Pretoria ](+27832195400*)[ 🏥 Women's Abortion Clinic In Pre...Abortion Pills In Pretoria ](+27832195400*)[ 🏥 Women's Abortion Clinic In Pre...
Abortion Pills In Pretoria ](+27832195400*)[ 🏥 Women's Abortion Clinic In Pre...
 
MarTech Trend 2024 Book : Marketing Technology Trends (2024 Edition) How Data...
MarTech Trend 2024 Book : Marketing Technology Trends (2024 Edition) How Data...MarTech Trend 2024 Book : Marketing Technology Trends (2024 Edition) How Data...
MarTech Trend 2024 Book : Marketing Technology Trends (2024 Edition) How Data...
 
Large-scale Logging Made Easy: Meetup at Deutsche Bank 2024
Large-scale Logging Made Easy: Meetup at Deutsche Bank 2024Large-scale Logging Made Easy: Meetup at Deutsche Bank 2024
Large-scale Logging Made Easy: Meetup at Deutsche Bank 2024
 
WSO2CON2024 - It's time to go Platformless
WSO2CON2024 - It's time to go PlatformlessWSO2CON2024 - It's time to go Platformless
WSO2CON2024 - It's time to go Platformless
 
WSO2CON 2024 - Does Open Source Still Matter?
WSO2CON 2024 - Does Open Source Still Matter?WSO2CON 2024 - Does Open Source Still Matter?
WSO2CON 2024 - Does Open Source Still Matter?
 
Payment Gateway Testing Simplified_ A Step-by-Step Guide for Beginners.pdf
Payment Gateway Testing Simplified_ A Step-by-Step Guide for Beginners.pdfPayment Gateway Testing Simplified_ A Step-by-Step Guide for Beginners.pdf
Payment Gateway Testing Simplified_ A Step-by-Step Guide for Beginners.pdf
 
Direct Style Effect Systems - The Print[A] Example - A Comprehension Aid
Direct Style Effect Systems -The Print[A] Example- A Comprehension AidDirect Style Effect Systems -The Print[A] Example- A Comprehension Aid
Direct Style Effect Systems - The Print[A] Example - A Comprehension Aid
 
Abortion Pill Prices Tembisa [(+27832195400*)] 🏥 Women's Abortion Clinic in T...
Abortion Pill Prices Tembisa [(+27832195400*)] 🏥 Women's Abortion Clinic in T...Abortion Pill Prices Tembisa [(+27832195400*)] 🏥 Women's Abortion Clinic in T...
Abortion Pill Prices Tembisa [(+27832195400*)] 🏥 Women's Abortion Clinic in T...
 
VTU technical seminar 8Th Sem on Scikit-learn
VTU technical seminar 8Th Sem on Scikit-learnVTU technical seminar 8Th Sem on Scikit-learn
VTU technical seminar 8Th Sem on Scikit-learn
 
The title is not connected to what is inside
The title is not connected to what is insideThe title is not connected to what is inside
The title is not connected to what is inside
 
%in Bahrain+277-882-255-28 abortion pills for sale in Bahrain
%in Bahrain+277-882-255-28 abortion pills for sale in Bahrain%in Bahrain+277-882-255-28 abortion pills for sale in Bahrain
%in Bahrain+277-882-255-28 abortion pills for sale in Bahrain
 
%in Soweto+277-882-255-28 abortion pills for sale in soweto
%in Soweto+277-882-255-28 abortion pills for sale in soweto%in Soweto+277-882-255-28 abortion pills for sale in soweto
%in Soweto+277-882-255-28 abortion pills for sale in soweto
 
Architecture decision records - How not to get lost in the past
Architecture decision records - How not to get lost in the pastArchitecture decision records - How not to get lost in the past
Architecture decision records - How not to get lost in the past
 
W01_panagenda_Navigating-the-Future-with-The-Hitchhikers-Guide-to-Notes-and-D...
W01_panagenda_Navigating-the-Future-with-The-Hitchhikers-Guide-to-Notes-and-D...W01_panagenda_Navigating-the-Future-with-The-Hitchhikers-Guide-to-Notes-and-D...
W01_panagenda_Navigating-the-Future-with-The-Hitchhikers-Guide-to-Notes-and-D...
 
Crypto Cloud Review - How To Earn Up To $500 Per DAY Of Bitcoin 100% On AutoP...
Crypto Cloud Review - How To Earn Up To $500 Per DAY Of Bitcoin 100% On AutoP...Crypto Cloud Review - How To Earn Up To $500 Per DAY Of Bitcoin 100% On AutoP...
Crypto Cloud Review - How To Earn Up To $500 Per DAY Of Bitcoin 100% On AutoP...
 
%in Hazyview+277-882-255-28 abortion pills for sale in Hazyview
%in Hazyview+277-882-255-28 abortion pills for sale in Hazyview%in Hazyview+277-882-255-28 abortion pills for sale in Hazyview
%in Hazyview+277-882-255-28 abortion pills for sale in Hazyview
 
%+27788225528 love spells in Knoxville Psychic Readings, Attraction spells,Br...
%+27788225528 love spells in Knoxville Psychic Readings, Attraction spells,Br...%+27788225528 love spells in Knoxville Psychic Readings, Attraction spells,Br...
%+27788225528 love spells in Knoxville Psychic Readings, Attraction spells,Br...
 
%in ivory park+277-882-255-28 abortion pills for sale in ivory park
%in ivory park+277-882-255-28 abortion pills for sale in ivory park %in ivory park+277-882-255-28 abortion pills for sale in ivory park
%in ivory park+277-882-255-28 abortion pills for sale in ivory park
 

WordPress Security Tips By WooNinjas - WordPress Development Services

  • 1. WordPress Security Tips WooNinjas - WordPress Development Services
  • 2. Is Your Web-site Secure? WooNinjas - WordPress Development Services
  • 3. If A Hacker Gains Access To Your Web-Site (CMS), What Can They Really do? WooNinjas - WordPress Development Services
  • 4. Anything They Want :-O WooNinjas - WordPress Development Services
  • 5. What Inspires A Hacker? WooNinjas - WordPress Development Services
  • 6.  To spy on friends, family members or even business rivals  For thrill and excitement  Intellectual challenge  Money – a main motivator  To steal services and/or valuable files WooNinjas - WordPress Development Services
  • 7. Causes Of Being Hacked? WooNinjas - WordPress Development Services
  • 8. Vulnerable Plugins And Themes Brute Force On Administration Password And Cookie Tapping “Neighbour“ Sites On Shared Hosting Indirect Ways– Phishing, Malware (Keylogger, Saved FTP Password) Vulnerabilities In WP Core WooNinjas - WordPress Development Services
  • 9. WooNinjas - WordPress Development Services
  • 10. WooNinjas - WordPress Development Services
  • 11. How You Can Eradicate That? WooNinjas - WordPress Development Services
  • 12. WooNinjas - WordPress Development Services
  • 13.  Use Strong Username And Password • Recommended to change the Username ‘Admin’ to something Different • Use Password Generator to create Strong Passwords WooNinjas - WordPress Development Services
  • 14.  Use Recommended Plugins Use Renowned Plugins such as Woo-Commerce, Yoast SEO etc WooNinjas - WordPress Development Services
  • 15.  Update Update Update! Keep your WordPress Core, Plugins and Themes Up- To-Date for better performance, higher security protocols and bug fixes. WooNinjas - WordPress Development Services
  • 16.  Disable File Edits Disable file edit access else the Hacker can harm your site in various kind of ways with the help of “Define ( ‘DISALLOW_FILE_EDIT’, true );” WooNinjas - WordPress Development Services
  • 17.  Shared Hosting While using a Shared Hosting, Hackers got a huge chance to easily hack your site. To abolish that risk, Ask your Hosting provider for safety measures to encounter this issue. WooNinjas - WordPress Development Services
  • 18. Move The Wp-config.Php File WordPress added the ability to move the wp-config.php file one directory above your WordPress root file If WordPress is located here: public_html/wordpress/wp-config.php You can move your wp-config.php file to here: public_html/wp-config.php WordPress automatically checks the parent directory if a wp-config.php file is not found in your root directory This makes it nearly impossible for anyone to access your wp-config.php file as it now resides outside of your website’s root directory WooNinjas - WordPress Development Services
  • 19.  Use Strong Encryption  Avoid plain text protocols  Everyone should use SSL (and make sure it’s configured correctly) WooNinjas - WordPress Development Services
  • 20.  Backup Backup! Backup your:  Database  Uploaded media (wp-content/uploads)  Custom themes and plugins  Wp-config.Php  Keep a list of your installed third-party plugins WooNinjas - WordPress Development Services
  • 21.  Last But Certainly Not Least  Use Trusted source for themes and plugins.  Know your admins, limit codes of accounts (WP, FTP Hosting) Etc.  Use multiple tools and tactics to protect your site.’  Be careful of bad certificates.  Don‘t believe everything that comes by mail. WooNinjas - WordPress Development Services
  • 22. THANKYOU  WooNinjas - WordPress Development Services