SlideShare ist ein Scribd-Unternehmen logo
1 von 19
Downloaden Sie, um offline zu lesen
Wordpress Security
Claire Jordan - Spearmint Digital
Why Wordpress Security
● Wordpress is open source
● So is Apache and Linux
● Open source = free, but everyone can see
the code
● Hackers don’t specifically attack your site -
look for vulnerable sites on the internet
Your Server
● Home of your site, security starts here
● VPS vs Shared Hosting
● Use SSH or SFTP to connect
Install Wordpress Correctly
● Don’t use fantastico
● wordpress.org and do a manual install
Replace Security Keys
● It’s like changing your locks
● Setup authentication keys and salts
● Generate new keys at:
http://api.wordpress.org/secret-key/1.1/salt
● Copy and paste into wp-config.php
● Can do on existing site, will just make users
login again.
Replace Security Keys
Change the Table Prefix
● Change table prefixes
● default uses wp_ wp1_ wp2_
● If a new website, do this in wp-config.php
● If existing website it’s harder
● Good tutorial at:
http://wpbeginner.com/wp-tutorials/how-to-change-the-
wordpress-database-prefix-to-improve-security
● Can also do with a plugin
Get Rid of Comment Spam
● Install Akismet
● Shows your site is well managed
● No more spam!
Use Quality Themes and Plugins
● Bad theme or plugin = dangerous code
● Good themes - eg. studiopress, woothemes
● Good plugins - look at reviews
● Limit number of plugins
● Delete anything not in use
Update Everything
● Update wordpress core, plugins and theme
● Updates patch known vulnerabilities
● Check your site often
Good Username and Password
● Hackers only need 2 pieces of info, don’t
give them the first one
● Unique username and password
Good Username and Password
● If you need to change username
http://youtu.be/1R0X-zrtF1k
● Get a good password
www.strongpasswordgenerator.com
● Use a non-admin user for posting, show
author's real name
Limit Login Attempts
● Don’t want hackers to be able to try guess
the password
Backup Your Site
● A few good plugins:
○ Vaultpress - backups immediately $15/month
○ Backupbuddy - easy to use, good support, $80 for a
license
○ BackWPup - free plugin, can choose where to
backup to
Suggested Backup Routine
● Using BackWPup
● Backup to dropbox
● Backup everything (theme, files, database,
plugin list)
● Have 3 jobs, 1 for daily, 1 for weekly and 1
for monthly
● Runs each day at 3am
More Security
● Lots more things you can do
● A few examples:
○ blank .html files
○ custom .htaccess files
○ limit access to your IP address
○ secure files with passwords
● Security can always be taken to the next
level
Security Plugin
● Install Better WP Security
● Backup your blog
● Needs to change core files
● Use one click protection
● Go through the system status
Security Plugin
● Good tutorial:
http://www.wpbrix.com/wordpress/how-to-secure-
wordpress-with-better-wp-security
Questions?
Feel free to contact me at:
Claire Jordan
www.spearmintdigital.com.au
claire@spearmintdigital.com.au

Weitere Àhnliche Inhalte

Andere mochten auch

Portafolio de sociologia 2
Portafolio de sociologia 2Portafolio de sociologia 2
Portafolio de sociologia 2Soniarcos
 
Universal Design
Universal Design Universal Design
Universal Design lydia111193
 
The Queen of Rock and Roll
The Queen of Rock and RollThe Queen of Rock and Roll
The Queen of Rock and Rollrockandrollboxmay21
 
La Regina del Rock and Roll
La Regina del Rock and RollLa Regina del Rock and Roll
La Regina del Rock and Rollrockandrollboxmay21
 
Tina Turner Die Königin Rock and Roll
Tina Turner Die Königin Rock and RollTina Turner Die Königin Rock and Roll
Tina Turner Die Königin Rock and Rollrockandrollboxmay21
 
Tina Turner The Queen of Rock and Roll
Tina Turner The Queen of Rock and RollTina Turner The Queen of Rock and Roll
Tina Turner The Queen of Rock and Rollrockandrollboxmay21
 
The Queen of Rock and Roll
The Queen of Rock and RollThe Queen of Rock and Roll
The Queen of Rock and Rollrockandrollboxmay21
 
The Queen of Rock and Roll
The Queen of Rock and RollThe Queen of Rock and Roll
The Queen of Rock and Rollrockandrollboxmay21
 
Themesinmacbeth 121009002959-phpapp01
Themesinmacbeth 121009002959-phpapp01Themesinmacbeth 121009002959-phpapp01
Themesinmacbeth 121009002959-phpapp01Ontario eSchool
 
Die Königin Rock and Roll
Die Königin Rock and RollDie Königin Rock and Roll
Die Königin Rock and Rollrockandrollboxmay21
 
Consumed by cancer
Consumed by cancerConsumed by cancer
Consumed by cancerRyan Nichols
 
Tina Turner La Reina del Rock and Roll
Tina Turner La Reina del Rock and RollTina Turner La Reina del Rock and Roll
Tina Turner La Reina del Rock and Rollrockandrollboxmay21
 
Tina Turner The Queen of Rock and Roll
Tina Turner The Queen of Rock and RollTina Turner The Queen of Rock and Roll
Tina Turner The Queen of Rock and Rollrockandrollboxmay21
 

Andere mochten auch (18)

Portafolio de sociologia 2
Portafolio de sociologia 2Portafolio de sociologia 2
Portafolio de sociologia 2
 
Universal Design
Universal Design Universal Design
Universal Design
 
The Queen of Rock and Roll
The Queen of Rock and RollThe Queen of Rock and Roll
The Queen of Rock and Roll
 
La Regina del Rock and Roll
La Regina del Rock and RollLa Regina del Rock and Roll
La Regina del Rock and Roll
 
Prasad n. resume
Prasad n. resumePrasad n. resume
Prasad n. resume
 
Hpact resident lecture
Hpact resident lecture Hpact resident lecture
Hpact resident lecture
 
Tina Turner Die Königin Rock and Roll
Tina Turner Die Königin Rock and RollTina Turner Die Königin Rock and Roll
Tina Turner Die Königin Rock and Roll
 
Idc business-value-of-openshift
Idc business-value-of-openshiftIdc business-value-of-openshift
Idc business-value-of-openshift
 
Tina Turner The Queen of Rock and Roll
Tina Turner The Queen of Rock and RollTina Turner The Queen of Rock and Roll
Tina Turner The Queen of Rock and Roll
 
MOST Creative Camp
MOST Creative CampMOST Creative Camp
MOST Creative Camp
 
The Queen of Rock and Roll
The Queen of Rock and RollThe Queen of Rock and Roll
The Queen of Rock and Roll
 
The Queen of Rock and Roll
The Queen of Rock and RollThe Queen of Rock and Roll
The Queen of Rock and Roll
 
A Rainha do Rock and Roll
A Rainha do Rock and RollA Rainha do Rock and Roll
A Rainha do Rock and Roll
 
Themesinmacbeth 121009002959-phpapp01
Themesinmacbeth 121009002959-phpapp01Themesinmacbeth 121009002959-phpapp01
Themesinmacbeth 121009002959-phpapp01
 
Die Königin Rock and Roll
Die Königin Rock and RollDie Königin Rock and Roll
Die Königin Rock and Roll
 
Consumed by cancer
Consumed by cancerConsumed by cancer
Consumed by cancer
 
Tina Turner La Reina del Rock and Roll
Tina Turner La Reina del Rock and RollTina Turner La Reina del Rock and Roll
Tina Turner La Reina del Rock and Roll
 
Tina Turner The Queen of Rock and Roll
Tina Turner The Queen of Rock and RollTina Turner The Queen of Rock and Roll
Tina Turner The Queen of Rock and Roll
 

KĂŒrzlich hochgeladen

Presentation on how to chat with PDF using ChatGPT code interpreter
Presentation on how to chat with PDF using ChatGPT code interpreterPresentation on how to chat with PDF using ChatGPT code interpreter
Presentation on how to chat with PDF using ChatGPT code interpreternaman860154
 
2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...Martijn de Jong
 
[2024]Digital Global Overview Report 2024 Meltwater.pdf
[2024]Digital Global Overview Report 2024 Meltwater.pdf[2024]Digital Global Overview Report 2024 Meltwater.pdf
[2024]Digital Global Overview Report 2024 Meltwater.pdfhans926745
 
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024The Digital Insurer
 
The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024Rafal Los
 
GenCyber Cyber Security Day Presentation
GenCyber Cyber Security Day PresentationGenCyber Cyber Security Day Presentation
GenCyber Cyber Security Day PresentationMichael W. Hawkins
 
The Codex of Business Writing Software for Real-World Solutions 2.pptx
The Codex of Business Writing Software for Real-World Solutions 2.pptxThe Codex of Business Writing Software for Real-World Solutions 2.pptx
The Codex of Business Writing Software for Real-World Solutions 2.pptxMalak Abu Hammad
 
🐬 The future of MySQL is Postgres 🐘
🐬  The future of MySQL is Postgres   🐘🐬  The future of MySQL is Postgres   🐘
🐬 The future of MySQL is Postgres 🐘RTylerCroy
 
CNv6 Instructor Chapter 6 Quality of Service
CNv6 Instructor Chapter 6 Quality of ServiceCNv6 Instructor Chapter 6 Quality of Service
CNv6 Instructor Chapter 6 Quality of Servicegiselly40
 
Powerful Google developer tools for immediate impact! (2023-24 C)
Powerful Google developer tools for immediate impact! (2023-24 C)Powerful Google developer tools for immediate impact! (2023-24 C)
Powerful Google developer tools for immediate impact! (2023-24 C)wesley chun
 
EIS-Webinar-Prompt-Knowledge-Eng-2024-04-08.pptx
EIS-Webinar-Prompt-Knowledge-Eng-2024-04-08.pptxEIS-Webinar-Prompt-Knowledge-Eng-2024-04-08.pptx
EIS-Webinar-Prompt-Knowledge-Eng-2024-04-08.pptxEarley Information Science
 
Scaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organizationScaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organizationRadu Cotescu
 
Boost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdfBoost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdfsudhanshuwaghmare1
 
Boost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivityBoost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivityPrincipled Technologies
 
Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...
Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...
Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...Igalia
 
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
04-2024-HHUG-Sales-and-Marketing-Alignment.pptxHampshireHUG
 
Slack Application Development 101 Slides
Slack Application Development 101 SlidesSlack Application Development 101 Slides
Slack Application Development 101 Slidespraypatel2
 
08448380779 Call Girls In Greater Kailash - I Women Seeking Men
08448380779 Call Girls In Greater Kailash - I Women Seeking Men08448380779 Call Girls In Greater Kailash - I Women Seeking Men
08448380779 Call Girls In Greater Kailash - I Women Seeking MenDelhi Call girls
 
Histor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slideHistor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slidevu2urc
 
Advantages of Hiring UIUX Design Service Providers for Your Business
Advantages of Hiring UIUX Design Service Providers for Your BusinessAdvantages of Hiring UIUX Design Service Providers for Your Business
Advantages of Hiring UIUX Design Service Providers for Your BusinessPixlogix Infotech
 

KĂŒrzlich hochgeladen (20)

Presentation on how to chat with PDF using ChatGPT code interpreter
Presentation on how to chat with PDF using ChatGPT code interpreterPresentation on how to chat with PDF using ChatGPT code interpreter
Presentation on how to chat with PDF using ChatGPT code interpreter
 
2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...
 
[2024]Digital Global Overview Report 2024 Meltwater.pdf
[2024]Digital Global Overview Report 2024 Meltwater.pdf[2024]Digital Global Overview Report 2024 Meltwater.pdf
[2024]Digital Global Overview Report 2024 Meltwater.pdf
 
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
 
The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024
 
GenCyber Cyber Security Day Presentation
GenCyber Cyber Security Day PresentationGenCyber Cyber Security Day Presentation
GenCyber Cyber Security Day Presentation
 
The Codex of Business Writing Software for Real-World Solutions 2.pptx
The Codex of Business Writing Software for Real-World Solutions 2.pptxThe Codex of Business Writing Software for Real-World Solutions 2.pptx
The Codex of Business Writing Software for Real-World Solutions 2.pptx
 
🐬 The future of MySQL is Postgres 🐘
🐬  The future of MySQL is Postgres   🐘🐬  The future of MySQL is Postgres   🐘
🐬 The future of MySQL is Postgres 🐘
 
CNv6 Instructor Chapter 6 Quality of Service
CNv6 Instructor Chapter 6 Quality of ServiceCNv6 Instructor Chapter 6 Quality of Service
CNv6 Instructor Chapter 6 Quality of Service
 
Powerful Google developer tools for immediate impact! (2023-24 C)
Powerful Google developer tools for immediate impact! (2023-24 C)Powerful Google developer tools for immediate impact! (2023-24 C)
Powerful Google developer tools for immediate impact! (2023-24 C)
 
EIS-Webinar-Prompt-Knowledge-Eng-2024-04-08.pptx
EIS-Webinar-Prompt-Knowledge-Eng-2024-04-08.pptxEIS-Webinar-Prompt-Knowledge-Eng-2024-04-08.pptx
EIS-Webinar-Prompt-Knowledge-Eng-2024-04-08.pptx
 
Scaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organizationScaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organization
 
Boost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdfBoost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdf
 
Boost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivityBoost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivity
 
Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...
Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...
Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...
 
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
 
Slack Application Development 101 Slides
Slack Application Development 101 SlidesSlack Application Development 101 Slides
Slack Application Development 101 Slides
 
08448380779 Call Girls In Greater Kailash - I Women Seeking Men
08448380779 Call Girls In Greater Kailash - I Women Seeking Men08448380779 Call Girls In Greater Kailash - I Women Seeking Men
08448380779 Call Girls In Greater Kailash - I Women Seeking Men
 
Histor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slideHistor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slide
 
Advantages of Hiring UIUX Design Service Providers for Your Business
Advantages of Hiring UIUX Design Service Providers for Your BusinessAdvantages of Hiring UIUX Design Service Providers for Your Business
Advantages of Hiring UIUX Design Service Providers for Your Business
 

Wordpress Security

  • 1. Wordpress Security Claire Jordan - Spearmint Digital
  • 2. Why Wordpress Security ● Wordpress is open source ● So is Apache and Linux ● Open source = free, but everyone can see the code ● Hackers don’t specifically attack your site - look for vulnerable sites on the internet
  • 3. Your Server ● Home of your site, security starts here ● VPS vs Shared Hosting ● Use SSH or SFTP to connect
  • 4. Install Wordpress Correctly ● Don’t use fantastico ● wordpress.org and do a manual install
  • 5. Replace Security Keys ● It’s like changing your locks ● Setup authentication keys and salts ● Generate new keys at: http://api.wordpress.org/secret-key/1.1/salt ● Copy and paste into wp-config.php ● Can do on existing site, will just make users login again.
  • 7. Change the Table Prefix ● Change table prefixes ● default uses wp_ wp1_ wp2_ ● If a new website, do this in wp-config.php ● If existing website it’s harder ● Good tutorial at: http://wpbeginner.com/wp-tutorials/how-to-change-the- wordpress-database-prefix-to-improve-security ● Can also do with a plugin
  • 8. Get Rid of Comment Spam ● Install Akismet ● Shows your site is well managed ● No more spam!
  • 9. Use Quality Themes and Plugins ● Bad theme or plugin = dangerous code ● Good themes - eg. studiopress, woothemes ● Good plugins - look at reviews ● Limit number of plugins ● Delete anything not in use
  • 10. Update Everything ● Update wordpress core, plugins and theme ● Updates patch known vulnerabilities ● Check your site often
  • 11. Good Username and Password ● Hackers only need 2 pieces of info, don’t give them the first one ● Unique username and password
  • 12. Good Username and Password ● If you need to change username http://youtu.be/1R0X-zrtF1k ● Get a good password www.strongpasswordgenerator.com ● Use a non-admin user for posting, show author's real name
  • 13. Limit Login Attempts ● Don’t want hackers to be able to try guess the password
  • 14. Backup Your Site ● A few good plugins: ○ Vaultpress - backups immediately $15/month ○ Backupbuddy - easy to use, good support, $80 for a license ○ BackWPup - free plugin, can choose where to backup to
  • 15. Suggested Backup Routine ● Using BackWPup ● Backup to dropbox ● Backup everything (theme, files, database, plugin list) ● Have 3 jobs, 1 for daily, 1 for weekly and 1 for monthly ● Runs each day at 3am
  • 16. More Security ● Lots more things you can do ● A few examples: ○ blank .html files ○ custom .htaccess files ○ limit access to your IP address ○ secure files with passwords ● Security can always be taken to the next level
  • 17. Security Plugin ● Install Better WP Security ● Backup your blog ● Needs to change core files ● Use one click protection ● Go through the system status
  • 18. Security Plugin ● Good tutorial: http://www.wpbrix.com/wordpress/how-to-secure- wordpress-with-better-wp-security
  • 19. Questions? Feel free to contact me at: Claire Jordan www.spearmintdigital.com.au claire@spearmintdigital.com.au