WordPress How To: 6 Steps to Avoid Hacker Headaches
Regardless of how your site is structured or coded, you need to be aware of and do certain things to ensure your site remains secure and is not a target of hackers. For WordPress, these steps are pretty simple and can, for the most part, be handled automatically or with little effort. The key is to get a system in place and follow it.
Today I’ll share with you the basics that anyone who is not a techie can easily integrate to help protect their WordPress site/Blog.
- Once your WordPress site is setup, delete your default Admin account and setup a new account. Hackers look for that account to exploit.
- Make sure your WordPress Username is not your name. That’s the first guess those trying to access your system will make.
- Change your password to something wacky. Not your pet’s name, not your husband’s nickname, not your birthdate. Include at least 8 characters, both upper and lower case and throw in some other characters for good measure. Examples of a great password: ^43dU~La2 . Do the same for your server/FTP password by creating a different password than what you use for your WordPress login.
- Better yet, encrypt your login with the Chap Secure Login and LoginLockdown plugins.
- Install WP Security Plugin to cover all the bases. This plugin will scan your WordPress installation for security vulnerabilities and suggests corrective actions.
- Backup and Update! When you see that yellow nag bar at the top of your screen update WordPress and your plugins right then and there. Now sure how? I’ve got a post to help you backup and update WordPress as easy as 1,2,3!
Every week I get panicked WordPressers e-mailing me after their sites have been hacked — no backups, no precautions taken. If you find yourself in this position, crying like a baby — you’ll have no one to blame but yourself because now you know better! You can avoid this unpleasant experience by taking the 6 steps above. What are you waiting for?
At your service,
Judith
You might also like...
- WordPress How To: 3 Easy Steps for Gathering Great Post Ideas
- WordPress How To: Security 101
- How To Avoid Looking Spammy
- Why Blog? Why WordPress?
- WordPress How To: Tired of Comment Spam?










Hi Judith]
Thanks for the great advice. Just one thing how do I delete your default Admin account and setup a new account?
Any help/pointers would be appreciated!
Maureen
Hey, Maureen:
What you do is setup another Admin: Users > Add New with administrative permission. Then, log out and re-login using your new account informaiton. At that point you can then delete the default Admin account. HTH! ;-)
Thanks for the advice and I have to say the wp security scan was a great plugin recommendation!