{"id":50,"date":"2016-07-26T03:58:36","date_gmt":"2016-07-26T03:58:36","guid":{"rendered":"http:\/\/www.fastwebhost.in\/blog\/?p=50"},"modified":"2018-07-03T06:06:06","modified_gmt":"2018-07-03T06:06:06","slug":"wordpress-website-security-tips","status":"publish","type":"post","link":"https:\/\/www.fastwebhost.in\/blog\/wordpress-website-security-tips\/","title":{"rendered":"Top 10 tips for WordPress Website Security"},"content":{"rendered":"<p>In this tutorial, you will learn some tips on WordPress web security. You have spent days to build beautiful WordPress website and ready to launch it! \u00a0You should tweak few settings before launching it.<\/p>\n<p>Now, it\u2019s time to keep your WordPress site secure from bad guys. There are thousands of good articles written on WordPress website security.\u00a0Just thought of sharing few popular tips from our end.<\/p>\n<p>Let\u2019s get straight into WordPress Security. Here you go!<\/p>\n<h2><strong>Update WordPress, plugins, and themes regularly<\/strong><\/h2>\n<p>Make sure you update WordPress to latest versions as soon as released. We highly recommend updating WordPress core, Plugins, and Themes. You can get updates from WordPress releases from\u00a0<a href=\"https:\/\/codex.wordpress.org\/Current_events\">here<\/a><\/p>\n<p>Never use outdated plugins and themes at all. Also, make sure that take a\u00a0backup before upgrading to latest versions, few times upgrade may fail and create chaos. You know what I mean, right?<\/p>\n<p>We at\u00a0<a href=\"http:\/\/www.fastwebhost.in\/wordpress-hosting.html\">FastWebHost<\/a>\u00a0use latest and stable versions software like PHP, MySQL or MariaDB to secure WordPress websites. Check our WordPress hosting features.<\/p>\n<h2><strong> Keep WordPress clean<\/strong><\/h2>\n<p>Yes, remove all unused themes, inactive plugins. Keep it simple and tidy!<\/p>\n<h2><strong> Download plugins and themes from secured sources<\/strong><\/h2>\n<p>Plugins and themes are very important elements of WordPress website. There are a\u00a0lot of sources to download feature-rich plugins and themes.<\/p>\n<p>Make sure to check below things before installing in your WordPress.<\/p>\n<ol>\n<li>Check reviews and comments of the plugin<\/li>\n<li>If support is provided in which form ( free or paid)<\/li>\n<li>The reputation of plugin or theme author<\/li>\n<\/ol>\n<p>Therefore, always download plugins and themes from known and secured sources.<\/p>\n<h2><strong> Change admin username<\/strong><\/h2>\n<p>\u201cadmin\u201d is the most popular username for WordPress websites. Everyone knows that, so let\u2019s keep it secure.<\/p>\n<p>It\u2019s better to setup a new user with a secret username with admin privileges. Once a new user with admin permissions created, then delete old admin user from WordPress. Take a\u00a0backup of WordPress before doing that, just in case.<\/p>\n<h2><strong> Use strong passwords<\/strong><\/h2>\n<p>Do you know most common passwords on Internet? \u00a0You won\u2019t believe it: \u201c123456\u201d, \u201cpassword\u201d, \u201c12345678\u201d, \u201cqwerty\u201d and \u201c123456789\u201d.<\/p>\n<p>If you are still using weak passwords, we guarantee you that your precious WordPress will be hacked in just a few hours. It\u2019s crazy to see a\u00a0lot of WordPress owners still using old fashioned logins.<\/p>\n<p><a href=\"http:\/\/www.fastwebhost.in\/blog\/wp-content\/uploads\/2016\/07\/strongpassword.gif\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone wp-image-96\" src=\"http:\/\/www.fastwebhost.in\/blog\/wp-content\/uploads\/2016\/07\/strongpassword-300x69.gif\" alt=\"Strong Password\" width=\"430\" height=\"99\" \/><\/a><\/p>\n<p>We suggest you to set up strong passwords like \u201cHn@q3nf%$^$#\u201d. It is essential for your WordPress security.<\/p>\n<p>If you don\u2019t know how to generate strong passwords, just use\u00a0<a href=\"http:\/\/strongpasswordgenerator.com\/\">http:\/\/strongpasswordgenerator.com\/<\/a>\u00a0and\u00a0<a href=\"https:\/\/tools.arantius.com\/password\">https:\/\/tools.arantius.com\/password<\/a><\/p>\n<h2><strong> Use two-factor authentication<\/strong><\/h2>\n<p><a href=\"http:\/\/www.fastwebhost.in\/blog\/wp-content\/uploads\/2016\/07\/clef.png\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-51\" src=\"http:\/\/www.fastwebhost.in\/blog\/wp-content\/uploads\/2016\/07\/clef.png\" alt=\"Two factor authentication for wordpress\" width=\"772\" height=\"250\" srcset=\"https:\/\/www.fastwebhost.in\/blog\/wp-content\/uploads\/2016\/07\/clef.png 772w, https:\/\/www.fastwebhost.in\/blog\/wp-content\/uploads\/2016\/07\/clef-300x97.png 300w, https:\/\/www.fastwebhost.in\/blog\/wp-content\/uploads\/2016\/07\/clef-768x249.png 768w\" sizes=\"(max-width: 772px) 100vw, 772px\" \/><\/a><\/p>\n<p>More and more website using two-factor authentication for secure services and data safety. Google and many other web services use two-factor authentication.<\/p>\n<p>There are many plugins available for enabling this security layer to your WordPress.You can see most popular plugins from<a href=\"https:\/\/wordpress.org\/plugins\/search.php?q=two-factor\">https:\/\/WordPress.org\/plugins\/search.php?q=two-factor<\/a><\/p>\n<p>However, we highly recommend\u00a0<a href=\"https:\/\/wordpress.org\/plugins\/wpclef\/\">Clef<\/a>\u00a0Two Factor Authentication<\/p>\n<h2><strong> Regularly scan for and remove malware<\/strong><\/h2>\n<p><a href=\"http:\/\/www.fastwebhost.in\/blog\/wp-content\/uploads\/2016\/07\/GoogleChromeWarning.jpg\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-medium wp-image-52\" src=\"http:\/\/www.fastwebhost.in\/blog\/wp-content\/uploads\/2016\/07\/GoogleChromeWarning-300x220.jpg\" alt=\"Google Malware scanner\" width=\"300\" height=\"220\" srcset=\"https:\/\/www.fastwebhost.in\/blog\/wp-content\/uploads\/2016\/07\/GoogleChromeWarning-300x220.jpg 300w, https:\/\/www.fastwebhost.in\/blog\/wp-content\/uploads\/2016\/07\/GoogleChromeWarning.jpg 641w\" sizes=\"(max-width: 300px) 100vw, 300px\" \/><\/a><\/p>\n<p>Google doesn\u2019t scan or list pages of your WordPress site if it finds any malware. The bad part is google marks those pages in red! \u00a0Scary moment for any WordPress admin. Don\u2019t scratch your head, first clean up your WordPress core, plugin, themes and any uploaded content.<\/p>\n<p>Check your WordPress site malware status from tools like\u00a0<a href=\"https:\/\/sucuri.net\/scanner\/\">Sucuri<\/a>\u00a0and\u00a0<a href=\"https:\/\/www.fastwebhost.in\/sitelock.html\">SiteLock<\/a><\/p>\n<h2><strong> Setup proper permissions to folders and files<\/strong><\/h2>\n<p>Never give 777 permissions to files or folders because it would enable full privileges to hackers among your folders and files. \u00a0So the recommended permissions are below<\/p>\n<p>755 &#8211; \u00a0folders<\/p>\n<p>644 &#8211; \u00a0files<\/p>\n<p>For more information on permissions refer to\u00a0<a href=\"http:\/\/codex.wordpress.org\/Changing_File_Permissions\">this page<\/a>.<\/p>\n<h2><strong> Prevent directory browsing<\/strong><\/h2>\n<p>Usually, when web server can\u2019t find index files ( index.php or index.html ) it simply lists files, themes, plugins, and images. So it\u2019s easy for any hacker to see what files or folders you are hosting.<\/p>\n<p>The best way to secure your WordPress site is disallowing traversing through your folders or files.<\/p>\n<p>To secure WordPress folders, you should add to your\u00a0<em>.htaccess<\/em>\u00a0file this line:<\/p>\n<p><em>Options All -Indexes<\/em><\/p>\n<h2><strong> Aware of WordPress security concerns<\/strong><\/h2>\n<p>Keeping your WordPress website will be one of the most important ongoing and neverending process.\u00a0The more steps you take, the harder it will become for the hackers.<\/p>\n<p>These are quick and useful tips to get started in securing WordPress. Of course, there are many ways you could improve the security of WordPress sites.<\/p>\n<p>Finally, we\u2019ll keep you updated with new security tips to secure your<a href=\"http:\/\/www.fastwebhost.in\/blog\/wp-content\/uploads\/2016\/07\/strongpassword.gif\"><\/a>WordPress sites. Till then, all the best and\u00a0Happy WordPress hosting!<\/p>\n<p>\u00a0<\/p>\n","protected":false},"excerpt":{"rendered":"<p>In this tutorial, you will learn some tips on WordPress web security. You have spent days to build beautiful WordPress website and ready to launch it! \u00a0You should tweak few settings before launching it. Now, it\u2019s time to keep your WordPress site secure from bad guys. There are thousands of good articles written on WordPress [&hellip;]<\/p>\n","protected":false},"author":2,"featured_media":53,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"om_disable_all_campaigns":false,"_monsterinsights_skip_tracking":false,"_monsterinsights_sitenote_active":false,"_monsterinsights_sitenote_note":"","_monsterinsights_sitenote_category":0,"_uf_show_specific_survey":0,"_uf_disable_surveys":false,"footnotes":""},"categories":[2],"tags":[13,12],"aioseo_notices":[],"_links":{"self":[{"href":"https:\/\/www.fastwebhost.in\/blog\/wp-json\/wp\/v2\/posts\/50"}],"collection":[{"href":"https:\/\/www.fastwebhost.in\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.fastwebhost.in\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.fastwebhost.in\/blog\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.fastwebhost.in\/blog\/wp-json\/wp\/v2\/comments?post=50"}],"version-history":[{"count":3,"href":"https:\/\/www.fastwebhost.in\/blog\/wp-json\/wp\/v2\/posts\/50\/revisions"}],"predecessor-version":[{"id":4622,"href":"https:\/\/www.fastwebhost.in\/blog\/wp-json\/wp\/v2\/posts\/50\/revisions\/4622"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.fastwebhost.in\/blog\/wp-json\/wp\/v2\/media\/53"}],"wp:attachment":[{"href":"https:\/\/www.fastwebhost.in\/blog\/wp-json\/wp\/v2\/media?parent=50"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.fastwebhost.in\/blog\/wp-json\/wp\/v2\/categories?post=50"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.fastwebhost.in\/blog\/wp-json\/wp\/v2\/tags?post=50"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}