willem.com

10 security best practices to harden your WordPress website

Keep hackers out of the world's most popular content management system

Mar. 31, 2019 -

A lot of people use WordPress to manage their website, therefore it's no surprise people ask me to have a look at their site's security. As ethical hacker, I encounter WordPress in different shapes, sizes and states. Some of them are really badly protected against hacks. Prevent your site from being hacked using these 10 practical tips.

Continue reading
Leaking personal user information from the WordPress REST API
Leaking personal user information from the WordPress REST API
Do you trust the free wifi you're using? (Image via buffered.com)
Do you trust the free wifi you're using? (Image via buffered.com)
It's pretty hard hacking into my WP-Admin page because you cannot find it (hint: it's not at /wp-admin)
It's pretty hard hacking into my WP-Admin page because you cannot find it (hint: it's not at /wp-admin)
Password dictionary attacks use lists of known (leaked) passwords, you can find them on shady parts of the internet
Password dictionary attacks use lists of known (leaked) passwords, you can find them on shady parts of the internet
Sniff WordPress password using WireShark packet capturing (via blog.wpscans.com)
Sniff WordPress password using WireShark packet capturing (via blog.wpscans.com)
Limit access by IP basis to XML-RPC using a .htaccess file
Limit access by IP basis to XML-RPC using a .htaccess file

Other stories

all blog posts

Tagged

CloudCyber SecurityHackingNetworkingServerWebdesign

Articles (148)