If you have any questions, contact us:
Telegram:maintex
ICQ:1607000


Go Back   Cyber Security Forum > Cybercrime Forum > Hacking » Programming > Tutorials
Register Info Community Today's Posts Search

Notices

Reply
 
Thread Tools Search this Thread
  #1 Old 06-04-2021, 11:47 AM
factchecker
 
factchecker's Avatar
 
Join Date: Jun 2021
Posts: 4
factchecker is an unknown quantity at this point
Default [TUT] SECURE YOUR WORDPRESS PAGE [TUT]

In this tutorial I will be giving a few tips for securing your WordPress website. I will only focus on securing the website itself, but you should remember to secure everything within such as your network, and computers upon doing this.



1. Keep WordPress updated

One of the main reasons WordPress websites gets hacked, is because they forget to update to the latest version, which thereby makes them vulnerable to exploits. Always make sure you are running the latest version of WordPress by checking the release-version available on the official WordPress site: https://wordpress.org/news/category/releases/



2. Update and clean your Plugins

2.1 It can be tempting to install a bunch of WordPress plugins, but one of the key parts of keeping your website secure is to have less plugins. Make sure you only keep the plugins you actually use on your website. You should be deleting all plugins you do not use completely from the WordPress installation, and not just deactivating it through the admin page.



2.2 Now you should be left with a few plugins that you are currently using for your website. However, deleting the useless plugins is not enough for securing your website. You should always check for updates on your installed plugins, to make sure they are not exploitable. There have been numerous of cases of WordPress websites getting hacked, simply because they forgot to update their plugins.



2.3 Make sure that all your installed plugins are available on the official WordPress plugin repository. Sometimes plugins are removed from the page once they realize there are security issues. You can find the official WordPress plugin reprository by using this link: https://wordpress.org/plugins/



3. Manage Staff roles

If you have several people working on your website you should ensure that everybody has a users role that makes sense to the according tasks they perform. There are six user-roles available within the WordPress admin page, and you should ensure that each Staff member, only have access to the permissions they specifically need.



1) – Super Admin: Has access to the site, network, and admin features



2) – Administrator: Has access to the site and admin features



3) – Editor: Can publish and make changes to all posts



4) – Author: Can publish and make changes to their own posts



5) – Contributor: Can write and make changes to their own posts without being able to publish them



6) – Subscriber: Can only access their profile



When you create a new user in WordPress, think about the tasks the specific Staff needs to have access to, and give the user a role that thereby correlates with their tasks. Using this method of securing roles, and permissions, you will feel a lot more confident going to sleep, and knowing one of your employees won't make a mistake and ruin the whole website.



4. Two-factor authentication (2FA)

If you want to add an extra layer of security, I would highly recommend installing a plugin for authenticating WordPress logins. There are several plugins that offers this, but I would recommend using Google authenticator. The plugin is available from the official WordPress plugin repository https://wordpress.org/plugins/google-authenticator/



5. Automatic backups

Another important thing when running a website is to ensure you have everything backed up. If anything would happen to your website, you wouldn't want to lose it all overnight, so make sure you have a plugin installed for automatic scheduled backups. One of the best plugins for this would be UpdraftPlus, here's a link to their official WordPress plugin page: https://wordpress.org/plugins/updraftplus/ There are several other plugins for this as well, but be careful as for which ones you install, and make sure you read the reviews upon downloading.



6. Update WordPress Passwords

No matter how hard your password is, hackers will eventually crack it. Ensuring you keep your passwords updated once a month, is one of the most important things at keeping your website and overall digital profiles secure. Here's a few tips for creating a strong password.



* Never use predictable passwords, such as your birthday, name of your brother/sister/mother/girlfriend etc.

* Add as many characters as possible.

* Use a password generator such as
Click here to see full text
https://passwordsgenerator.net


* Never reuse the same password.



7. WordPress Firewalls

Last but not least, you can always add an extra layer of protection by pointing your DNS records towards a secure Web application firewall. There are several options for this, but I would highly recommend using a paid option such as Sucuri, or going with a free option such as Cloudflare. Both should be completely fine for your purpose, but using a Web Application Firewall might cause a delayed loading-time for your content on your website. Some hosting providers usually offers integrated options for this as well, but it is not necessary to use a WAF.



Hopefully, this tutorial will help a few website owners securing their websites. I hope you enjoyed reading this tutorial, and I wish you the best of luck with your digital venture.
factchecker is offline   Reply With Quote
Reply

Tags
page, secure, tut, wordpress


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
Взлом сайта на WordPress maximg31 Статьи 1 01-20-2022 06:08 PM
Need dutch scam page Dieker Hacking » Programming 0 01-23-2019 01:08 AM
Настрою ленты плагина WPGrabber для WordPress itservice Непроверенная реклама 0 08-14-2018 02:45 PM
Fake, Scam Page netGrad Хакинг » Дедики » Хостинг 10 07-03-2017 03:14 PM
hi there need to buy an online wordpress theme $100 vuduo Online Carding 0 10-30-2015 09:31 PM


Cybercrime forum, cybercrime site, ,fraud forum, russian fraud forum, Credit cards, carder, infraud, carders.ws, crdpro, fraudsters, darkpro, crdcrew, dumps, cvv, cc, stuff carding, legit seller, vendor, free cvv, dumps+pin, skimmer, ,shimmer, emv software, emv chip writer, free cc+cvv, valid cards, track 2, free cvv, dump pin, dumps, cvv, cc, credit cards, real carding, legit vendor, carder forum, carding tutorial, russian hackers, online cvv shop, track 101, enroll, fullz