{"id":5048,"date":"2015-08-06T07:57:18","date_gmt":"2015-08-06T07:57:18","guid":{"rendered":"https:\/\/wpopal.com\/?p=5048"},"modified":"2015-08-06T07:57:18","modified_gmt":"2015-08-06T07:57:18","slug":"how-to-secure-your-wordpress-blog","status":"publish","type":"post","link":"http:\/\/dev.wpopal.com\/wpopal\/how-to-secure-your-wordpress-blog\/","title":{"rendered":"How to Secure Your WordPress Blog"},"content":{"rendered":"<p>WordPress is the most popular blogging and CMS system nowadays. With the powerful features and easy to use, WordPress is more and more used on the internet. WordPress&#8217;s popularity is making people worry about its security and put a question &#8221; Is your wordpress blog secure?&#8221;.\u00a0Having a WordPress site means that you have to take some extra efforts in order to protect your and your visitors data. All we know, not having a site is 100% secure and\u00a0\u00a0a 100% secure website doesn&#8217;t exist. Understanding the problems, today Opal WordPress will share you an article of &#8220;<strong>How to secure your wordpress blog<\/strong>&#8220;. This blog will help you to get basic\u00a0knowledge to protect your website yourself. However, these measures don&#8217;t guarantee a 100% protection against hacking attempts, but\u00a0they will protect you against the majority of attacks. Please follow our tips to keep your blog safe!<\/p>\n<h3>Why Secure Your WordPress Blog?<\/h3>\n<p>A blog that has been hacked can suffer from loss of content, stolen data and expensive downtime. Maintaining the security of your blog helps you <strong>protect your reputation<\/strong> and <strong>provide your visitors with the best service possible<\/strong>.\u00a0Because WordPress is such a popular platform for blogging, it\u2019s a regular target for\u00a0hacking attacks launched by people who find and exploit weaknesses and vulnerabilities in websites.<\/p>\n<h3>#1.\u00a0Create a new account with a strong password<\/h3>\n<p>Most of the attackers will assume that your admin username is &#8220;admin&#8221;. They will log in and unluckily they can enter it easily. Therefore, the first thing is that you don&#8217;t use &#8220;admin&#8221; username, in stead you should create a new account you think it will be safe. \u00a0You can easily block a lot of brute-force and other attacks simply by naming your admin username differently. If you&#8217;re installing a new WordPress site, you will be asked for username during the WordPress installation process. If you already have a WordPress site, quickly go to Username and\u00a0change your WordPress username. Don&#8217;t forget to put a strong password!<\/p>\n<p style=\"text-align: center;\"><a href=\"https:\/\/wpopal.com\/wp-content\/uploads\/2015\/08\/golmart_-_preview.jpg\" rel=\"nofollow noopener\" target=\"_blank\"><img fetchpriority=\"high\" decoding=\"async\" class=\"  wp-image-5044 aligncenter\" src=\"https:\/\/wpopal.com\/wp-content\/uploads\/2015\/08\/golmart_-_preview.jpg\" alt=\"Golmart \u2013 Creative WooCommerce WordPress Theme Released\" width=\"634\" height=\"365\" title=\"\"><\/a><\/p>\n<p>&nbsp;<\/p>\n<p style=\"text-align: center;\"><a class=\"btn btn-success\" href=\"http:\/\/themeforest.net\/item\/golmart-creative-woocommerce-wordpress-theme\/full_screen_preview\/12217998?ref=opal_wp\" rel=\"nofollow noopener\" target=\"_blank\">Live Demo<\/a> <a class=\"btn btn-danger\" href=\"http:\/\/themeforest.net\/item\/golmart-creative-woocommerce-wordpress-theme\/12217998?ref=opal_wp\" rel=\"nofollow noopener\" target=\"_blank\">Download<\/a><\/p>\n<h3>#2. Update WordPress versions<\/h3>\n<p>Second crucial step is to update it to the latest version, make sure that the WordPress software, themes and plugins are regularly updated with the latest patches and fixes.\u00a0You should always make sure that your blog\u2019s version is up to date. WordPress team creates patches to help fix security holes. Follow wordpress feed to find out about the latest updates or you could simply login to your admin.<\/p>\n<p style=\"text-align: center;\"><a href=\"https:\/\/wpopal.com\/tips-to-improve-your-pinterest-marketing-strategy\/\" rel=\"nofollow noopener\" target=\"_blank\"><img decoding=\"async\" class=\"  wp-image-5025 aligncenter\" src=\"https:\/\/wpopal.com\/wp-content\/uploads\/2015\/08\/pinterest-marketing-tips1.jpg\" alt=\"Tips to Improve Your Pinterest Marketing Strategy\" width=\"630\" height=\"311\" title=\"\"><\/a><\/p>\n<h3>#3. Back up your blog Database<\/h3>\n<p>Backing up your database is an important part of keeping your blog secure.\u00a0WordPress makes the backup process simple with both free and paid options. WP-DB-Backup, a free option, is one of the most downloaded WordPress backup plugins and is a simple solution for beginners.\u00a0To <strong>install WP-DB-Backup<\/strong>, go into Plugins and choose Add New. Type \u201cWP-DB-Backup\u201d in the search box. Click Install Now and then click OK. Simply &#8211; Convenient &#8211; Safe!<\/p>\n<p style=\"text-align: center;\"><a href=\"https:\/\/wpopal.com\/wp-content\/uploads\/2015\/07\/octopus-preview1.jpg\" rel=\"nofollow noopener\" target=\"_blank\"><img decoding=\"async\" class=\"alignnone  wp-image-4887\" src=\"https:\/\/wpopal.com\/wp-content\/uploads\/2015\/07\/octopus-preview1.jpg\" alt=\"Review Octopus - Multipurpose Business WordPress Theme\" width=\"618\" height=\"304\" title=\"\"><\/a><\/p>\n<p style=\"text-align: center;\"><a class=\"btn btn-success\" href=\"http:\/\/themeforest.net\/item\/octopus-multipurpose-business-wordpress-theme\/full_screen_preview\/11776566?ref=opal_wp\" rel=\"nofollow noopener\" target=\"_blank\">Live Demo<\/a> <a class=\"btn btn-danger\" href=\"http:\/\/themeforest.net\/item\/octopus-multipurpose-business-wordpress-theme\/11776566?ref=opal_wp\" rel=\"nofollow noopener\" target=\"_blank\">Download<\/a><\/p>\n<h3>#4. Install secure plugins<\/h3>\n<p>There are several security plugins that can help protect your site and prevent any hacking attempts. Two of the best options are <strong><a href=\"https:\/\/wordpress.org\/plugins\/wordfence\/\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">Wordfence Security<\/a><\/strong> and <strong><a href=\"https:\/\/wordpress.org\/plugins\/better-wp-security\/\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">Better WP Security<\/a><\/strong>. They both do quite a few things to make your site safer including forcing you to use stronger passwords, making you delete the admin username and they also do block bot traffic and help you do regular security scans.<\/p>\n<p style=\"text-align: center;\"><a href=\"https:\/\/wpopal.com\/10-most-common-wordpress-mistakes-you-cant-ignore\/\" rel=\"nofollow noopener\" target=\"_blank\"><img loading=\"lazy\" decoding=\"async\" class=\"  wp-image-4917 aligncenter\" src=\"https:\/\/wpopal.com\/wp-content\/uploads\/2015\/07\/marketHong31.jpg\" alt=\"10 common wordpress mistakes you can&#039;t ignore\" width=\"613\" height=\"319\" title=\"\"><\/a><\/p>\n<h3>#5. Disable file editing via the dashboard<\/h3>\n<p>In a default WordPress installation, you can navigate to <strong>Appearance &gt; Editor<\/strong> and edit any of your theme files right in the dashboard.\u00a0The trouble is, if a hacker managed to gain access to your admin panel, they could also edit your files that way, and execute whatever code they wanted to.\u00a0So it\u2019s a good idea to disable this method of file editing, by adding the following to your <strong>wp-config.php<\/strong> file:<\/p>\n<pre>define( \u2018DISALLOW_FILE_EDIT\u2019, true );<\/pre>\n<p style=\"text-align: center;\"><a href=\"https:\/\/wpopal.com\/how-to-increase-seo-for-your-website-with-google\/\" rel=\"nofollow noopener\" target=\"_blank\"><img loading=\"lazy\" decoding=\"async\" class=\"  wp-image-4878 aligncenter\" src=\"https:\/\/wpopal.com\/wp-content\/uploads\/2015\/07\/marketHong30.jpg\" alt=\"How to increase SEO for your website with Google+\" width=\"617\" height=\"311\" title=\"\"><\/a><\/p>\n<h3>#6. WordPress keys in wp-config.php<\/h3>\n<p>WordPress keys is another important security measure. These keys work as salts for WordPress cookies thus, ensuring better encryption of user data. If your WordPress\u00a0site gets hacked its very important to change the keys and wp-admin password immediately because a hacker can still login to your WP admin even after your admin password changes. In most cases when a WP gets hacked the hacker can still gain access to your WordPress admin area via the use of cookies (your old keys\/salt). You can change these at any point in time to invalidate all existing cookies. This will force all users to have to log in again.\u00a0Use the <a href=\"https:\/\/api.wordpress.org\/secret-key\/1.1\/\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">WordPress Key Generator<\/a> to generate these keys. Now open up your wp-config.php, find the lines that look like below and simply replace with the generated ones:<br \/>\n<code>define(\u2018AUTH_KEY\u2019, \u2018put your unique phrase here\u2019);<br \/>\ndefine(\u2018SECURE_AUTH_KEY\u2019, \u2018put your unique phrase here\u2019);<br \/>\ndefine(\u2018LOGGED_IN_KEY\u2019, \u2018put your unique phrase here\u2019);<br \/>\ndefine(\u2018NONCE_KEY\u2019, \u2018put your unique phrase here\u2019);<\/code><br \/>\nSave and you are done!<\/p>\n<p style=\"text-align: center;\"><a href=\"https:\/\/wpopal.com\/wp-content\/uploads\/2015\/03\/bigshop.jpg\" rel=\"nofollow noopener\" target=\"_blank\"><img loading=\"lazy\" decoding=\"async\" class=\"  wp-image-2572 aligncenter\" src=\"https:\/\/wpopal.com\/wp-content\/uploads\/2015\/03\/bigshop.jpg\" alt=\"bigshop woocommerce responsive wordpress theme\" width=\"630\" height=\"334\" title=\"\"><\/a><\/p>\n<p>&nbsp;<\/p>\n<p style=\"text-align: center;\"><a class=\"btn btn-success\" href=\"http:\/\/themeforest.net\/item\/bigshop-woocommerce-responsive-wordpress-theme\/full_screen_preview\/7911612?ref=opal_wp\" rel=\"nofollow noopener\" target=\"_blank\">Live Demo<\/a> <a class=\"btn btn-danger\" href=\"http:\/\/themeforest.net\/item\/bigshop-woocommerce-responsive-wordpress-theme\/7911612?ref=opal_wp\" rel=\"nofollow noopener\" target=\"_blank\">Download<\/a><\/p>\n<h3>#7. Ensure your computers is free of viruses and malware<\/h3>\n<p>If your computer is infected with virus or a malware software, a potential attacker can gain access yo your login details and make a valid login to your site bypassing all the measures you&#8217;ve taken before. This is why it is very important do have an up-to-date antivirus program and keep the overall security of all computers you use to access your WordPress site on a high level.<\/p>\n<p style=\"text-align: center;\"><a href=\"https:\/\/wpopal.com\/top-7-best-pharmacy-woocommerce-wordpress-theme-2015\/\" rel=\"nofollow noopener\" target=\"_blank\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone  wp-image-4509\" src=\"https:\/\/wpopal.com\/wp-content\/uploads\/2015\/03\/pharmacy1.jpg\" alt=\"top 7 best pharmacy woocomerce wordpress themes 2015\" width=\"640\" height=\"361\" title=\"\"><\/a><\/p>\n<p>Above is <strong>How to Secure Your WordPress Blog<\/strong>\u00a0simply we would like to share with you. They are helpful and practical for you to secure your blog website.\u00a0Hoping you can understand and follow all these tips. Remember to follow our social media such as\u00a0<a class=\"blue\" href=\"https:\/\/www.facebook.com\/opalwordpress\" target=\"_blank\" rel=\"noopener noreferrer nofollow\">Facebook<\/a>, <a class=\"blue\" href=\"https:\/\/twitter.com\/?lang=en\" target=\"_blank\" rel=\"noopener noreferrer nofollow\">Twitter<\/a>, <a class=\"blue\" href=\"https:\/\/www.linkedin.com\/home?trk=nav_responsive_tab_home\" target=\"_blank\" rel=\"noopener noreferrer nofollow\">Linkedin<\/a>, <a class=\"blue\" href=\"https:\/\/www.youtube.com\/user\/WPOpalTheme\" target=\"_blank\" rel=\"noopener noreferrer nofollow\">Youtube,<\/a> <a class=\"blue\" href=\"https:\/\/www.pinterest.com\/cunconvp192\/\" target=\"_blank\" rel=\"noopener noreferrer nofollow\">Pinterest<\/a>, to get the newest information.<br \/>\nThanks so much!<\/p>\n","protected":false},"excerpt":{"rendered":"<p>WordPress is the most popular blogging and CMS system nowadays. With the powerful features and easy to use, WordPress is more and more used on the internet. WordPress&#8217;s popularity is making people worry about its security and put a question &#8221; Is your wordpress blog secure?&#8221;.\u00a0Having a WordPress site means that you have to take [&hellip;]<\/p>\n","protected":false},"author":9,"featured_media":30867,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"inline_featured_image":false,"footnotes":""},"categories":[27],"tags":[],"class_list":["post-5048","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-tutorials"],"_links":{"self":[{"href":"http:\/\/dev.wpopal.com\/wpopal\/wp-json\/wp\/v2\/posts\/5048","targetHints":{"allow":["GET"]}}],"collection":[{"href":"http:\/\/dev.wpopal.com\/wpopal\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"http:\/\/dev.wpopal.com\/wpopal\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"http:\/\/dev.wpopal.com\/wpopal\/wp-json\/wp\/v2\/users\/9"}],"replies":[{"embeddable":true,"href":"http:\/\/dev.wpopal.com\/wpopal\/wp-json\/wp\/v2\/comments?post=5048"}],"version-history":[{"count":0,"href":"http:\/\/dev.wpopal.com\/wpopal\/wp-json\/wp\/v2\/posts\/5048\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"http:\/\/dev.wpopal.com\/wpopal\/wp-json\/wp\/v2\/media\/30867"}],"wp:attachment":[{"href":"http:\/\/dev.wpopal.com\/wpopal\/wp-json\/wp\/v2\/media?parent=5048"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"http:\/\/dev.wpopal.com\/wpopal\/wp-json\/wp\/v2\/categories?post=5048"},{"taxonomy":"post_tag","embeddable":true,"href":"http:\/\/dev.wpopal.com\/wpopal\/wp-json\/wp\/v2\/tags?post=5048"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}