Well, today many security expert with blackhat stuff are around us. We’re haunted not by a real ghost, but with a cyber ghost. A few days ago, one of my WordPress blog has been hacked. I believe that i use uptodate Plugins and WordPress version. My only suspect is client from my hosting provider. User from the same hosting jumped to my account and do evil thing.
So, i do some research and found these 3 stuff to secure our WordPress Blog.
- WordPress FireWall, it will check every access to our blog, and identify all possible attempts for malicious attack such as SQL injection etc.
- Login LockDown, it prevents brute force attack to WordPress login form, after 3 failed attempts to login, access to login form from those IP address will be blocked for about 1 hour (configured from admin panel).
- WordPress AntiVirus, it will check whether the template we currently use contain harmful code (exploit/spam injection/frame injection etc) or not. Scanning process can be done manually or scheduled in daily basis.
That’s all my plugins to secure my WordPress Blog. No plugins will secure you from attacker at 100% accuracy. But, at least it a worth to try.
Link to each plugin above:
WordPress Firewall, WordPress AntiVirus, WordPress Login LockDown
and also some images,
- Panel of Wordpress AntiVirus
- Login LockDown
- Panel of Wordpress Firewall_SEOegg
- sample_attack













jiakakakaka,,,,kena jumping yeeee ….
gw pernah scan site yg hostingan ny sama ama lo,,,bnyak bgt hole nye :p
terutama dari mp3 apa tuh ,,lupa gw,,,
jiakakaka.. MP3 sapa?? punya mas ghprod kali :p
btw, kapan2 chat bareng napa.. ajarin gw
I have examined with new release of the Drupal. It is genuinely real decent. The admin panel is similar to wordpress. And some more functionalities are appended.