<?xml version="1.0" encoding="UTF-8"?> <rss
version="2.0"
xmlns:content="http://purl.org/rss/1.0/modules/content/"
xmlns:wfw="http://wellformedweb.org/CommentAPI/"
xmlns:dc="http://purl.org/dc/elements/1.1/"
xmlns:atom="http://www.w3.org/2005/Atom"
xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
><channel><title>Wordpress Jedi &#187; Hack Prevention</title> <atom:link href="http://www.wpjedi.com/category/wordpress-plugins/hack-prevention/feed/" rel="self" type="application/rss+xml" /><link>http://www.wpjedi.com</link> <description>Feed your WordPress Demons!</description> <lastBuildDate>Sun, 05 Feb 2012 04:35:22 +0000</lastBuildDate> <language>en</language> <sy:updatePeriod>hourly</sy:updatePeriod> <sy:updateFrequency>1</sy:updateFrequency> <generator>http://wordpress.org/?v=3.3.1</generator> <xhtml:meta xmlns:xhtml="http://www.w3.org/1999/xhtml" name="robots" content="noindex" /> <item><title>7 Plugins To Protect Your WordPress Login Page With</title><link>http://www.wpjedi.com/protect-your-wordpress-login/</link> <comments>http://www.wpjedi.com/protect-your-wordpress-login/#comments</comments> <pubDate>Tue, 23 Aug 2011 12:13:52 +0000</pubDate> <dc:creator>Wordpress Jedi</dc:creator> <category><![CDATA[Hack Prevention]]></category> <category><![CDATA[Wordpress Plugins]]></category> <category><![CDATA[login]]></category> <category><![CDATA[security]]></category><guid
isPermaLink="false">http://www.wpjedi.com/?p=6981</guid> <description><![CDATA[Your WordPress login page is perhaps the most important page on your website. It is what keeps strangers (hackers) at bay. If your site credentials fall into the wrong hands, your business is going to be in trouble. Thankfully, there are plugins you can install to protect your login process against hackers and crackers. Here [...]]]></description> <content:encoded><![CDATA[<p>Your WordPress login page is perhaps the most important page on your website. It is what keeps strangers (hackers) at bay. If your site credentials fall into the wrong hands, your business is going to be in trouble. Thankfully, there are plugins you can install to protect your login process against hackers and crackers. Here are 7 plugins that help keep your login process more secure:</p><p><img
class="alignnone size-full wp-image-7021" title="" src="http://www.wpjedi.com/wp-content/uploads/2011/07/13.gif" alt="" width="449" height="422" /></p><p><a
href="http://wordpress.org/extend/plugins/limit-login-attempts/" rel="nofollow" target="_blank">Limit Login Attempts</a>: one of the best ways to keep your site secure against hack attacks is by finding and banning the IPs belonging to hackers. This plugin will notify you of that information as soon as your site is attacked.</p><p><img
class="alignnone size-full wp-image-7022" title="" src="http://www.wpjedi.com/wp-content/uploads/2011/07/144.png" alt="" width="450" height="201" /></p><p><a
href="http://wordpress.org/extend/plugins/wp-login-security/" rel="nofollow" target="_blank">WP Login Security</a>: requires all the admins on your website to register and whitelist their IPs. If an IP is not recognized, an email will be sent to the admin&#8217;s registered email address with a one time password. Adds another layer of security to your blog.</p><p><img
class="alignnone size-full wp-image-7023" title="" src="http://www.wpjedi.com/wp-content/uploads/2011/07/145.png" alt="" width="449" /></p><p><a
href="http://wordpress.org/extend/plugins/login-lock/" rel="nofollow" target="_blank">Login Lock</a>: a complete login protection system that enforces strong password policies, monitor hack attempts, and even bans abusers. Allows forced logouts by admins. <span
id="more-6981"></span></p><p><img
class="alignnone size-full wp-image-7025" title="" src="http://www.wpjedi.com/wp-content/uploads/2011/07/113.jpg" alt="" width="449" height="349" /></p><p><a
href="http://wordpress.org/extend/plugins/google-authenticator" rel="nofollow" target="_blank">Google Authenticator</a>: adds two factor authentication to your login page. You can define it for certain users (e.g. admins only).</p><p><img
class="alignnone size-full wp-image-7026" title="" src="http://www.wpjedi.com/wp-content/uploads/2011/07/146.png" alt="" width="450" height="336" /></p><p><a
href="http://wordpress.org/extend/plugins/one-time-password/" rel="nofollow" target="_blank">One Time Password</a>: planning to access your WordPress site on an unsafe network? This plugin creates one time passwords for those situations. Admin actions can be protected with one time passwords too.</p><p><img
class="alignnone size-full wp-image-7027" title="" src="http://www.wpjedi.com/wp-content/uploads/2011/07/147.png" alt="" width="449" height="326" /></p><p><a
href="http://wordpress.org/extend/plugins/semisecure-login-reimagined/" rel="nofollow" target="_blank">Semisecure Login Reimagined</a>: not a foolproof security solution for your login page. But it does use a combination of public/secret key encryption to protect passwords on the client side. Useful when SSL is not available.</p><p><img
class="alignnone size-full wp-image-7028" title="" src="http://www.wpjedi.com/wp-content/uploads/2011/07/148.png" alt="" width="450" height="224" /></p><p><a
href="http://wordpress.org/extend/plugins/extrashield/" rel="nofollow" target="_blank">ExtraShield</a>: an exciting login protection plugin for WordPress that lets you log in to your WordPress account in a secure fashion using your mobile phone. Creates a new security code on your phone every 50 seconds!</p><p>I am interested to know your suggestions. Please share them below.</p><div
id="wherego_related"><b>Readers who viewed this page, also viewed:</b><ul><li><a
href="http://www.wpjedi.com/turn-your-wordpress-site-into-a-native-app/" rel="bookmark" class="wherego_title">Turn Your WordPress Site Into a Native App</a></li><li><a
href="http://www.wpjedi.com/best-practices-to-keep-wordpress-secure/" rel="bookmark" class="wherego_title">6 Essential Practices To Keep WordPress Secure</a></li><li><a
href="http://www.wpjedi.com/wordpress-for-business/" rel="bookmark" class="wherego_title">16 Ways For Businesses To Use WordPress</a></li></ul></div>]]></content:encoded> <wfw:commentRss>http://www.wpjedi.com/protect-your-wordpress-login/feed/</wfw:commentRss> <slash:comments>2</slash:comments> </item> <item><title>10 Plugins To Deal with Rogue Users On WordPress</title><link>http://www.wpjedi.com/bad-spam-user-wordpress-plugins/</link> <comments>http://www.wpjedi.com/bad-spam-user-wordpress-plugins/#comments</comments> <pubDate>Wed, 13 Jul 2011 12:33:27 +0000</pubDate> <dc:creator>Wordpress Jedi</dc:creator> <category><![CDATA[Hack Prevention]]></category> <category><![CDATA[hack]]></category> <category><![CDATA[plugins]]></category> <category><![CDATA[security]]></category><guid
isPermaLink="false">http://www.wpjedi.com/?p=5794</guid> <description><![CDATA[I personally do not allow anyone to register for an account on any of my blogs. That approach does not always work though. Sometimes, you are forced to allow registrations on your website if you want it to grow and move to the next level. Most users will respect your website and won&#8217;t try to [...]]]></description> <content:encoded><![CDATA[<p>I personally do not allow anyone to register for an account on any of my blogs. That approach does not always work though. Sometimes, you are forced to allow registrations on your website if you want it to grow and move to the next level. Most users will respect your website and won&#8217;t try to mess with it. But dealing with rogue users should be at the top of your agenda. These 10 plugins let you handle abusive users and keep your business protected:</p><p><img
class="alignnone size-full wp-image-5837" src="http://www.wpjedi.com/wp-content/uploads/2011/03/113.png" alt="" width="460" height="237" /></p><p><a
href="http://wordpress.org/extend/plugins/user-locker/" rel="nofollow">User Locker</a>: sometimes people just forget their credentials and try different username/passwords out of desperation. But brute force attacks are very real, which is why you should ban abusers with this plugin.</p><p><img
class="alignnone size-full wp-image-5838" src="http://www.wpjedi.com/wp-content/uploads/2011/03/114.png" alt="" width="460" height="536" /></p><p><a
href="http://wordpress.org/extend/plugins/user-spam-remover" rel="nofollow">User Spam Remover</a>: this is a powerful plugin that can clean out your database from spammers and accounts that have not been used since their creation. You do have the option to define the time period after which inactive accounts are removed.<span
id="more-5794"></span></p><p><img
class="alignnone size-full wp-image-5839" src="http://www.wpjedi.com/wp-content/uploads/2011/03/115.png" alt="" width="461" height="604" /></p><p><a
href="http://wordpress.org/extend/plugins/wassup/" rel="nofollow" target="_blank">Wassup</a>: have you ever wondered what people are doing on your website? This is a powerful plugin that spies on your visitors and keeps you informed if they are messing around with sensitive things.</p><p><img
class="alignnone size-full wp-image-5840" src="http://www.wpjedi.com/wp-content/uploads/2011/03/116.png" alt="" width="460" height="278" /></p><p><a
href="http://wordpress.org/extend/plugins/mute-screamer/" rel="nofollow" target="_blank">Must Screamer</a>: an effective security plugin that uses <a
href="http://phpids.org/">PHPIDS</a> to detect attacks on your WordPress site. Enables you to ban and take the appropriate actions to protect your website.</p><p><img
class="alignnone size-full wp-image-5841" src="http://www.wpjedi.com/wp-content/uploads/2011/03/1.gif" alt="" width="460" height="466" /></p><p><a
href="http://wordpress.org/extend/plugins/si-captcha-for-wordpress/" rel="nofollow" target="_blank">SI Captcha For WordPress</a>: sometimes you can turn abusers and spammers off by making it difficult for them to mess with your website. This powerful CAPTCHA solution is certainly capable of that.</p><p><img
class="alignnone size-full wp-image-5842" src="http://www.wpjedi.com/wp-content/uploads/2011/03/13.jpg" alt="" width="460" height="287" /></p><p><a
href="http://wordpress.org/extend/plugins/user-access-manager/" rel="nofollow" target="_blank">User Access Manager</a>: this is especially useful if you want to limit your content to just a group of people you have approved. This plugin essentially creates a private area on your blog.</p><p><img
class="alignnone size-full wp-image-5843" src="http://www.wpjedi.com/wp-content/uploads/2011/03/117.png" alt="" width="461" height="617" /></p><p><a
href="http://wordpress.org/extend/plugins/user-role-editor/" rel="nofollow" target="_blank">User Role Editor</a>: you can&#8217;t blame people for messing with your website if you have not paid enough attention to their roles on it.  This plugin allows you to manage your members&#8217; roles more conveniently.</p><p><img
class="alignnone size-full wp-image-5844" src="http://www.wpjedi.com/wp-content/uploads/2011/03/118.png" alt="" width="461" height="337" /></p><p><a
href="http://wordpress.org/extend/plugins/ip-allowed-list/" rel="nofollow" target="_blank">IP Allowed List: </a>quite a strong plugin that turns your website into a private community open only to people you define. This probably won&#8217;t work for every type of website but is still pretty useful.</p><p><img
class="alignnone size-full wp-image-5845" src="http://www.wpjedi.com/wp-content/uploads/2011/03/119.png" alt="" width="461" height="235" /></p><p><a
href="http://wordpress.org/extend/plugins/wordpress-mu-secure-invites" rel="nofollow" target="_blank">Secure Invites</a>: don&#8217;t want everyone to have access to your sign up page? This is a script that lets you invite users to your website. Keeps track of the invites on your website.</p><p><img
class="alignnone size-full wp-image-5846" src="http://www.wpjedi.com/wp-content/uploads/2011/03/120.png" alt="" width="460" height="304" /></p><p><a
href="http://wordpress.org/extend/plugins/spammer-blocker" rel="nofollow" target="_blank">Spammer Blocker</a>: I personally have no patience for spammers. At least hackers try to destroy your business and need some skill to do it (not that it&#8217;s a good thing). Most spammers are just useless and use robots and annoying tactics. With Spammer Blocker, you can just drop the hammer on their IPs and get them out of your life.</p><p>How do you deal with rogue users on your site?</p><div
id="wherego_related"><b>Readers who viewed this page, also viewed:</b><ul><li><a
href="http://www.wpjedi.com/wordpress-plugins-for-testing/" rel="bookmark" class="wherego_title">7 Awesome WordPress Plugins for Website Testing</a></li><li><a
href="http://www.wpjedi.com/25-wordpress-facebook-plugins-you-shouldnt-ignore/" rel="bookmark" class="wherego_title">25 WordPress Facebook Plugins You Shouldn&#8217;t Ignore</a></li><li><a
href="http://www.wpjedi.com/build-a-professional-portal-with-reaction-for-wordpress/" rel="bookmark" class="wherego_title">Build a Professional Portal with Reaction for WordPress</a></li></ul></div>]]></content:encoded> <wfw:commentRss>http://www.wpjedi.com/bad-spam-user-wordpress-plugins/feed/</wfw:commentRss> <slash:comments>0</slash:comments> </item> <item><title>6 Security Firewall Plugins for WordPress</title><link>http://www.wpjedi.com/security-firewall-plugins-for-wordpress/</link> <comments>http://www.wpjedi.com/security-firewall-plugins-for-wordpress/#comments</comments> <pubDate>Wed, 15 Jun 2011 14:19:42 +0000</pubDate> <dc:creator>Wordpress Jedi</dc:creator> <category><![CDATA[Anti-Spam]]></category> <category><![CDATA[Hack Prevention]]></category> <category><![CDATA[security]]></category><guid
isPermaLink="false">http://www.wpjedi.com/?p=5779</guid> <description><![CDATA[Those who do not have a highly popular website probably do not get too many hack attacks on their websites. But as soon as your website starts getting any decent amount of traffic, you are going to see an increase in the number of attacks on your website. Installing a few security plugins and taking [...]]]></description> <content:encoded><![CDATA[<p>Those who do not have a highly popular website probably do not get too many hack attacks on their websites. But as soon as your website starts getting any decent amount of traffic, you are going to see an increase in the number of attacks on your website. Installing a few security plugins and taking precaution with your sensitive data can go along way towards keeping your site secure against these types of attacks.</p><p>Adding a firewall to your WordPress install is one way to keep hackers out. Firewall plugins keep hackers and their queries from messing with your site and its database. No blog is hack proof. But the more difficult you make the process, the less likely it is for your website&#8217;s walls to get breached. These 6 firewall WordPress plugins let you do just that:</p><p><img
class="alignnone size-full wp-image-5780" src="http://www.wpjedi.com/wp-content/uploads/2011/02/176.png" alt="" width="500" height="318" /></p><p><a
rel="nofollow" href="http://wordpress.org/extend/plugins/wordpress-firewall-2/" target="_blank">WordPress Firewall 2</a>: a powerful firewall for your WordPress site that investigates requests and blocks the most obvious attacks. It protects your plugins as well. Best of all, it informs you when your site is being attacked. Sometimes, this could be too strong though.</p><p><img
class="alignnone size-full wp-image-5781" src="http://www.wpjedi.com/wp-content/uploads/2011/02/177.png" alt="" width="501" height="402" /></p><p><a
rel="nofollow" href="http://wordpress.org/extend/plugins/block-bad-queries/" target="_blank">Block Bad Queries (BBQ)</a>: takes care of suspicious URLs to keep your blog secure against malicious URL request attacks. Works great on older WordPress versions too. <span
id="more-5779"></span></p><p><img
class="alignnone size-full wp-image-5782" src="http://www.wpjedi.com/wp-content/uploads/2011/02/178.png" alt="" width="500" height="355" /></p><p><a
rel="nofollow" href="http://wordpress.org/extend/plugins/secure-wordpress" target="_blank">Secure WordPress</a>: if you have not taken the steps to make your website more secure already, this plugin is a good place to start. Not only blocks bad queries, it removes versions, tooltips, error messages, and much more.</p><p><img
class="alignnone size-full wp-image-5784" src="http://www.wpjedi.com/wp-content/uploads/2011/02/179.png" alt="" width="499" height="412" /></p><p><a
rel="nofollow" href="http://wordpress.org/extend/plugins/bulletproof-security" target="_blank">Bullproof Security</a>: a fast and powerful plugin that protects your site against XSS, SQL Injection and base64_encode hacking attacks. It turns off errors and other information that hackers can use to attack your site with.</p><p><img
class="alignnone size-full wp-image-5785" src="http://www.wpjedi.com/wp-content/uploads/2011/02/180.png" alt="" width="499" height="470" /></p><p><a
rel="nofollow" href="http://wordpress.org/extend/plugins/askapache-password-protect" target="_blank">AskApache Password Protect</a>: you may not be able to stop all hack attacks, but thanks to plugins such as this one you can handle most automated attacks as well the ones performed by inexperienced hackers. Takes advantage of Apache&#8217;s core security features to keep your website safe.</p><p><img
class="alignnone size-full wp-image-5786" src="http://www.wpjedi.com/wp-content/uploads/2011/02/181.png" alt="" width="500" height="400" /></p><p><a
rel="nofollow" href="http://wordpress.org/extend/plugins/safe-links/" target="_blank">F-Secure Safe Links</a>: not a firewall per se, but it does allow you to keep track of the links posted on your website. Catches possible malicious links before they do any harm. This plugin protects your blog against comment attacks as well.</p><p>Please share your suggestions below.</p><div
id="wherego_related"><b>Readers who viewed this page, also viewed:</b><ul><li><a
href="http://www.wpjedi.com/protect-your-wordpress-login/" rel="bookmark" class="wherego_title">7 Plugins To Protect Your WordPress Login Page With</a></li><li><a
href="http://www.wpjedi.com/best-cheat-sheets-for-wordpress-developers/" rel="bookmark" class="wherego_title">40 Killer Cheat Sheets for WordPress Developers</a></li><li><a
href="http://www.wpjedi.com/start-a-beautiful-blog-with-magnificent-for-wordpress/" rel="bookmark" class="wherego_title">Start a Beautiful Blog with Magnificent for WordPress</a></li></ul></div>]]></content:encoded> <wfw:commentRss>http://www.wpjedi.com/security-firewall-plugins-for-wordpress/feed/</wfw:commentRss> <slash:comments>3</slash:comments> </item> <item><title>Hide E-mail Addresses On WordPress with Cryptx</title><link>http://www.wpjedi.com/hide-e-mail-addresses-on-wordpress-with-cryptx/</link> <comments>http://www.wpjedi.com/hide-e-mail-addresses-on-wordpress-with-cryptx/#comments</comments> <pubDate>Tue, 05 Apr 2011 14:55:36 +0000</pubDate> <dc:creator>Wordpress Jedi</dc:creator> <category><![CDATA[Free Plug-ins]]></category> <category><![CDATA[Hack Prevention]]></category> <category><![CDATA[spam]]></category><guid
isPermaLink="false">http://www.wpjedi.com/?p=5365</guid> <description><![CDATA[In a perfect world, we&#8217;d all be able to share our contact information on our websites without having to worry about spammers. Spamming is a serious crime, but that does not stop people from doing it. Some of these spammers do give their victims the chance to opt out of their e-mail lists. Others are [...]]]></description> <content:encoded><![CDATA[<p>In a perfect world, we&#8217;d all be able to share our contact information on our websites without having to worry about spammers. Spamming is a serious crime, but that does not stop people from doing it. Some of these spammers do give their victims the chance to opt out of their e-mail lists. Others are more vicious when it comes to using e-mails they scrape from websites. If you intend to share your e-mail address on your website, you should install <a
href="http://wordpress.org/extend/plugins/cryptx/" target="_blank">Cryptx or WordPress</a> to keep your contact information protected.</p><p><img
class="alignnone size-full wp-image-5366" src="http://www.wpjedi.com/wp-content/uploads/2011/01/134.png" alt="" width="527" height="430" /></p><p>Spammers use web bots to go through your website and mine e-mail addresses. While they don&#8217;t have permission to send e-mail to these addresses, they do it anyway. CryptX allows you to hide your e-mail addresses by using Javascript and Unicode. It covers both regular and mailto e-mail links. The plugin allows you to apply it to your content, comments, and other sections of your website.</p><p><span
id="more-5365"></span></p><p><img
class="alignnone size-full wp-image-5367" src="http://www.wpjedi.com/wp-content/uploads/2011/01/32.png" alt="" width="502" height="268" /></p><p>I love the fact that you can add mailto to all your unlinked e-mail addresses. If you have been careless in that regard, you can fix that issue with one click. CrpytX also supports custom characters for @ and &#8220;.&#8221; signs in your e-mails.</p><p><img
class="alignnone size-full wp-image-5368" src="http://www.wpjedi.com/wp-content/uploads/2011/01/23.png" alt="" width="287" height="429" /></p><p>You always have the option to turn CryptX off just in case it is not working for a certain article of yours or are just not interested in using it. It does not affect your site&#8217;s performance significantly, so it&#8217;s a decent option to go with.</p><div
id="wherego_related"><b>Readers who viewed this page, also viewed:</b><ul><li><a
href="http://www.wpjedi.com/best-landing-page-themes-for-wordpress/" rel="bookmark" class="wherego_title">5 Must See Landing Page Themes for WordPress</a></li><li><a
href="http://www.wpjedi.com/manage-events-on-wordpress/" rel="bookmark" class="wherego_title">10 Ways To Manage Bookings And Events on WordPress</a></li><li><a
href="http://www.wpjedi.com/make-wordpress-iphone-friendly-with-iphone-control-panel/" rel="bookmark" class="wherego_title">Make WordPress iPhone Friendly with iPhone Control Panel</a></li></ul></div>]]></content:encoded> <wfw:commentRss>http://www.wpjedi.com/hide-e-mail-addresses-on-wordpress-with-cryptx/feed/</wfw:commentRss> <slash:comments>0</slash:comments> </item> <item><title>Increase WordPress Security with Secure WordPress</title><link>http://www.wpjedi.com/wordpress-blog-security/</link> <comments>http://www.wpjedi.com/wordpress-blog-security/#comments</comments> <pubDate>Thu, 12 Aug 2010 17:08:20 +0000</pubDate> <dc:creator>Wordpress Jedi</dc:creator> <category><![CDATA[Free Plug-ins]]></category> <category><![CDATA[Hack Prevention]]></category> <category><![CDATA[plugins]]></category> <category><![CDATA[security]]></category><guid
isPermaLink="false">http://www.wpjedi.com/?p=3662</guid> <description><![CDATA[WordPress is a great platform for blogs and portals. A ton of people use this platform to bring their content online and share it all with the world. Unfortunately, that means you are going to have to deal with hacks attacks more often than those who are using an obscure platform. While the WordPress community [...]]]></description> <content:encoded><![CDATA[<p>WordPress is a great platform for blogs and portals. A ton of people use this platform to bring their content online and share it all with the world. Unfortunately, that means you are going to have to deal with hacks attacks more often than those who are using an obscure platform. While the WordPress community is vigilant and on the top of major attacks, it can&#8217;t stop them all. That&#8217;s why all WordPress webmasters should take time to secure their blog to reduce the chances of their blog being hacked. You can&#8217;t stop all attacks, but you can surely make life difficult for hackers.</p><p><a
href="http://wordpress.org/extend/plugins/secure-wordpress/" target="_blank">Secure WordPress</a> is one impressive plugin that takes care of those small little details on your blog and lets you focus on more complex measures. For starters, it gets rid of tool-tips and those little error messages that hackers look out for. It gets rid of WordPress version information as well.</p><p><img
class="alignnone size-full wp-image-3663" src="http://www.wpjedi.com/wp-content/uploads/2010/06/153.png" alt="" width="502" height="347" /><span
id="more-3662"></span></p><p>Every WordPress expert would tell you that you need to make sure you protect your plugins directory from wandering eyes of the public. You never know what information people can find out about your blog and its security flaws by going through your plugins. This plugin automatically adds an index.php file to your directory to increase your website&#8217;s security.</p><p>Secure WordPress gets rid of update information for your plugins and themes too. So if you have multiple members on your blog, only those with proper rights will get to see all those messages.  To top if all off, you can get a free security scan for WordPress malware with this plugin.</p><p><img
class="alignnone size-full wp-image-3664" src="http://www.wpjedi.com/wp-content/uploads/2010/06/154.png" alt="" width="518" height="329" /></p><p>Please keep in mind that you can do a lot of these steps by yourself. If you do not want to use a plugin to do the job for you, it will take you a bit of time to implement them. Secure WordPress does save you time though.</p><div
id="wherego_related"><b>Readers who viewed this page, also viewed:</b><ul><li><a
href="http://www.wpjedi.com/duplicate-alltop-aggregator-on-your-wordpress-blog/" rel="bookmark" class="wherego_title">Duplicate AllTop Aggregator On Your WordPress Website</a></li><li><a
href="http://www.wpjedi.com/security-firewall-plugins-for-wordpress/" rel="bookmark" class="wherego_title">6 Security Firewall Plugins for WordPress</a></li><li><a
href="http://www.wpjedi.com/amazing-wordpress-plugins/" rel="bookmark" class="wherego_title">5 Amazing WordPress Plugins You Should Try</a></li></ul></div>]]></content:encoded> <wfw:commentRss>http://www.wpjedi.com/wordpress-blog-security/feed/</wfw:commentRss> <slash:comments>0</slash:comments> </item> <item><title>Secure Your WordPress Install with Secure WordPress Plugin</title><link>http://www.wpjedi.com/secure-your-wordpress-install-with-secure-wordpress-plugin/</link> <comments>http://www.wpjedi.com/secure-your-wordpress-install-with-secure-wordpress-plugin/#comments</comments> <pubDate>Fri, 16 Apr 2010 16:16:05 +0000</pubDate> <dc:creator>Wordpress Jedi</dc:creator> <category><![CDATA[Hack Prevention]]></category> <category><![CDATA[plugin]]></category> <category><![CDATA[security]]></category><guid
isPermaLink="false">http://www.wpjedi.com/?p=2734</guid> <description><![CDATA[WordPress is a great platform to start your blog with and even manage a large portal. But it&#8217;s not perfect. There are many ways hackers can find ways to gain control of your WordPress blog. The last thing you want to have on your hands is a hacked WordPress blog. For instance, did you know [...]]]></description> <content:encoded><![CDATA[<p>WordPress is a great platform to start your blog with and even manage a large portal. But it&#8217;s not perfect. There are many ways hackers can find ways to gain control of your WordPress blog. The last thing you want to have on your hands is a hacked WordPress blog. For instance, did you know that your WordPress blog can be exposed to hack attacks if you proudly display its version on your website? If you have registered users or multiple authors on your blog, there are going to be even more issues you will have to deal with. Secure WordPress Plugin is a free security add-on for WP that lets you address some of those small issues on your blog.</p><p><a
href="http://bueltge.de/wordpress-login-sicherheit-plugin/652/" target="_blank">Secure WordPress Plugin</a> enables you to reduce hack attacks on your blog by protecting your installation information and plugin lists. It automatically adds an index.php file to your directories to make sure hackers can&#8217;t gain access to your plugin list to use known security wholes in some of them. It also removes theme, plugin, and core update information from non-admins. It can even protect your blog against malicious URL requests.</p><p><img
class="alignnone size-full wp-image-2736" src="http://www.wpjedi.com/wp-content/uploads/2010/03/126.png" alt="" width="537" height="334" /></p><p><span
id="more-2734"></span>I also like the fact that the plugin deactivates tool-tip and error messages from your WordPress login page. These small details may not look too important, but there are many hackers out there who succeed in their jobs by taking advantage of this information. So it never hurts to make their life difficult.</p><p>This plugin is not designed to make your WordPress 100% hack-proof. So you are going to need <a
href="http://www.wpjedi.com/add-captcha-to-wordpress-with-jr-antispam/" target="_blank">other security plugins</a> to help defend your blog against hackers. Nevertheless, the plugin is very easy to use and does fix a few common WordPress issues. It&#8217;s free too.</p><div
id="wherego_related"><b>Readers who viewed this page, also viewed:</b><ul><li><a
href="http://www.wpjedi.com/security-anti-hack-wordpress-plugins/" rel="bookmark" class="wherego_title">WordPress Security Toolbox: 40 Best Security Plugins</a></li><li><a
href="http://www.wpjedi.com/booking-calendar-online-reservation-system-for-wordpress/" rel="bookmark" class="wherego_title">Booking Calendar: Online Reservation System for WordPress</a></li><li><a
href="http://www.wpjedi.com/recommend-additional-content-on-your-wordpress-blog/" rel="bookmark" class="wherego_title">Recommend Additional Content On Your WordPress Blog</a></li></ul></div>]]></content:encoded> <wfw:commentRss>http://www.wpjedi.com/secure-your-wordpress-install-with-secure-wordpress-plugin/feed/</wfw:commentRss> <slash:comments>0</slash:comments> </item> <item><title>Why You Should Get User Locker</title><link>http://www.wpjedi.com/why-you-should-user-locker/</link> <comments>http://www.wpjedi.com/why-you-should-user-locker/#comments</comments> <pubDate>Mon, 25 May 2009 09:10:00 +0000</pubDate> <dc:creator>Wordpress Jedi</dc:creator> <category><![CDATA[Hack Prevention]]></category> <category><![CDATA[anti-hacker]]></category> <category><![CDATA[security]]></category><guid
isPermaLink="false">http://www.wpjedi.com/?p=1075</guid> <description><![CDATA[WordPress is a great content management system that has somewhat leveled the playing field by allowing almost anyone to start a sophisticated blog without having to spend thousands of dollars developing a CMS from scratch. When you get started with blogging, you are probably not going get so many visitors. The early days are always [...]]]></description> <content:encoded><![CDATA[<p><img
src="http://www.sxc.hu/pic/m/a/al/alifarid/1155814_old_lock.jpg" alt="Old Lock" width="164" height="123" /></p><p>WordPress is a great content management system that has somewhat leveled the playing field by allowing almost anyone to start a sophisticated blog without having to spend thousands of dollars developing a CMS from scratch. When you get started with blogging, you are probably not going get so many visitors. The early days are always going to be tough. But the last thing you want to do is take fundamental things for granted. By that I mean you shouldn&#8217;t assume for a second that just because you are not getting a lot of traffic, hackers are going to leave you alone. Your WordPress blog can be used by hackers to link out to their web properties or even as a tool to put harmful content on your users&#8217; computers. Running a WordPress blog is a big responsibility, and you shouldn&#8217;t cut corners and forget about taking proper measures to keep your blog secured.</p><p>User Locker is a cool little plugin for WordPress that lets you protect your admin page against brute force and dictionary attacks. If you have a short password, your WordPress install can easily get hacked by a brute force attack. However, by using User Locker, you can lock users out after a few number of invalid tries.</p><p><img
class="alignnone size-full wp-image-1076" title="131" src="http://www.wpjedi.com/wp-content/uploads/2009/05/131.gif" alt="131" width="368" height="177" /></p><p>I would encourage you to set this number to 3. Three tries should be enough for your users to get their username/password set right. And if they are who they say they are, they should have no trouble having their accounts activated again. They can always user the password lost feature to recover their password and unlock their account. In general, I am not a fan of allowing user registrations on my blog. It&#8217;s just too risky. But if you have to, you better make sure you take proper measures to protect your blog against hack attacks.</p><p><a
href="http://www.poradnik-webmastera.com/projekty/user_locker/" target="_blank">Download User Locker</a> now. It&#8217;s free!</p><div
id="wherego_related"></div>]]></content:encoded> <wfw:commentRss>http://www.wpjedi.com/why-you-should-user-locker/feed/</wfw:commentRss> <slash:comments>0</slash:comments> </item> </channel> </rss>
<!-- Performance optimized by W3 Total Cache. Learn more: http://www.w3-edge.com/wordpress-plugins/

Minified using xcache
Page Caching using xcache (User agent is rejected)
Database Caching 1/50 queries in 0.026 seconds using xcache
Object Caching 1400/1497 objects using xcache

Served from: www.wpjedi.com @ 2012-02-04 23:10:00 -->
