Ripefruit

  • About Us
    • About Us
      • Acceptable Use
      • Privacy Policy
      • T & C
    • Contact Ripefruit
    • In Progress
    • Not For Profit
    • Partners
  • What We Do!
    • Advertising
    • Publications
    • Web Design
  • Clients
    • Billing
    • Client Login
    • Resources
      • Friends
      • Service Status
    • Support
  • IT Talk
    • Domain Names
    • Hosting
    • Internet
    • Search
    • Services
    • Software
    • Technical
  • Contact Us
    • Contact Us
    • Site Map
You are here: Home / IT Talk / Hosting / Best Wordpress Security Fix

Best WordPress Security Fix

How we locked down our WordPress web sites, but in one move drastically improved server performance.

Keeping in mind that the most common attack against WordPress is brute force passwords, then why not stop it in it’s tracks by blocking access to wp-admin.

By blocking all access to WordPress Admin except to known IP Addresses, it stops the attacks before they start, but also improves server performance because the server is not having to process millions of attacks.

  • How To Protect WordPress Admin

Great For

  • Small business web sites
  • Less than 10 admin users
  • Most web sites

Not For

  • Forums
  • Intranets
  • Any site that has multiple admin users

How They Attack

The most common attack against the WordPress user is brute forcing the password of an account to gain access to the back-end of the WordPress system.

Other ways a password can be compromised include sniffing the password in clear text over a HTTP login session or even getting the credentials from a key logger on the workstation of the WordPress administrator.

Accounts with administrator level access are the most sought after due to the amount of mischief an admin user can get up to; adding PHP command shells or malicious javascript directly through admin interface are common examples.

Sources

  • hackertarget.com
  • Admin Protect Fix


Please LIKE or tell a friend..



Post Views: 1,532

Also See..


  • How important is website security?
  • The BEST WordPress Security Plugin of all time
  • WordPress Admin Protection
  • iThemes WordPress Security Webinar – Free
  • Hacked WordPress | What Next?

Recent Posts

  • How We Solved a Encoding Issue (Thanks to ChatGPT)
  • Windows 11 Not Seeing Keyboard at PIN Login = Fix
  • WooCoomerce: Buy Now + Affiliate Link + Cart – FIXED

About Brian King

Managing director and senior editor at Ripefruit Media

  • Email
  • Facebook
  • Twitter
  • YouTube

For Advertisers

  • Advertising FAQ
  • Contact Us
  • Content Changes
  • Website Network

IT Talk

  • How We Solved a Encoding Issue (Thanks to ChatGPT)
  • Windows 11 Not Seeing Keyboard at PIN Login = Fix
  • WooCoomerce: Buy Now + Affiliate Link + Cart – FIXED
  • Why WP Engine Affiliate program migration from ShareASale to Everflow is a WASTE of time
  • how to hide nvidia pop up
  • Facebook Wishlist: Edit Featured Pin’s
  • What is the best shopping cart?
  • file explorer not responding FIX

Keywords

admin affiliation attack australian avg brute force business cache change domain name ebay email facebook fix form for sale fraud google hosting how to htaccess image ip ip address LastPass mobile password Phishing pin plugin ranking removal remove responsive scam security seo software spam toontown web site website Wordfence wordpress wpmu dev

SiteMap

  • About Us
  • Acceptable Use Policy
  • Advertising
  • Contact Us
  • Digital Publications
  • Domain Names
  • Email
  • Home Page
  • Hosting
  • Internet
  • Publishing
  • Software
  • Technical
  • Search
  • Services
  • Web Design
  • About Us
  • What We Do!
  • Clients
  • IT Talk
  • Contact Us


Copyright © 2025 · Ripefruit

Ripefruit acknowledges and pays respect to Aboriginal and Torres Strait Islander Elders past, present and future. We commit to building a kind future for everyone.