{"id":20297,"date":"2019-09-19T11:55:19","date_gmt":"2019-09-19T03:55:19","guid":{"rendered":"https:\/\/dp2024.sim-dp.com\/?p=20297"},"modified":"2020-01-08T09:38:24","modified_gmt":"2020-01-08T01:38:24","slug":"how-to-secure-your-wordpress-website","status":"publish","type":"post","link":"https:\/\/dp2024.sim-dp.com\/en\/how-to-secure-your-wordpress-website\/","title":{"rendered":"How To Secure Your WordPress Website"},"content":{"rendered":"<h4><b>Why Website Security is Important?<\/b><\/h4>\n<p><span style=\"font-weight: 400;\">The grounded rules of operating a website is security and protecting client\u2019s data away from the occurrence of the human-error and the prevention of a hacker. Hacked WordPress sites can cause serious damage to your business&#8217;s revenue and reputation. Hackers can steal passwords, user information, installation of malware, and even distribute malware to your client.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Worst, you might even pay for the ransomware to hackers just because of regaining access to your site.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Online scams are far more common than you can imagine. According to Google\u2019s report in 2016, it indicated that more than 50 million website users were warned that those websites contain malware or steal information.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">In addition, Google has detected approximately 20,000 malware sites and approximately 50,000 phishing sites per week.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Therefore, it is important to pay extra attention to the security of your WordPress website. Here are the suggestions for you to enhance the security of your WordPress website.<\/span><\/p>\n<p><b>9 Actions To Secure Your WordPress Website<\/b><\/p>\n<ol>\n<li><b>Using strong passwords<\/b><span style=\"font-weight: 400;\"> equals stronger protection. The most common WordPress hacking attempts are using stolen passwords. The more complex the password you have, the higher the security you can be guaranteed. Hence, you can make difficult and unique passwords for each login of your website. For example, WordPress admin area, FTP accounts, database, <\/span><span style=\"font-weight: 400;\">WordPress hosting<\/span><span style=\"font-weight: 400;\"> account, and your <\/span><span style=\"font-weight: 400;\">custom email addresses<\/span><span style=\"font-weight: 400;\"><span style=\"font-weight: 400;\"> in your site\u2019s domain name.<\/span><\/span>When there are lots of passwords corresponding to different platforms, it is difficult to remember all those passwords. In this case, you can use a password manager so that you don\u2019t need to remember passwords anymore.<\/li>\n<li><b>Backing up all the data <\/b>allows you to quickly restore your WordPress site in case of the data loss. There are many free and paid WordPress backup plugins application that you can use. You should regularly save full-site backups to a remote location, which is a kind of disaster recovery service.<\/li>\n<li><b>Setup an auditing and monitoring system<\/b> that keeps track of everything that happens on your website. This includes file integrity monitoring, failed login attempts, malware scanning, etc. In addition, these WordPress updates are crucial for the security and stability of your WordPress site. You need to make sure that your WordPress core, plugins, and theme are <b><b>up to date.<\/b><\/b><\/li>\n<li>Using a <b>web application firewall (WAF) <\/b>is the easiest way to protect your site<b>. <\/b>A website firewall is able to block all malicious traffic before it even reaches your website.<br \/>\n\u2022 <strong>DNS Level Website Firewall<\/strong> \u2013similar to traditional firewalls, able to blocks\/redirects end-users from accessing malicious sites. DNS Firewall is applied at a different layer and phase, namely threat intelligence data feeds are applied to the domain name system.<br \/>\n\u2022 <strong>Application Level Firewall<\/strong> \u2013 These firewall plugins examine the traffic once it reaches your server but before loading most WordPress scripts. It runs by monitoring and possibly blocking inputs and outputs that do not conform to the firewall configuration policy.<\/li>\n<li><b>SSL (Secure Sockets Layer)<\/b> is a protocol that encrypts data transfer between your website and the user\u2019s browser. This encryption makes it harder for someone to sniff around and steal information.\u00a0 SSL ensures the safety of your website. You will see HTTPS at the beginning of your website address, with a padlock sign next to it in the browser.<\/li>\n<li><b>Change the \u201cadmin\u201d username<\/b>, the default WordPress admin username is well-known for every beginning of user. Since usernames make up half of login credentials, this made hackers easily attacks the website. You should change a custom username at WordPress.<\/li>\n<li><b>Limited the login attempts<\/b>. WordPress has the default setting for unlimited password failure that allows users to try to login as many times as they might forget about the password. But this convenience also put the safety of your website to the risk. Hackers can crack the passwords by trying to login with different combinations accordingly.\u00a0 Therefore, it is suggested that limited password attempts or using the web application firewall mentioned earlier.<\/li>\n<\/ol>\n<ol start=\"8\">\n<li><b>Two-factor authentication<\/b><span style=\"font-weight: 400;\"> technique adds an additional layer to secure the authentication process by dual-security check. Generally, most of the user is lack of the sense of data protection, which is only relying on the single and simple password typically that will increase the risk of offensive hacking.\u00a0 In contrast, the two-factor authentication is required multi-security to prove the identity that is the real owner of the website distinguished from the hacker. Actually, you need to install and activate the <\/span><span style=\"font-weight: 400;\">Two Factor Authentication<\/span><span style=\"font-weight: 400;\"><span style=\"font-weight: 400;\"> plugin to your WordPress site, which can effectively enhance the security of your website.<\/span><\/span><\/li>\n<li>\u00a0<b>Automatic inactivity logout<\/b><b> in WordPress, <\/b>when the user inactively logout the account of your WordPress website, keeping the login position would potentially increase security risk, such as hijacking your website, changing passwords, or making changes to their account.\u00a0 One step in protecting client data is implementing an automatic inactivity logout and This is why many banking and financial sites automatically log out an inactive user. On your WordPress site, it is suggested to install and activate the Inactive Logout plugin. Upon activation, visit Settings \u00bb Inactive Logout page to configure plugin settings.<\/li>\n<\/ol>\n<p><b>The Role of WordPress Hosting<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Your WordPress Hosting service plays the most important role in the security of your WordPress site. Dataplugs takes extra measures to protect our servers against common threats.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Here are our summaries for a good web hosting to protect your websites and data:<\/span><\/p>\n<ul>\n<li><span style=\"font-weight: 400;\">&#8211; Keep tracking to monitor their network for suspicious activity.<\/span><\/li>\n<li><span style=\"font-weight: 400;\">&#8211; Good hosting companies have tools in place to prevent large scale DDOS attacks<\/span><\/li>\n<li><span style=\"font-weight: 400;\">&#8211; Keep their server software and hardware up to date to prevent hackers from exploiting a known security vulnerability in an old version.<\/span><\/li>\n<li><span style=\"font-weight: 400;\">&#8211; Always ready to deploy disaster recovery and accidents plans.<\/span><\/li>\n<\/ul>\n<p><span style=\"font-weight: 400;\">So far, we have shown you the basic steps to build a secured website. Hopefully, you will find your own way to build a perfect website eventually. We also have the<\/span><a href=\"https:\/\/dp2024.sim-dp.com\/en\/knowledgebase_category\/wordpress\/\"><b> knowledge base about WordPress<\/b><\/a> <span style=\"font-weight: 400;\">and<\/span> <a href=\"https:\/\/dp2024.sim-dp.com\/en\/best-wordpress-plugins-in-2019\/\"><b>Best WordPress Plugins in 2019 <\/b><\/a><b>\u00a0<\/b><span style=\"font-weight: 400;\">i<\/span><span style=\"font-weight: 400;\">f you need detailed instructions. <\/span><span style=\"font-weight: 400;\">If you have any questions, please contact us by phone at +852 3959 1888 or email <\/span><a href=\"mailto:sales@dp2024.sim-dp.com\"><span style=\"font-weight: 400;\">sales@dp2024.sim-dp.com<\/span><\/a><span style=\"font-weight: 400;\">.<\/span><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Why Website Security is Important? The grounded rules of operating a website is security and protecting client\u2019s data away from the occurrence of the human-error &#8230; <a class=\"understrap-read-more-link\" href=\"https:\/\/dp2024.sim-dp.com\/en\/how-to-secure-your-wordpress-website\/\">read more<\/a><\/p>\n","protected":false},"author":4,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_cloudinary_featured_overwrite":false,"footnotes":""},"categories":[92,93],"tags":[],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v22.0 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>How To Secure Your WordPress Website | Dataplugs<\/title>\n<meta name=\"description\" content=\"Why Website Security is Important? The grounded rules of operating a website is security and protecting client\u2019s data away from the occurrence of the\" \/>\n<meta name=\"robots\" content=\"index, follow\" \/>\n<link rel=\"canonical\" href=\"https:\/\/dp2024.sim-dp.com\/en\/how-to-secure-your-wordpress-website\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"How To Secure Your WordPress Website | Dataplugs\" \/>\n<meta property=\"og:description\" content=\"Why Website Security is Important? The grounded rules of operating a website is security and protecting client\u2019s data away from the occurrence of the\" \/>\n<meta property=\"og:url\" content=\"https:\/\/dp2024.sim-dp.com\/en\/how-to-secure-your-wordpress-website\/\" \/>\n<meta property=\"og:site_name\" content=\"Dataplugs\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/dataplugs\/\" \/>\n<meta property=\"article:published_time\" content=\"2019-09-19T03:55:19+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2020-01-08T01:38:24+00:00\" \/>\n<meta name=\"author\" content=\"Felix Cheung\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@dataplugs\" \/>\n<meta name=\"twitter:site\" content=\"@dataplugs\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Felix Cheung\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"5 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\/\/dp2024.sim-dp.com\/en\/how-to-secure-your-wordpress-website\/#article\",\"isPartOf\":{\"@id\":\"https:\/\/dp2024.sim-dp.com\/en\/how-to-secure-your-wordpress-website\/\"},\"author\":{\"name\":\"Felix Cheung\",\"@id\":\"https:\/\/dp2024.sim-dp.com\/en\/#\/schema\/person\/969f09c2c1bd2a73d3dc8b7c464a2d61\"},\"headline\":\"How To Secure Your WordPress Website\",\"datePublished\":\"2019-09-19T03:55:19+00:00\",\"dateModified\":\"2020-01-08T01:38:24+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\/\/dp2024.sim-dp.com\/en\/how-to-secure-your-wordpress-website\/\"},\"wordCount\":1015,\"publisher\":{\"@id\":\"https:\/\/dp2024.sim-dp.com\/en\/#organization\"},\"articleSection\":[\"Web Hosting\",\"Web Security\"],\"inLanguage\":\"en-US\",\"about\":{\"@id\":\"https:\/\/dp2024.sim-dp.com\/en\/how-to-secure-your-wordpress-website\/\"},\"thumbnailUrl\":\"https:\/\/dp2024.sim-dp.com\/wp-content\/uploads\/2019\/09\/919_blog-1.jpg\"},{\"@type\":\"WebPage\",\"@id\":\"https:\/\/dp2024.sim-dp.com\/en\/how-to-secure-your-wordpress-website\/\",\"url\":\"https:\/\/dp2024.sim-dp.com\/wp-content\/uploads\/2019\/09\/919_blog-1.jpg\",\"name\":\"How To Secure Your WordPress Website | Dataplugs\",\"isPartOf\":{\"@id\":\"https:\/\/dp2024.sim-dp.com\/en\/#website\"},\"datePublished\":\"2019-09-19T03:55:19+00:00\",\"dateModified\":\"2020-01-08T01:38:24+00:00\",\"description\":\"Why Website Security is Important? The grounded rules of operating a website is security and protecting client\u2019s data away from the occurrence of the\",\"breadcrumb\":{\"@id\":\"https:\/\/dp2024.sim-dp.com\/en\/how-to-secure-your-wordpress-website\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/dp2024.sim-dp.com\/en\/how-to-secure-your-wordpress-website\/\"]}],\"contentUrl\":\"https:\/\/dp2024.sim-dp.com\/wp-content\/uploads\/2019\/09\/919_blog-1.jpg\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/dp2024.sim-dp.com\/en\/how-to-secure-your-wordpress-website\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/dp2024.sim-dp.com\/en\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"How To Secure Your WordPress Website\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/dp2024.sim-dp.com\/en\/#website\",\"url\":\"https:\/\/dp2024.sim-dp.com\/en\/\",\"name\":\"Dataplugs\",\"description\":\"\",\"publisher\":{\"@id\":\"https:\/\/dp2024.sim-dp.com\/en\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/dp2024.sim-dp.com\/en\/?s={search_term_string}\"},\"query-input\":\"required name=search_term_string\"}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\/\/dp2024.sim-dp.com\/en\/#organization\",\"name\":\"Dataplugs Limited\",\"url\":\"https:\/\/dp2024.sim-dp.com\/en\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/dp2024.sim-dp.com\/en\/#\/schema\/logo\/image\/\",\"url\":\"https:\/\/dp2024.sim-dp.com\/wp-content\/uploads\/2021\/09\/logo_en-1.png\",\"contentUrl\":\"https:\/\/dp2024.sim-dp.com\/wp-content\/uploads\/2021\/09\/logo_en-1.png\",\"width\":1,\"height\":1,\"caption\":\"Dataplugs Limited\"},\"image\":{\"@id\":\"https:\/\/dp2024.sim-dp.com\/en\/#\/schema\/logo\/image\/\"},\"sameAs\":[\"https:\/\/www.facebook.com\/dataplugs\/\",\"https:\/\/twitter.com\/dataplugs\",\"https:\/\/www.instagram.com\/dataplugs\/\",\"https:\/\/www.linkedin.com\/company\/dataplugs-limited\"]},{\"@type\":\"LocalBusiness\",\"@id\":\"https:\/\/dp2024.sim-dp.com\/en\/#\/schema\/person\/969f09c2c1bd2a73d3dc8b7c464a2d61\",\"name\":\"Dataplugs Limited\",\"image\":\"https:\/\/www.dataplugs.com\/wp-content\/uploads\/2018\/06\/logo_en.png\",\"telephone\":\"+852 3959 1888\",\"address\":{\"@type\":\"PostalAddress\",\"streetAddress\":\"Suite 3602, 36\/F., AIA Kowloon Tower, 100 How Ming Street, Kwun Tong, Kowloon, Hong Kong\",\"addressLocality\":\"Hong Kong\",\"addressCountry\":\"HK\"}}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"How To Secure Your WordPress Website | Dataplugs","description":"Why Website Security is Important? The grounded rules of operating a website is security and protecting client\u2019s data away from the occurrence of the","robots":{"index":"index","follow":"follow"},"canonical":"https:\/\/dp2024.sim-dp.com\/en\/how-to-secure-your-wordpress-website\/","og_locale":"en_US","og_type":"article","og_title":"How To Secure Your WordPress Website | Dataplugs","og_description":"Why Website Security is Important? The grounded rules of operating a website is security and protecting client\u2019s data away from the occurrence of the","og_url":"https:\/\/dp2024.sim-dp.com\/en\/how-to-secure-your-wordpress-website\/","og_site_name":"Dataplugs","article_publisher":"https:\/\/www.facebook.com\/dataplugs\/","article_published_time":"2019-09-19T03:55:19+00:00","article_modified_time":"2020-01-08T01:38:24+00:00","author":"Felix Cheung","twitter_card":"summary_large_image","twitter_creator":"@dataplugs","twitter_site":"@dataplugs","twitter_misc":{"Written by":"Felix Cheung","Est. reading time":"5 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/dp2024.sim-dp.com\/en\/how-to-secure-your-wordpress-website\/#article","isPartOf":{"@id":"https:\/\/dp2024.sim-dp.com\/en\/how-to-secure-your-wordpress-website\/"},"author":{"name":"Felix Cheung","@id":"https:\/\/dp2024.sim-dp.com\/en\/#\/schema\/person\/969f09c2c1bd2a73d3dc8b7c464a2d61"},"headline":"How To Secure Your WordPress Website","datePublished":"2019-09-19T03:55:19+00:00","dateModified":"2020-01-08T01:38:24+00:00","mainEntityOfPage":{"@id":"https:\/\/dp2024.sim-dp.com\/en\/how-to-secure-your-wordpress-website\/"},"wordCount":1015,"publisher":{"@id":"https:\/\/dp2024.sim-dp.com\/en\/#organization"},"articleSection":["Web Hosting","Web Security"],"inLanguage":"en-US","about":{"@id":"https:\/\/dp2024.sim-dp.com\/en\/how-to-secure-your-wordpress-website\/"},"thumbnailUrl":"https:\/\/dp2024.sim-dp.com\/wp-content\/uploads\/2019\/09\/919_blog-1.jpg"},{"@type":"WebPage","@id":"https:\/\/dp2024.sim-dp.com\/en\/how-to-secure-your-wordpress-website\/","url":"https:\/\/dp2024.sim-dp.com\/wp-content\/uploads\/2019\/09\/919_blog-1.jpg","name":"How To Secure Your WordPress Website | Dataplugs","isPartOf":{"@id":"https:\/\/dp2024.sim-dp.com\/en\/#website"},"datePublished":"2019-09-19T03:55:19+00:00","dateModified":"2020-01-08T01:38:24+00:00","description":"Why Website Security is Important? The grounded rules of operating a website is security and protecting client\u2019s data away from the occurrence of the","breadcrumb":{"@id":"https:\/\/dp2024.sim-dp.com\/en\/how-to-secure-your-wordpress-website\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/dp2024.sim-dp.com\/en\/how-to-secure-your-wordpress-website\/"]}],"contentUrl":"https:\/\/dp2024.sim-dp.com\/wp-content\/uploads\/2019\/09\/919_blog-1.jpg"},{"@type":"BreadcrumbList","@id":"https:\/\/dp2024.sim-dp.com\/en\/how-to-secure-your-wordpress-website\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/dp2024.sim-dp.com\/en\/"},{"@type":"ListItem","position":2,"name":"How To Secure Your WordPress Website"}]},{"@type":"WebSite","@id":"https:\/\/dp2024.sim-dp.com\/en\/#website","url":"https:\/\/dp2024.sim-dp.com\/en\/","name":"Dataplugs","description":"","publisher":{"@id":"https:\/\/dp2024.sim-dp.com\/en\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/dp2024.sim-dp.com\/en\/?s={search_term_string}"},"query-input":"required name=search_term_string"}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/dp2024.sim-dp.com\/en\/#organization","name":"Dataplugs Limited","url":"https:\/\/dp2024.sim-dp.com\/en\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/dp2024.sim-dp.com\/en\/#\/schema\/logo\/image\/","url":"https:\/\/dp2024.sim-dp.com\/wp-content\/uploads\/2021\/09\/logo_en-1.png","contentUrl":"https:\/\/dp2024.sim-dp.com\/wp-content\/uploads\/2021\/09\/logo_en-1.png","width":1,"height":1,"caption":"Dataplugs Limited"},"image":{"@id":"https:\/\/dp2024.sim-dp.com\/en\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/www.facebook.com\/dataplugs\/","https:\/\/twitter.com\/dataplugs","https:\/\/www.instagram.com\/dataplugs\/","https:\/\/www.linkedin.com\/company\/dataplugs-limited"]},{"@type":"LocalBusiness","@id":"https:\/\/dp2024.sim-dp.com\/en\/#\/schema\/person\/969f09c2c1bd2a73d3dc8b7c464a2d61","name":"Dataplugs Limited","image":"https:\/\/www.dataplugs.com\/wp-content\/uploads\/2018\/06\/logo_en.png","telephone":"+852 3959 1888","address":{"@type":"PostalAddress","streetAddress":"Suite 3602, 36\/F., AIA Kowloon Tower, 100 How Ming Street, Kwun Tong, Kowloon, Hong Kong","addressLocality":"Hong Kong","addressCountry":"HK"}}]}},"_links":{"self":[{"href":"https:\/\/dp2024.sim-dp.com\/en\/wp-json\/wp\/v2\/posts\/20297"}],"collection":[{"href":"https:\/\/dp2024.sim-dp.com\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/dp2024.sim-dp.com\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/dp2024.sim-dp.com\/en\/wp-json\/wp\/v2\/users\/4"}],"replies":[{"embeddable":true,"href":"https:\/\/dp2024.sim-dp.com\/en\/wp-json\/wp\/v2\/comments?post=20297"}],"version-history":[{"count":8,"href":"https:\/\/dp2024.sim-dp.com\/en\/wp-json\/wp\/v2\/posts\/20297\/revisions"}],"predecessor-version":[{"id":20337,"href":"https:\/\/dp2024.sim-dp.com\/en\/wp-json\/wp\/v2\/posts\/20297\/revisions\/20337"}],"wp:attachment":[{"href":"https:\/\/dp2024.sim-dp.com\/en\/wp-json\/wp\/v2\/media?parent=20297"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/dp2024.sim-dp.com\/en\/wp-json\/wp\/v2\/categories?post=20297"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/dp2024.sim-dp.com\/en\/wp-json\/wp\/v2\/tags?post=20297"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}