{"id":16496,"date":"2018-06-29T11:02:28","date_gmt":"2018-06-29T16:02:28","guid":{"rendered":"https:\/\/www.dotcom-tools.com\/blog\/?p=16496"},"modified":"2021-11-17T02:08:43","modified_gmt":"2021-11-17T08:08:43","slug":"wordpress-security-tips-and-tricks","status":"publish","type":"post","link":"https:\/\/www.dotcom-tools.com\/web-performance\/wordpress-security-tips-and-tricks\/","title":{"rendered":"How To Keep Your WordPress Site Secure &#8211; Tips and Tricks"},"content":{"rendered":"<p><img loading=\"lazy\" class=\"aligncenter size-full wp-image-16499\" src=\"https:\/\/www.dotcom-tools.com\/web-performance\/wp-content\/uploads\/2018\/06\/WordPress-Site-Secure-Tips.jpg\" alt=\"WordPress Security Tips an Tricks\" width=\"900\" height=\"400\" srcset=\"https:\/\/www.dotcom-tools.com\/web-performance\/wp-content\/uploads\/2018\/06\/WordPress-Site-Secure-Tips.jpg 900w, https:\/\/www.dotcom-tools.com\/web-performance\/wp-content\/uploads\/2018\/06\/WordPress-Site-Secure-Tips-350x156.jpg 350w, https:\/\/www.dotcom-tools.com\/web-performance\/wp-content\/uploads\/2018\/06\/WordPress-Site-Secure-Tips-768x341.jpg 768w\" sizes=\"(max-width: 900px) 100vw, 900px\" \/>As you probably already know, website security is essential in our day and age. With the <a href=\"https:\/\/www.dotcom-tools.com\/web-performance\/blog\/how-to-tell-if-wordpress-site-has-been-hacked\/\" target=\"_blank\" rel=\"noopener noreferrer\">threat of cyberattacks and malicious hacking<\/a> running rampant throughout the digital world, if you aren\u2019t committed to safeguarding your WordPress site, you could soon become one of the millions of security breach victims. There are new ways to hack and protect a site everyday, so it is important to research WordPress security tips regularly.<\/p>\n<p>Did you know that every week, Google bans over 50,000 websites per week for phishing attempts, and over 20,000 websites per week for malware? That\u2019s a ton of websites that solely exist to hack into your personal information. Unfortunately, this is just a small number when compared to the total number of individuals who make it their ultimate goal to hack into <a href=\"https:\/\/en.support.wordpress.com\/security\/\" target=\"_blank\" rel=\"noopener noreferrer\">your WordPress website<\/a>.<\/p>\n<p>Thankfully, there\u2019s several tips and techniques you can do to help reduce the ease and likelihood of an attack. Without further ado, here are some of the most powerful WordPress security tips and tricks.<\/p>\n<h2>Always Update WordPress and Plugins<\/h2>\n<p>The most important step to safeguarding your WordPress site is to always update WordPress when a new release comes out. Updates are filled with new and innovative security features, which means if you fail to update, your site can become vulnerable to attack. The same is true for plugins. Never allow a plugin to exist un-updated for too long, or you may find yourself at the wrong end of a cyberattack.<\/p>\n<h2>Secure File Permissions &#8211; Avoid 777 Permissions<\/h2>\n<p>While you may not understand the importance of file permissions, let\u2019s just say, if you keep standard 777 permissions, then you\u2019re basically a sitting duck. Change file permissions to 750 or 755. You should also consider updating your wp-config.php file permissions to 600, as well as any files with 640 or 644 permissions.<\/p>\n<h3>Customize WordPress Login Username<\/h3>\n<p>The default \u201cadmin\u201d username is like using \u201cPassword123\u201d as your password, it\u2019s foolish. Make sure you change your username to something as unique and strong as your passwords. While your at it, make sure your password is impenetrable. While Google Chrome and Safari have automatic password generators, there are many third-party applications, such as Norton Password Generator, capable of safeguarding your passwords.<\/p>\n<h3>Choose a Quality Web Host<\/h3>\n<p>The saying that you &#8220;get what you pay for&#8221; really rings true when it comes to WordPress hosting. The truth is that many times, cheap web hosting companies have bad security and often allow bad actors to run wild on their servers, which in turn compromises other sites. So, with that said, it&#8217;s important to make sure you choose <a href=\"https:\/\/shareasale.com\/r.cfm?b=394686&amp;u=574473&amp;m=41388&amp;urllink=&amp;afftrack=\" target=\"_blank\" rel=\"noopener nofollow noreferrer\">secure managed website hosting<\/a>. There are a variety of good options out there, so it&#8217;s not hard to find a quality WordPress host, it&#8217;s just something you have to take the time to do.<\/p>\n<p style=\"padding-left: 40px;\"><em><strong>Pro Tip: We <a href=\"https:\/\/shareasale.com\/r.cfm?b=394686&amp;u=574473&amp;m=41388&amp;urllink=&amp;afftrack=\" target=\"_blank\" rel=\"noopener nofollow noreferrer\">recommend WPEngine<\/a> if you&#8217;re looking for a premium managed WordPress host.<\/strong><\/em><\/p>\n<h3>Limit Login Attempts<\/h3>\n<p>Want to stop an attack dead in its tracks? Then the most important step you should take is limiting login attempts. This halts such attacks, such as Brute Force Entry, by rendering your login page useless after too many failed login attempts. You can select this option from your WordPress dashboard.<\/p>\n<h3>2-Factor Authentication (2FA)<\/h3>\n<p>2FA is a powerful way to safeguard entry into your user areas. One of the most effective tools for this is Google Authenticator, which comes as a WordPress Plugin. As soon as your website goes live, make sure to utilize either this plugin or another trusted source.<\/p>\n<h3>Use SSL for Dynamic Data Encryption<\/h3>\n<p>Nowadays, most <a href=\"https:\/\/www.dotcom-tools.com\/web-performance\/blog\/choose-best-wordpress-hosting-provider\/\" target=\"_blank\" rel=\"noopener noreferrer\">WordPress hosting providers offer<\/a> an SSL certificate. This powerful encryption tool keeps your data safe from prying eyes, and is absolutely necessary if you perform any financial transactions directly on your website. Contact your WordPress hosting provider to inquire about their SSL certificates. Another benefit? Google tends to rank websites with SSL certificates higher than websites that don\u2019t use this essential feature for WordPress security tips.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>As you probably already know, website security is essential in our day and age. With the threat of cyberattacks and malicious hacking running rampant throughout the digital world, if you aren\u2019t committed to safeguarding your WordPress site, you could soon become one of the millions of security breach victims. There are new ways to hack&hellip;<\/p>\n","protected":false},"author":5,"featured_media":16499,"comment_status":"open","ping_status":"open","sticky":false,"template":"template-url.php","format":"standard","meta":[],"categories":[75],"tags":[85,77,70,68],"yoast_head":"<!-- This site is optimized with the Yoast SEO Premium plugin v17.6 (Yoast SEO v19.1) - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\r\n<title>How To Keep Your WordPress Site Secure - Tips and Tricks<\/title>\r\n<meta name=\"description\" content=\"You can help reduce the likelihood of an attack on your WordPress site.Here are some of the most powerful WordPress security tips and tricks.\" \/>\r\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\r\n<link rel=\"canonical\" href=\"https:\/\/www.dotcom-tools.com\/web-performance\/wordpress-security-tips-and-tricks\/\" \/>\r\n<meta property=\"og:locale\" content=\"en_US\" \/>\r\n<meta property=\"og:type\" content=\"article\" \/>\r\n<meta property=\"og:title\" content=\"How To Keep Your WordPress Site Secure - Tips and Tricks\" \/>\r\n<meta property=\"og:description\" content=\"You can help reduce the likelihood of an attack on your WordPress site.Here are some of the most powerful WordPress security tips and tricks.\" \/>\r\n<meta property=\"og:url\" content=\"https:\/\/www.dotcom-tools.com\/web-performance\/wordpress-security-tips-and-tricks\/\" \/>\r\n<meta property=\"og:site_name\" content=\"Dotcom-Monitor Tools Blog\" \/>\r\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/dotcommonitor\" \/>\r\n<meta property=\"article:published_time\" content=\"2018-06-29T16:02:28+00:00\" \/>\r\n<meta property=\"article:modified_time\" content=\"2021-11-17T08:08:43+00:00\" \/>\r\n<meta property=\"og:image\" content=\"https:\/\/www.dotcom-tools.com\/web-performance\/wp-content\/uploads\/2018\/06\/WordPress-Site-Secure-Tips.jpg\" \/>\r\n\t<meta property=\"og:image:width\" content=\"900\" \/>\r\n\t<meta property=\"og:image:height\" content=\"400\" \/>\r\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\r\n<meta name=\"twitter:card\" content=\"summary\" \/>\r\n<meta name=\"twitter:creator\" content=\"@dotcom_monitor\" \/>\r\n<meta name=\"twitter:site\" content=\"@dotcom_monitor\" \/>\r\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Glenn Lee\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"3 minutes\" \/>\r\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebSite\",\"@id\":\"https:\/\/www.dotcom-tools.com\/web-performance\/#website\",\"url\":\"https:\/\/www.dotcom-tools.com\/web-performance\/\",\"name\":\"Dotcom-Monitor Tools Blog\",\"description\":\"Let&#039;s Make the Web a Faster Place.\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/www.dotcom-tools.com\/web-performance\/?s={search_term_string}\"},\"query-input\":\"required name=search_term_string\"}],\"inLanguage\":\"en-US\"},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/www.dotcom-tools.com\/web-performance\/wordpress-security-tips-and-tricks\/#primaryimage\",\"url\":\"https:\/\/www.dotcom-tools.com\/web-performance\/wp-content\/uploads\/2018\/06\/WordPress-Site-Secure-Tips.jpg\",\"contentUrl\":\"https:\/\/www.dotcom-tools.com\/web-performance\/wp-content\/uploads\/2018\/06\/WordPress-Site-Secure-Tips.jpg\",\"width\":900,\"height\":400,\"caption\":\"WordPress Security Tips an Tricks\"},{\"@type\":\"WebPage\",\"@id\":\"https:\/\/www.dotcom-tools.com\/web-performance\/wordpress-security-tips-and-tricks\/#webpage\",\"url\":\"https:\/\/www.dotcom-tools.com\/web-performance\/wordpress-security-tips-and-tricks\/\",\"name\":\"How To Keep Your WordPress Site Secure - Tips and Tricks\",\"isPartOf\":{\"@id\":\"https:\/\/www.dotcom-tools.com\/web-performance\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/www.dotcom-tools.com\/web-performance\/wordpress-security-tips-and-tricks\/#primaryimage\"},\"datePublished\":\"2018-06-29T16:02:28+00:00\",\"dateModified\":\"2021-11-17T08:08:43+00:00\",\"author\":{\"@id\":\"https:\/\/www.dotcom-tools.com\/web-performance\/#\/schema\/person\/a18124e28e1b2c8e71f8ddf7d3e38ed4\"},\"description\":\"You can help reduce the likelihood of an attack on your WordPress site.Here are some of the most powerful WordPress security tips and tricks.\",\"breadcrumb\":{\"@id\":\"https:\/\/www.dotcom-tools.com\/web-performance\/wordpress-security-tips-and-tricks\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/www.dotcom-tools.com\/web-performance\/wordpress-security-tips-and-tricks\/\"]}]},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/www.dotcom-tools.com\/web-performance\/wordpress-security-tips-and-tricks\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/www.dotcom-tools.com\/web-performance\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"How To Keep Your WordPress Site Secure &#8211; Tips and Tricks\"}]},{\"@type\":\"Person\",\"@id\":\"https:\/\/www.dotcom-tools.com\/web-performance\/#\/schema\/person\/a18124e28e1b2c8e71f8ddf7d3e38ed4\",\"name\":\"Glenn Lee\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/www.dotcom-tools.com\/web-performance\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/7a52a01e153d000504984c4f0853f002?s=96&d=retro&r=pg\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/7a52a01e153d000504984c4f0853f002?s=96&d=retro&r=pg\",\"caption\":\"Glenn Lee\"},\"description\":\"Glenn Lee is the chief product engineer for Dotcom-Monitor\u2019s LoadView load testing platform. Glenn is an industry expert on load\/stress testing and has appeared on numerous tech publications across the web. When Glenn\u2019s not testing the limits of websites, he enjoys cooking, flying airplanes, and racing motorcycles.\",\"url\":\"https:\/\/www.dotcom-tools.com\/web-performance\/author\/glenn-lee\/\"}]}<\/script>\r\n<!-- \/ Yoast SEO Premium plugin. -->","yoast_head_json":{"title":"How To Keep Your WordPress Site Secure - Tips and Tricks","description":"You can help reduce the likelihood of an attack on your WordPress site.Here are some of the most powerful WordPress security tips and tricks.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.dotcom-tools.com\/web-performance\/wordpress-security-tips-and-tricks\/","og_locale":"en_US","og_type":"article","og_title":"How To Keep Your WordPress Site Secure - Tips and Tricks","og_description":"You can help reduce the likelihood of an attack on your WordPress site.Here are some of the most powerful WordPress security tips and tricks.","og_url":"https:\/\/www.dotcom-tools.com\/web-performance\/wordpress-security-tips-and-tricks\/","og_site_name":"Dotcom-Monitor Tools Blog","article_publisher":"https:\/\/www.facebook.com\/dotcommonitor","article_published_time":"2018-06-29T16:02:28+00:00","article_modified_time":"2021-11-17T08:08:43+00:00","og_image":[{"width":900,"height":400,"url":"https:\/\/www.dotcom-tools.com\/web-performance\/wp-content\/uploads\/2018\/06\/WordPress-Site-Secure-Tips.jpg","type":"image\/jpeg"}],"twitter_card":"summary","twitter_creator":"@dotcom_monitor","twitter_site":"@dotcom_monitor","twitter_misc":{"Written by":"Glenn Lee","Est. reading time":"3 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebSite","@id":"https:\/\/www.dotcom-tools.com\/web-performance\/#website","url":"https:\/\/www.dotcom-tools.com\/web-performance\/","name":"Dotcom-Monitor Tools Blog","description":"Let&#039;s Make the Web a Faster Place.","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.dotcom-tools.com\/web-performance\/?s={search_term_string}"},"query-input":"required name=search_term_string"}],"inLanguage":"en-US"},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.dotcom-tools.com\/web-performance\/wordpress-security-tips-and-tricks\/#primaryimage","url":"https:\/\/www.dotcom-tools.com\/web-performance\/wp-content\/uploads\/2018\/06\/WordPress-Site-Secure-Tips.jpg","contentUrl":"https:\/\/www.dotcom-tools.com\/web-performance\/wp-content\/uploads\/2018\/06\/WordPress-Site-Secure-Tips.jpg","width":900,"height":400,"caption":"WordPress Security Tips an Tricks"},{"@type":"WebPage","@id":"https:\/\/www.dotcom-tools.com\/web-performance\/wordpress-security-tips-and-tricks\/#webpage","url":"https:\/\/www.dotcom-tools.com\/web-performance\/wordpress-security-tips-and-tricks\/","name":"How To Keep Your WordPress Site Secure - Tips and Tricks","isPartOf":{"@id":"https:\/\/www.dotcom-tools.com\/web-performance\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.dotcom-tools.com\/web-performance\/wordpress-security-tips-and-tricks\/#primaryimage"},"datePublished":"2018-06-29T16:02:28+00:00","dateModified":"2021-11-17T08:08:43+00:00","author":{"@id":"https:\/\/www.dotcom-tools.com\/web-performance\/#\/schema\/person\/a18124e28e1b2c8e71f8ddf7d3e38ed4"},"description":"You can help reduce the likelihood of an attack on your WordPress site.Here are some of the most powerful WordPress security tips and tricks.","breadcrumb":{"@id":"https:\/\/www.dotcom-tools.com\/web-performance\/wordpress-security-tips-and-tricks\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.dotcom-tools.com\/web-performance\/wordpress-security-tips-and-tricks\/"]}]},{"@type":"BreadcrumbList","@id":"https:\/\/www.dotcom-tools.com\/web-performance\/wordpress-security-tips-and-tricks\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.dotcom-tools.com\/web-performance\/"},{"@type":"ListItem","position":2,"name":"How To Keep Your WordPress Site Secure &#8211; Tips and Tricks"}]},{"@type":"Person","@id":"https:\/\/www.dotcom-tools.com\/web-performance\/#\/schema\/person\/a18124e28e1b2c8e71f8ddf7d3e38ed4","name":"Glenn Lee","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.dotcom-tools.com\/web-performance\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/7a52a01e153d000504984c4f0853f002?s=96&d=retro&r=pg","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/7a52a01e153d000504984c4f0853f002?s=96&d=retro&r=pg","caption":"Glenn Lee"},"description":"Glenn Lee is the chief product engineer for Dotcom-Monitor\u2019s LoadView load testing platform. Glenn is an industry expert on load\/stress testing and has appeared on numerous tech publications across the web. When Glenn\u2019s not testing the limits of websites, he enjoys cooking, flying airplanes, and racing motorcycles.","url":"https:\/\/www.dotcom-tools.com\/web-performance\/author\/glenn-lee\/"}]}},"_links":{"self":[{"href":"https:\/\/www.dotcom-tools.com\/web-performance\/wp-json\/wp\/v2\/posts\/16496"}],"collection":[{"href":"https:\/\/www.dotcom-tools.com\/web-performance\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.dotcom-tools.com\/web-performance\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.dotcom-tools.com\/web-performance\/wp-json\/wp\/v2\/users\/5"}],"replies":[{"embeddable":true,"href":"https:\/\/www.dotcom-tools.com\/web-performance\/wp-json\/wp\/v2\/comments?post=16496"}],"version-history":[{"count":6,"href":"https:\/\/www.dotcom-tools.com\/web-performance\/wp-json\/wp\/v2\/posts\/16496\/revisions"}],"predecessor-version":[{"id":17757,"href":"https:\/\/www.dotcom-tools.com\/web-performance\/wp-json\/wp\/v2\/posts\/16496\/revisions\/17757"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.dotcom-tools.com\/web-performance\/wp-json\/wp\/v2\/media\/16499"}],"wp:attachment":[{"href":"https:\/\/www.dotcom-tools.com\/web-performance\/wp-json\/wp\/v2\/media?parent=16496"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.dotcom-tools.com\/web-performance\/wp-json\/wp\/v2\/categories?post=16496"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.dotcom-tools.com\/web-performance\/wp-json\/wp\/v2\/tags?post=16496"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}