Protecting my Wordpress Site from Hackers.

seojen

Supreme Member
Joined
Dec 2, 2018
Messages
1,271
Reaction score
531
Hi guys,

What do you guys think of "BulletProof Security " plugin ?
Does it really help protecting the site or there's any better alternative ?
Please share experience you had using this plugin or any other so that I can make my decision.

Thanks.
 
Agree with @MisterF, also transfer DNS to Cloudflare they will also do their best to block certain attacks and speed up your site. Does not cost you a dime!
 
Agree with @MisterF, also transfer DNS to Cloudflare they will also do their best to block certain attacks and speed up your site. Does not cost you a dime!
Thanks,I'll contact my host for the cloudflare thing.
 
Things you can do to protect from hackers:
  • Update plugins and WordPress
  • Change wp-login & wp-admin url's (you can do it manually or with plugin) - it will be harder for them to find your login URL
  • Limit login attempts up to 2 or 3
  • Strong password
  • Maybe you can add login to your wp-login page also
  • Stay away from nulled themes except if you know what are you doing
This will be enough. Works for me and I didn't had any problem with hackers. Also you can try with Wordfence plugin.
 
Things you can do to protect from hackers:
  • Update plugins and WordPress
  • Change wp-login & wp-admin url's (you can do it manually or with plugin) - it will be harder for them to find your login URL
  • Limit login attempts up to 2 or 3
  • Strong password
  • Maybe you can add login to your wp-login page also
  • Stay away from nulled themes except if you know what are you doing
This will be enough. Works for me and I didn't had any problem with hackers. Also you can try with Wordfence plugin.
Thanks a lot for the guide,I think I'll go with wordfence.
 
Most of the security plugins are good, but it’s just part of it. Make sure to not use nulled themes and plugins. Also make sure to secure your server.
 
Any easy way to do this without installing plugin? Thanks.
Follow this tutorial, but keep in mind to make a backup just in case >
https://themesgrove.com/change-wordpress-login-url-without-plugin/
It's always better to do it by yourself instead of plugins when you can because it will slow down your site a little bit.

It's a lot of work but I have no other choice.

Yep, it's a lot of work, but if you want to keep your site safe you need to work man. You don't want some hackers to inject some scripts on your site or something like that.
 
I'll check

I'll check this one too, thanks for sharing.

You are welcome. Just don't be lazy when it comes security of your site. Especially if that site is going to make you some money. Good luck :)
 
Sucuri Security – Auditing, Malware Scanner and Security Hardening plugin is best for wordpress security .The Sucuri WordPress Security plugin is a security tool set for security integrity monitoring, malware detection and security hardening.

You'll want to scan your local computer for malware and key loggers, update all your software, update WordPress and all your plugins, and maybe use a plugin called limit login attempts if the hack occurred due to a weak WordPress admin login.
 
i am using Sucuri security with cloudflare and that is protecting my blogs from attackers ,that not make my site slow as well efficiently handling the things
 
As some others have mentioned, I really like All in one WP security as well because of the amount of changes you could make for security. You could rename you database, change the default username etc.

But one thing I like about the plug-in that I wasn't able to do easily with the other security plug-ins is to change the login url. It has a few options like requiring a url cookie or just renaming the URL login page altogether. Really stopped those annoying alerts to my email that someone is trying repeatedly to bruteforce the login page.

You could also try Sitelock. It's a paid one but has continuous scanning for vulnerabilities and auto malware removal.
 
The number one thing you can do with the above suggestions is to also not install nulled plugins and themes. It can be tempting to save some money but in the long run it will cost you more than you saved. Many sites distributing nulled WordPress content contain backdoors and/or malware.
 
Back
Top