- Use latest stable version of Wordpress. Don’t use beta version!
- Your database table prefix must be other than default prefix (wp_) - Securing against sql injection.
- Wordpress version must be hidden - Many hackers take this advantage to attack wordpress in version that vulnerable. So, let them know nothing.
- Must be no user “admin” - this should be guested during sql injection. If u used it.. change it now.
- Put .htaccess in yout /wp-admin/ directory. - avoid directory listing.
Leave a Reply
This entry was posted
on Tuesday, July 15th, 2008 at 6:37 pm and is filed under Hacker, Network Security, Wordpress, hacking.
You can follow any responses to this entry through the RSS 2.0 feed.
You can leave a response, or trackback from your own site.