Chapter 6. 10 Must-Do WordPress Tasks
WordPress would be pretty safe, straight out of the digi-box, but if it has an Achilles heel, that's its popularity, making it an irresistible target for hackers. They see the swathes of default-set sites as a wheel of fortune. They also know how it works and how to attack it.
In response, what we have to do is to up the ante.
But you know all that, so let's get on with it. Here's the order of play:
Locking it down
Backing up the lot
Updating ... shrewdly
Neutering the admin account
Correcting permissions creep
Hiding the WordPress version
Nuking the
wp_
tables prefixSetting up secret keys
Denying access to
wp-config.php
Hardening
wp-content
andwp-includes