Useful information and technical details if you want to know more how to protect WordPress from modern threats effectively
Let's make things clear with these intruder activities that happens every day on any website. How are they dangerous? What tools or plugin can mitigate them? What are chances that we can do that successfully?
Two-Factor Authentication plugins for WordPress allow you to use a mobile phone to verify yourself before you get inside.
If you ever receive a letter any kind that requests to create, download or install some PHP code on your website you must ignore it.
IP Access Lists (commonly referred to as ACLs) are intended to restrict access to vital WordPress functions, WordPress login and registration forms from unwanted computers and bots. The WP Cerber plugin supports two types of access lists: White IP Access List and Black IP Access List. Both access lists are manually managed by [...]
It can be easily done by having the jetFlow.io plugin installed and using a tiny workflow. Security Blog Get WordPress protected: rename the plugins folder Security Blog Manage multiple WP Cerber instances from one dashboard WordPress Security How To Restrict access to WordPress REST API Security Blog Cerber Security Scanner [...]
This article assumes that we want to get a bulletproof protected website powered by WordPress. It’s not necessarily to do all the following steps word for word and point by point exactly as described. But I do recommend that if you want to create your own Fort Knox. Security Blog Cerber Security Scanner Settings Security [...]
You can find plenty of comments and advice on that on the Internet. But is it real? Security Blog Manage multiple WP Cerber instances from one dashboard WordPress Security How To How to stop spam user registrations on your WordPress WordPress Security How To Restrict access to WordPress REST API Security Blog Get WordPress [...]
All suggested settings are highly recommended for most websites on the Internet. If you need, for some reason, these functions are being accessible from a particular computer or an IP network you can easily add them to the White IP Access List. Disable REST API The plugin restricts access to the WordPress REST API. The ability [...]
To enable retrieving, check option: Drill down IP. To view the information click on a particular IP address on the Activity tab. Technical details To get extra information like country, company, network info and abuse contact WP Cerber uses requests to a limited set of external WHOIS servers which are maintained by appropriate [...]
Want to know more about plugins you have installed on your blog? The Plugin Inspector plugin is an easy way to check plugins installed on your WordPress and make sure that plugins do not use deprecated WordPress functions and some unsafe functions like eval, base64_decode, system, exec, etc. Some of those functions may be used [...]