{"id":22697,"date":"2016-04-18T12:23:59","date_gmt":"2016-04-18T10:23:59","guid":{"rendered":"https:\/\/wpjournalist.wpmudev.host\/?p=22564"},"modified":"2021-10-31T14:49:25","modified_gmt":"2021-10-31T14:49:25","slug":"seriously-you-really-need-to-secure-your-wordpress-website-now","status":"publish","type":"post","link":"https:\/\/wpjournalist.nl\/en\/seriously-you-really-need-to-secure-your-wordpress-website-now\/","title":{"rendered":"Seriously, you really need to secure your WordPress website now"},"content":{"rendered":"<p>Did you know that the website of Mossack Fonseca, the company of the Panama Papers, was&nbsp;a WordPress website?<\/p>\n<p>And did you know that the site was probably hacked because of an outdated version of&nbsp;Revolution Slider?<\/p>\n<p><a href=\"https:\/\/www.wordfence.com\/blog\/2016\/04\/mossack-fonseca-breach-vulnerable-slider-revolution\/?utm_source=list&amp;utm_medium=email&amp;utm_campaign=mfon\" target=\"_blank\" rel=\"noopener noreferrer\">Wordfence announced this in its blog<\/a>. Wordfence is one of the best plugins of the moment&nbsp;to secure your website against unwanted intruders.<\/p>\n<p>The hacking of your WordPress website is one of the biggest nightmares for website&nbsp;owners. So it is important to secure this website properly.<\/p>\n<p>From one moment to the next, your website will no longer be accessible and you will no&nbsp;longer be able to access the CMS. All the energy, time and money you have put into it is in&nbsp;danger of being lost.<\/p>\n<p>It happens all too often. According to <a href=\"http:\/\/www.forbes.com\/sites\/jameslyne\/2013\/09\/06\/30000-web-sites-hacked-a-day-how-do-you-host-yours\/\" target=\"_blank\" rel=\"noopener noreferrer\">Forbes magazine<\/a>, 30,000 websites are hacked every&nbsp;day around the world.<\/p>\n<p>In this article we will show you why hackers want to have access to your website. Then we&nbsp;will discuss how you can protect your website against these brutal attacks.<\/p>\n<h2>Why would someone want to hack your&nbsp;website?<\/h2>\n<p>Owners of smaller websites often think that they are not a target for hackers. A blog with a&nbsp;few hundred or a few thousand visitors per month; that\u2019s not interesting for a hacker, isn\u2019t&nbsp;it?<\/p>\n<p>But it is\u2026.<\/p>\n<p>Hackers use your website to send spam emails via your server. And that&#8217;s tricky, because&nbsp;when Google notices that SPAM is being sent from your server, you have a chance they\u2019ll&nbsp;blacklist your website.<\/p>\n<p>Or they may use your website to redirect your visitors to other websites through which they&nbsp;make money via <a href=\"https:\/\/wpjournalist.nl\/en\/starting-a-wordpress-affiliate-site-how-to-do-it\/\" target=\"_blank\" rel=\"noopener noreferrer\">affiliate programs<\/a>. Then they will get a commission if you click on certain&nbsp;links.<\/p>\n<p>Consequence: the regular mails and newsletters are also put into the spam box of others. Or&nbsp;worse, you\u2019ll be completely taken out of the search results by Google.<\/p>\n<p>Sometimes hackers just do it for fun. They like to hack a site. Just for the sport.&nbsp;Most of the attacks by hackers are automated. A hacker is really not going to type in an&nbsp;address and then see if the site has any vulnerabilities.<\/p>\n<p>No, just like search engines, hackers use bots to search for weak spots on the Internet. This&nbsp;allows them to check thousands of websites at the same time. And often there are always a&nbsp;few websites among them where they can break into.<\/p>\n<p>Where is it most likely that they will hack into your website? A few figures:<br \/>\n\u2022 41% of the websites are hacked by vulnerabilities in the <a class=\"thirstylink\" rel=\"nofollow\" target=\"_blank\" title=\"Hosting\" href=\"https:\/\/wpjournalist.nl\/en\/link\/sohosted\/\" data-shortcode=\"true\">hosting<\/a> platform.<br \/>\n\u2022 29% occurs through the template you have purchased.<br \/>\n\u2022 22% occurs via a vulnerable plugin.<br \/>\n\u2022 8% due to a weak password.<\/p>\n<p>More than half of all hacks come because of WordPress themes and plugins. Or because of&nbsp;inadequate <a class=\"thirstylink\" rel=\"nofollow\" target=\"_blank\" title=\"Hosting\" href=\"https:\/\/wpjournalist.nl\/en\/link\/sohosted\/\" data-shortcode=\"true\">hosting<\/a> parties that do not have their security in order.<\/p>\n<p>What can you do about this?<\/p>\n<p>How can you ensure that your website remains secure? We can\u2019t give a 100 percent&nbsp;guarantee, but you can make it very difficult for intruders. And then they will give up at&nbsp;some point.<\/p>\n<p>In this ultimate manual we will give you tips; this is how you need to secure your WordPress&nbsp;website:<\/p>\n<h2>1. Choose a good hosting provider<\/h2>\n<p>From the figures above, it is clear that the quality of a <a class=\"thirstylink\" rel=\"nofollow\" target=\"_blank\" title=\"Hosting\" href=\"https:\/\/wpjournalist.nl\/en\/link\/sohosted\/\" data-shortcode=\"true\">hosting<\/a> provider is important.&nbsp;Nowadays most providers are reasonably reliable, but often cheap, ends up being&nbsp;expensive. If you pay only ten bucks for your hosting per year, you can expect that less is&nbsp;invested in the security of your website.<\/p>\n<p>But then, what do you have to pay attention to?<\/p>\n<p>Take a good look at what your provider offers. In addition to supporting the latest versions&nbsp;of PHP and MySQL, they must <a href=\"https:\/\/wpjournalist.nl\/sucuri-sitecheck-scant-je-website-op-malware\/\">perform regular malware scans<\/a> and daily backups. My&nbsp;hosting provider uses Patchman, a program that keeps hackers and malware out and also&nbsp;automatically repairs vulnerabilities in websites.<\/p>\n<p>You could also choose a provider that focuses specifically on WordPress (there are some,&nbsp;such as Savvii &#8211; although slightly more expensive than average), because they do even more&nbsp;to secure WordPress websites and often have a lot of expertise on the matter.<\/p>\n<h2>2. Make sure you have good backups<\/h2>\n<p>You can never guarantee for 100 percent that your website will be hacked. It is therefore&nbsp;advisable to make regular &#8211; and in different ways &#8211; backups of your website.<\/p>\n<p>Always install a backup plugin for your website. Make sure you choose a good plugin, there&nbsp;are also backup plugins that only back up the database and not the files.<\/p>\n<p>I regularly use the plugins <a href=\"https:\/\/nl.wordpress.org\/plugins\/updraftplus\/\" target=\"_blank\" rel=\"noopener noreferrer\">UpdraftPlus<\/a> and <a href=\"https:\/\/wordpress.org\/plugins\/backupwordpress\/\" target=\"_blank\" rel=\"noopener noreferrer\">BackupWordPress<\/a> myself. You can download&nbsp;them for free from the plugin directory and install them easily. Then you can set the number&nbsp;of times you want to back up in the settings.<\/p>\n<p><img decoding=\"async\" class=\"alignnone size-full wp-image-22548 lazyload\" data-src=\"https:\/\/wpjournalist.nl\/wp-content\/uploads\/2016\/04\/Naamloos-1.jpg\" alt=\"backup with plugin\" width=\"800\" height=\"254\" src=\"data:image\/svg+xml;base64,PHN2ZyB3aWR0aD0iMSIgaGVpZ2h0PSIxIiB4bWxucz0iaHR0cDovL3d3dy53My5vcmcvMjAwMC9zdmciPjwvc3ZnPg==\" style=\"--smush-placeholder-width: 800px; --smush-placeholder-aspect-ratio: 800\/254;\"><\/p>\n<p>There are also paid backup plugins, such as VaultPress, that offer more features. For&nbsp;example, if you want to download a backup to Google drive or Dropbox on a regular basis&nbsp;(in the cloud), you will sooner come across a paid plugin.<\/p>\n<p>Nevertheless, you can often get along with a free plugin, which I use as well.<\/p>\n<h2>3. Make sure that you have strong login data<\/h2>\n<p>In addition to the hosting environment, hackers can also find out your login details from&nbsp;your website. That also happens automatically.<\/p>\n<p>That is done by so-called brute-force attacks, where hackers run a script that tries out&nbsp;hundreds &#8211; if not thousands &#8211; of passwords and usernames on your website in a short time.<\/p>\n<p>It is therefore important to create long, difficult passwords. WordPress automatically creates&nbsp;difficult passwords with more than twenty (!) characters, numbers and letters, case sensitive.<\/p>\n<p>And it has a strength indicator that indicates whether your password is safe or not.<\/p>\n<p><img decoding=\"async\" class=\"alignnone size-full wp-image-22550 lazyload\" data-src=\"https:\/\/wpjournalist.nl\/wp-content\/uploads\/2016\/04\/wachtwoord-WordPress-sterk-maken.jpg\" alt=\"password-WordPress-strong\" width=\"803\" height=\"273\" src=\"data:image\/svg+xml;base64,PHN2ZyB3aWR0aD0iMSIgaGVpZ2h0PSIxIiB4bWxucz0iaHR0cDovL3d3dy53My5vcmcvMjAwMC9zdmciPjwvc3ZnPg==\" style=\"--smush-placeholder-width: 803px; --smush-placeholder-aspect-ratio: 803\/273;\"><\/p>\n<p>That is necessary.<\/p>\n<p>Only your last name and then three digits behind it is asking for trouble.<\/p>\n<p>Change your password with some regularity (every six months). It is not wise to keep the&nbsp;same password for years.<\/p>\n<p>Avoid using the \u2018admin\u2019 username. Hackers are aware that many people still log in with the&nbsp;username \u2018admin\u2019. That\u2019s because this is the default setting when you create a new website.<\/p>\n<p>Hackers try to intrude into almost all WordPress websites on a regular basis. Just take a look&nbsp;at the message below from Wordfence, the security plugin.<\/p>\n<p><img decoding=\"async\" class=\"alignnone wp-image-22552 size-full lazyload\" data-src=\"https:\/\/wpjournalist.nl\/wp-content\/uploads\/2016\/04\/login-attempts.jpg\" alt=\"inlog attempt\" width=\"587\" height=\"210\" src=\"data:image\/svg+xml;base64,PHN2ZyB3aWR0aD0iMSIgaGVpZ2h0PSIxIiB4bWxucz0iaHR0cDovL3d3dy53My5vcmcvMjAwMC9zdmciPjwvc3ZnPg==\" style=\"--smush-placeholder-width: 587px; --smush-placeholder-aspect-ratio: 587\/210;\"><\/p>\n<p>You can see that an outsider logged in 17 times with the username \u2018admin\u2019.&nbsp;It\u2019s a bit of a job, but it\u2019s best to change your default \u2018admin\u2019 username. In the following&nbsp;video you can see how to do that:<\/p>\n<p><iframe title=\"How to Change your WordPress Username\" width=\"1200\" height=\"675\" data-src=\"https:\/\/www.youtube.com\/embed\/GHQTf9r5KaE?feature=oembed\" frameborder=\"0\" allow=\"accelerometer; autoplay; clipboard-write; encrypted-media; gyroscope; picture-in-picture\" allowfullscreen src=\"data:image\/svg+xml;base64,PHN2ZyB3aWR0aD0iMSIgaGVpZ2h0PSIxIiB4bWxucz0iaHR0cDovL3d3dy53My5vcmcvMjAwMC9zdmciPjwvc3ZnPg==\" class=\"lazyload\" data-load-mode=\"1\"><\/iframe><\/p>\n<p>If you have trouble remembering all of those passwords, you could make use of Password&nbsp;Managers, such as <a href=\"https:\/\/lastpass.com\/nl\/\" target=\"_blank\" rel=\"noopener noreferrer\">LastPass<\/a>. With a single \u2018mother password\u2019 you have access to all your&nbsp;websites.<\/p>\n<h2>4. Install a security plugin<\/h2>\n<p>You should do this by default for each website. They take a lot of hassle out of your hands&nbsp;and make sure that your site is well secured. There are two plugins that I use, Wordfence&nbsp;(my favorite) and <a href=\"https:\/\/nl.wordpress.org\/plugins\/better-wp-security\/\" target=\"_blank\" rel=\"noopener noreferrer\">iThemes Security<\/a>. Both plugins have a range of security measures to&nbsp;protect your site. You can, for example, configure to automatically exclude someone after 3&nbsp;or 5 login attempts. You can exclude IP addresses. Or you can ban sites on blacklists.<\/p>\n<p>You should really make a brief study out of this. There are plenty of articles on the internet&nbsp;that address this very specifically, such as <a href=\"https:\/\/premium.wpmudev.org\/blog\/securing-your-wordpress-site-wordfence-security-review\/\" target=\"_blank\" rel=\"noopener noreferrer\">Securing Your WordPress site: Wordfence Security&nbsp;Review<\/a>.<\/p>\n<p>Often the free versions of these plugins are sufficient. If you want more security, you will&nbsp;have to pay for it. There is, for example, the possibility to deny some countries access to the&nbsp;website (such as spam-sensitive countries like Russia or China).<\/p>\n<h2>5. Set up two-step security<\/h2>\n<p>Nowadays, the two-step verification is becoming increasingly popular. It\u2019s a bit more&nbsp;cumbersome, but it almost certainly prevents intruders from logging in. With the two-step&nbsp;verification, a second layer of security is added, in addition to the standard login method. A&nbsp;code is then sent to your mobile phone which you then have to fill in to gain access.<\/p>\n<p>I have written an extensive article about this, <a href=\"https:\/\/wpjournalist.nl\/en\/adding-two-factor-authentication-to-wordpress\/\">Adding Two Factor Authentication in&nbsp;WordPress<\/a>.<\/p>\n<h2>6. Hide your WordPress login screen<\/h2>\n<p>A simple and yet effective way to prevent people from logging in unauthorized is <a href=\"https:\/\/wpjournalist.nl\/en\/logging-in-to-wordpress-these-are-the-options\/\">to hide&nbsp;your WordPress login screen<\/a>. By default, you can often log in via www.mijnwebsite.nl\/wpadmin\/.<\/p>\n<p>There is a plugin that can easily change the default address to any address you&nbsp;want, the WPS Hide Login.<\/p>\n<h2>7. Secure your WP-config file<\/h2>\n<p>In your WP-config file in the root (root directory) of your website you can also modify a&nbsp;number of things to get better security. With automatic WordPress installations with your&nbsp;provider, a so-called Secret Key will often be created automatically. But if you download and&nbsp;install WordPress from WordPress.org, you will still need to add this Secret Key.<\/p>\n<p>Here you can see the empty Secret Key in your WP-config file:<br \/>\n<img decoding=\"async\" class=\"alignnone wp-image-22556 size-full lazyload\" data-src=\"https:\/\/wpjournalist.nl\/wp-content\/uploads\/2016\/04\/salt-key-leeg.jpg\" alt=\"salt-key-empty\" width=\"687\" height=\"355\" src=\"data:image\/svg+xml;base64,PHN2ZyB3aWR0aD0iMSIgaGVpZ2h0PSIxIiB4bWxucz0iaHR0cDovL3d3dy53My5vcmcvMjAwMC9zdmciPjwvc3ZnPg==\" style=\"--smush-placeholder-width: 687px; --smush-placeholder-aspect-ratio: 687\/355;\"><\/p>\n<p>The Secret Key generator provides a unique code.&nbsp;<span data-ccp-props=\"{&quot;201341983&quot;:0,&quot;335559739&quot;:255,&quot;335559740&quot;:240}\">&nbsp;<\/span><\/p>\n<p>You can find them at: https:\/\/api.wordpress.org\/secret-key\/1.1\/salt&nbsp;<span data-ccp-props=\"{&quot;201341983&quot;:0,&quot;335559739&quot;:255,&quot;335559740&quot;:240}\">&nbsp;<\/span><\/p>\n<p>Then you paste it on the spot of the empty key:&nbsp;<span data-ccp-props=\"{&quot;201341983&quot;:0,&quot;335559739&quot;:255,&quot;335559740&quot;:240}\">&nbsp;<\/span><\/p>\n<p><img decoding=\"async\" class=\"alignnone wp-image-22554 size-full lazyload\" data-src=\"https:\/\/wpjournalist.nl\/wp-content\/uploads\/2016\/04\/salt-key-vol.jpg\" alt=\"salt key full\" width=\"843\" height=\"337\" src=\"data:image\/svg+xml;base64,PHN2ZyB3aWR0aD0iMSIgaGVpZ2h0PSIxIiB4bWxucz0iaHR0cDovL3d3dy53My5vcmcvMjAwMC9zdmciPjwvc3ZnPg==\" style=\"--smush-placeholder-width: 843px; --smush-placeholder-aspect-ratio: 843\/337;\"><\/p>\n<p><span class=\"TextRun SCXW101362840\" lang=\"EN-US\" xml:lang=\"EN-US\"><span class=\"NormalTextRun SCXW101362840\">There is also a video on how to do that:&nbsp;<\/span><\/span><span class=\"EOP SCXW101362840\" data-ccp-props=\"{&quot;201341983&quot;:0,&quot;335559739&quot;:255,&quot;335559740&quot;:240}\">&nbsp;<\/span><\/p>\n<p><iframe title=\"WordPress Salts, Unique Keys &amp; Database Prefix - WP Hack Prevention &amp; Security | WP Learning Lab\" width=\"1200\" height=\"675\" data-src=\"https:\/\/www.youtube.com\/embed\/nOLNVFSeBvc?feature=oembed\" frameborder=\"0\" allow=\"accelerometer; autoplay; clipboard-write; encrypted-media; gyroscope; picture-in-picture\" allowfullscreen src=\"data:image\/svg+xml;base64,PHN2ZyB3aWR0aD0iMSIgaGVpZ2h0PSIxIiB4bWxucz0iaHR0cDovL3d3dy53My5vcmcvMjAwMC9zdmciPjwvc3ZnPg==\" class=\"lazyload\" data-load-mode=\"1\"><\/iframe><\/p>\n<p>Now that you are in your WP-config file you can also modify another setting: the prefix.&nbsp;<span data-ccp-props=\"{&quot;201341983&quot;:0,&quot;335559739&quot;:255,&quot;335559740&quot;:240}\">&nbsp;<\/span><\/p>\n<p>By default this one is set to WP_, which is common knowledge. Hackers also know that.&nbsp;<span data-ccp-props=\"{&quot;201341983&quot;:0,&quot;335559739&quot;:255,&quot;335559740&quot;:240}\">&nbsp;<\/span><\/p>\n<p>In order to further increase the security of your website, it is a good idea to change it into, for example:&nbsp;4ldgklw;g#_.<span data-ccp-props=\"{&quot;201341983&quot;:0,&quot;335559739&quot;:255,&quot;335559740&quot;:240}\">&nbsp;<\/span><\/p>\n<p>Modifying these kinds of things, such as the prefix, can also be done&nbsp;with&nbsp;a security&nbsp;plugin&nbsp;such as&nbsp;iThemes&nbsp;Security. That is easier if you are a little reluctant to work with the codes.&nbsp;<span data-ccp-props=\"{&quot;201341983&quot;:0,&quot;335559739&quot;:255,&quot;335559740&quot;:240}\">&nbsp;<\/span><\/p>\n<p>Because you have to be careful. If one character or dash is wrong your website is no longer visible or accessible.<span data-ccp-props=\"{&quot;201341983&quot;:0,&quot;335559739&quot;:255,&quot;335559740&quot;:240}\">&nbsp;<\/span><\/p>\n<h2>8. Secure a WordPress website? Keep it up-to-date<\/h2>\n<p>It is obvious, but we mention this tip again.&nbsp;<span data-ccp-props=\"{&quot;201341983&quot;:0,&quot;335559739&quot;:255,&quot;335559740&quot;:240}\">&nbsp;<\/span><\/p>\n<p>Did you know that more than 70% of WordPress websites don\u2019t have the latest version of WordPress or work with outdated&nbsp;plugins?&nbsp;<span data-ccp-props=\"{&quot;201341983&quot;:0,&quot;335559739&quot;:255,&quot;335559740&quot;:240}\">&nbsp;<\/span><\/p>\n<p>It can have far-reaching consequences. Like with the Panama Papers, which was hacked because an outdated Revolution Slider&nbsp;plugin&nbsp;was running.<span data-ccp-props=\"{&quot;201341983&quot;:0,&quot;335559739&quot;:255,&quot;335559740&quot;:240}\">&nbsp;<\/span><\/p>\n<p>More than half of successful hacking attempts take place through vulnerable WordPress&nbsp;plugins and themes.&nbsp;<span data-ccp-props=\"{&quot;201341983&quot;:0,&quot;335559739&quot;:255,&quot;335559740&quot;:240}\">&nbsp;<\/span><\/p>\n<p>I make sure <a href=\"https:\/\/wpjournalist.nl\/en\/updating-wordpress-the-ultimate-guide\/\">all my websites are well updated<\/a>.&nbsp;You need to be disciplined for that, because there are regular updates of WordPress,&nbsp;plugins or the themes you bought.&nbsp;<span data-ccp-props=\"{&quot;201341983&quot;:0,&quot;335559739&quot;:255,&quot;335559740&quot;:240}\">&nbsp;<\/span><\/p>\n<p>The major WordPress updates, such as from 4.7 to 4.8, often require manual updating. But since WordPress 3.7, smaller updates are done automatically.<span data-ccp-props=\"{&quot;201341983&quot;:0,&quot;335559739&quot;:255,&quot;335559740&quot;:240}\">&nbsp;<\/span><\/p>\n<p>With providers, you can often also&nbsp;configure&nbsp;updates to be performed automatically. My provider, for example, works with&nbsp;<a href=\"http:\/\/installatron.com\/\" target=\"_blank\" rel=\"noopener noreferrer\">Installatron<\/a>, which can arrange this for you.&nbsp;<span data-ccp-props=\"{&quot;201341983&quot;:0,&quot;335559739&quot;:255,&quot;335559740&quot;:240}\">&nbsp;<\/span><\/p>\n<p>But also be careful with it. I manually do large updates myself because a large update has a slightly higher chance of something going wrong. I also often wait a few days after the update has been announced.<span data-ccp-props=\"{&quot;201341983&quot;:0,&quot;335559739&quot;:255,&quot;335559740&quot;:240}\">&nbsp;<\/span><\/p>\n<p>Often you see that the owners of the&nbsp;plugins and themes also follow with an update. And so it is important to update everything at once and at the same time.&nbsp;<span data-ccp-props=\"{&quot;201341983&quot;:0,&quot;335559739&quot;:255,&quot;335559740&quot;:240}\">&nbsp;<\/span><\/p>\n<h2>9. Use trustworthy themes and plugins<\/h2>\n<p>I only use&nbsp;plugins that are trustworthy with my customers. How can you recognize them? The popular&nbsp;plugins in the <a href=\"https:\/\/wordpress.org\/plugins\/\" target=\"_blank\" rel=\"noopener noreferrer\">Plugin Catalogue<\/a> are often safe. They are not used frequently by accident and are first checked by the owner of the&nbsp;plugin&nbsp;directory,&nbsp;Automattic.&nbsp;<span data-ccp-props=\"{&quot;201341983&quot;:0,&quot;335559739&quot;:255,&quot;335559740&quot;:240}\">&nbsp;<\/span><\/p>\n<p>I\u2019m a member of <a class=\"thirstylink\" rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/wpjournalist.nl\/en\/link\/90954-2\/\" data-shortcode=\"true\">WPMU DEV<\/a>, a company that also offers many themes and&nbsp;plugins that are updated regularly and are safe.&nbsp;<span data-ccp-props=\"{&quot;201341983&quot;:0,&quot;335559739&quot;:255,&quot;335559740&quot;:240}\">&nbsp;<\/span><\/p>\n<p><span data-ccp-props=\"{&quot;201341983&quot;:0,&quot;335559739&quot;:255,&quot;335559740&quot;:240}\"> <img decoding=\"async\" class=\"alignnone size-full wp-image-22558 lazyload\" data-src=\"https:\/\/wpjournalist.nl\/wp-content\/uploads\/2016\/04\/Naamloos-1-1.jpg\" alt=\"map security website attacks\" width=\"800\" height=\"476\" src=\"data:image\/svg+xml;base64,PHN2ZyB3aWR0aD0iMSIgaGVpZ2h0PSIxIiB4bWxucz0iaHR0cDovL3d3dy53My5vcmcvMjAwMC9zdmciPjwvc3ZnPg==\" style=\"--smush-placeholder-width: 800px; --smush-placeholder-aspect-ratio: 800\/476;\"><\/span><\/p>\n<h2>10. Stay informed<\/h2>\n<p>From a party like&nbsp;Wordfence&nbsp;or choose a website builder that keeps an eye on the latest developments.&nbsp;<span data-ccp-props=\"{&quot;201341983&quot;:0,&quot;335559739&quot;:255,&quot;335559740&quot;:240}\">&nbsp;<\/span><\/p>\n<p>It happens regularly that a vulnerability is found in a&nbsp;plugin&nbsp;and then it is important to update the&nbsp;plugin&nbsp;as soon as possible.&nbsp;<span data-ccp-props=\"{&quot;201341983&quot;:0,&quot;335559739&quot;:255,&quot;335559740&quot;:240}\">&nbsp;<\/span><\/p>\n<p>How do you find out? For example, by subscribing to the&nbsp;Wordfence&nbsp;newsletter. They let you know immediately if there is a&nbsp;plugin&nbsp;or WordPress threat.<\/p>\n<h2><span data-ccp-props=\"{&quot;201341983&quot;:0,&quot;335559739&quot;:255,&quot;335559740&quot;:240}\">11. <\/span>Configure the correct File Permissions<\/h2>\n<p>If the file permissions on the server are not configured properly, third parties may have easier access to the website. The permissions should be configured as follows:<span data-ccp-props=\"{&quot;201341983&quot;:0,&quot;335559739&quot;:255,&quot;335559740&quot;:240}\">&nbsp;<\/span><\/p>\n<ul>\n<li style=\"list-style-type: none;\">\n<ul>\n<li data-leveltext=\"\uf0b7\" data-font=\"Symbol\" data-listid=\"2\" aria-setsize=\"-1\" data-aria-posinset=\"1\" data-aria-level=\"1\"><b>Folders and directories:&nbsp;<\/b>755 or 750<span data-ccp-props=\"{&quot;134233117&quot;:true,&quot;134233118&quot;:true,&quot;201341983&quot;:0,&quot;335559739&quot;:160,&quot;335559740&quot;:240}\">&nbsp;<\/span><\/li>\n<\/ul>\n<\/li>\n<\/ul>\n<ul>\n<li data-leveltext=\"\uf0b7\" data-font=\"Symbol\" data-listid=\"2\" aria-setsize=\"-1\" data-aria-posinset=\"2\" data-aria-level=\"1\"><b>Files<\/b><b>:<\/b>&nbsp;644 or&nbsp;640<span data-ccp-props=\"{&quot;134233117&quot;:true,&quot;134233118&quot;:true,&quot;201341983&quot;:0,&quot;335559739&quot;:160,&quot;335559740&quot;:240}\">&nbsp;<\/span><\/li>\n<\/ul>\n<ul>\n<li data-leveltext=\"\uf0b7\" data-font=\"Symbol\" data-listid=\"2\" aria-setsize=\"-1\" data-aria-posinset=\"1\" data-aria-level=\"1\"><b>WP-<\/b><b>config.php<\/b><b>:<\/b>&nbsp;600<span data-ccp-props=\"{&quot;134233117&quot;:true,&quot;134233118&quot;:true,&quot;201341983&quot;:0,&quot;335559739&quot;:160,&quot;335559740&quot;:240}\">&nbsp;<\/span><\/li>\n<\/ul>\n<p>The WordPress Codex has a good article about <a href=\"https:\/\/codex.wordpress.org\/Changing_File_Permissions\" target=\"_blank\" rel=\"noopener noreferrer\">Changing File Permissions<\/a>.<span data-ccp-props=\"{&quot;201341983&quot;:0,&quot;335559739&quot;:255,&quot;335559740&quot;:240}\">&nbsp;<\/span><\/p>\n<p><img decoding=\"async\" class=\"alignnone size-full wp-image-22560 lazyload\" data-src=\"https:\/\/wpjournalist.nl\/wp-content\/uploads\/2016\/04\/sucuri-website-scan-malware.jpg\" alt=\"sucuri-website-scan-malware\" width=\"800\" height=\"417\" src=\"data:image\/svg+xml;base64,PHN2ZyB3aWR0aD0iMSIgaGVpZ2h0PSIxIiB4bWxucz0iaHR0cDovL3d3dy53My5vcmcvMjAwMC9zdmciPjwvc3ZnPg==\" style=\"--smush-placeholder-width: 800px; --smush-placeholder-aspect-ratio: 800\/417;\"><\/p>\n<h2>12. Scan your website regularly<\/h2>\n<p>Without you knowing it yourself, it can happen that your website got hacked. Although your website is accessible and there seems to be nothing wrong, sometimes a hacker wants to keep your website intact so that he can send all kinds of spam via your site.<span data-ccp-props=\"{&quot;201341983&quot;:0,&quot;335559739&quot;:255,&quot;335559740&quot;:240}\">&nbsp;<\/span><\/p>\n<p>It is therefore worthwhile to have your website scanned regularly. On the internet there are several tools available which you can use to <a href=\"https:\/\/wpjournalist.nl\/en\/sucuri-sitecheck-scans-your-website-for-malware\/\">scan your website for malware<\/a>.&nbsp;<span data-ccp-props=\"{&quot;201341983&quot;:0,&quot;335559739&quot;:255,&quot;335559740&quot;:240}\">&nbsp;<\/span><\/p>\n<h2>13. Use a Secure Socket Layer (SSL) Certificate<\/h2>\n<p>You have probably seen it before, instead of&nbsp;http&nbsp;in your address line it will show&nbsp;https. Many companies nowadays use SSL certificates.&nbsp;<span data-ccp-props=\"{&quot;201341983&quot;:0,&quot;335559738&quot;:300,&quot;335559739&quot;:150,&quot;335559740&quot;:240}\">&nbsp;<\/span><\/p>\n<p>If people have to fill in&nbsp;information&nbsp;about themselves, it is advisable <a href=\"https:\/\/wpjournalist.nl\/en\/from-http-to-https-every-situation-is-different\/\">to work with an SSL certificate<\/a>. It provides a higher level of security and makes it less easy for hackers to gain access to this&nbsp;information.&nbsp;<span data-ccp-props=\"{&quot;201341983&quot;:0,&quot;335559739&quot;:255,&quot;335559740&quot;:240}\">&nbsp;<\/span><\/p>\n<h2>14. Use Secure FTP (SFTP)<\/h2>\n<p>If you upload your website via FTP, it is best to use a secure FTP connection. SFTP is more secure and provides encrypted passwords.&nbsp;<span data-ccp-props=\"{&quot;201341983&quot;:0,&quot;335559739&quot;:255,&quot;335559740&quot;:240}\">&nbsp;<\/span><\/p>\n<h2>15. Secure the .htaccessfile<\/h2>\n<p>With the .htaccess&nbsp;file (<a href=\"http:\/\/www.wplounge.nl\/htaccess-bestand-vinden\/\" target=\"_blank\" rel=\"noopener noreferrer\">how do you find the .htaccess&nbsp;file?<\/a>) you can also better secure your WordPress website.<span data-ccp-props=\"{&quot;201341983&quot;:0,&quot;335559739&quot;:255,&quot;335559740&quot;:240}\">&nbsp;<\/span><\/p>\n<p>With the following code you can, for example, ensure that your WP-config file is properly protected:<\/p>\n<div class=\"subscribe-box news-box basic\">\n<p><a href=\"https:\/\/wpjournalist.nl\/wp-content\/uploads\/2016\/04\/beveiligen-van-wp-config-1.jpg\" rel=\"attachment wp-att-2394\"><img decoding=\"async\" class=\"alignnone size-full wp-image-2394 lazyload\" data-src=\"https:\/\/wpjournalist.nl\/wp-content\/uploads\/2016\/04\/beveiligen-van-wp-config-1.jpg\" alt=\"beveiligen van wp-config\" width=\"507\" height=\"76\" src=\"data:image\/svg+xml;base64,PHN2ZyB3aWR0aD0iMSIgaGVpZ2h0PSIxIiB4bWxucz0iaHR0cDovL3d3dy53My5vcmcvMjAwMC9zdmciPjwvc3ZnPg==\" style=\"--smush-placeholder-width: 507px; --smush-placeholder-aspect-ratio: 507\/76;\"><\/a><\/p>\n<p>You can read more about it in <a href=\"http:\/\/codex.wordpress.org\/Hardening_WordPress\" target=\"_blank\" rel=\"noopener noreferrer\">Hardening WordPress<\/a>.&nbsp;<span data-ccp-props=\"{&quot;201341983&quot;:0,&quot;335559739&quot;:255,&quot;335559740&quot;:240}\">&nbsp;<\/span><\/p>\n<h2>Conclusion&nbsp;<span data-ccp-props=\"{&quot;201341983&quot;:0,&quot;335559739&quot;:255,&quot;335559740&quot;:240}\">&nbsp;<\/span><\/h2>\n<p>In general, I can say: be proactive. If you do not do&nbsp;that&nbsp;and neglect your website, you are asking for trouble.&nbsp;<span data-ccp-props=\"{&quot;201341983&quot;:0,&quot;335559739&quot;:255,&quot;335559740&quot;:240}\">&nbsp;<\/span><\/p>\n<p>Security is part of running a website and it\u2019s better to be safe than sorry.&nbsp;If your site still gets hacked, you can secure WordPress by a professional company.&nbsp;<span data-ccp-props=\"{&quot;201341983&quot;:0,&quot;335559739&quot;:255,&quot;335559740&quot;:240}\">&nbsp;<\/span><\/p>\n<p>You don\u2019t only have to see objections. WordPress is very safe in general and the developers work on it every day to make it even safer.<span data-ccp-props=\"{&quot;201341983&quot;:0,&quot;335559739&quot;:255,&quot;335559740&quot;:240}\">&nbsp;<\/span><\/p>\n<p>Most attention you need to pay to the hosting environment (use difficult passwords for ftp for example), vulnerable&nbsp;plugins\/themes and easy login data.<span data-ccp-props=\"{&quot;201341983&quot;:0,&quot;335559739&quot;:255,&quot;335559740&quot;:240}\">&nbsp;<\/span><\/p>\n<p>To conclude, I can say:&nbsp;<b>just use your common sense!<\/b><span data-ccp-props=\"{&quot;201341983&quot;:0,&quot;335559739&quot;:255,&quot;335559740&quot;:240}\">&nbsp;<\/span><\/p>\n<p>You should not log into an unsecured WiFi network and never give your password to anyone you don\u2019t know.&nbsp;<span data-ccp-props=\"{&quot;201341983&quot;:0,&quot;335559739&quot;:255,&quot;335559740&quot;:240}\">&nbsp;<\/span><\/p>\n<p>And do not send your password by email, but by SMS.<span data-ccp-props=\"{&quot;201341983&quot;:0,&quot;335559739&quot;:255,&quot;335559740&quot;:240}\">&nbsp;<\/span><\/p>\n<p>These are obvious but important matters.<span data-ccp-props=\"{&quot;201341983&quot;:0,&quot;335559739&quot;:255,&quot;335559740&quot;:240}\">&nbsp;<\/span><\/p>\n<p>Sleep well!<span data-ccp-props=\"{&quot;201341983&quot;:0,&quot;335559739&quot;:160,&quot;335559740&quot;:259}\">&nbsp;<\/span><\/p>\n<\/div>\n","protected":false},"excerpt":{"rendered":"<p>Did you know that the website of Mossack Fonseca, the company of the Panama Papers, was&nbsp;a WordPress website? And did you know that the site was probably hacked because of an outdated version of&nbsp;Revolution Slider? Wordfence announced this in its blog. Wordfence is one of the best plugins of the moment&nbsp;to secure your website against&hellip;<\/p>\n","protected":false},"author":1,"featured_media":57819,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[607],"tags":[],"class_list":["post-22697","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-building-a-website-en","category-607","description-off"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.3 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Seriously, you really need to secure your WordPress website now - WPjournalist<\/title>\n<meta name=\"description\" content=\"How can you ensure that your website remains secure? In this ultimate manual we will give you tips; this is how you need to secure your WordPress\u00a0website.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/wpjournalist.nl\/en\/seriously-you-really-need-to-secure-your-wordpress-website-now\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Seriously, you really need to secure your WordPress website now - WPjournalist\" \/>\n<meta property=\"og:description\" content=\"How can you ensure that your website remains secure? In this ultimate manual we will give you tips; this is how you need to secure your WordPress\u00a0website.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/wpjournalist.nl\/en\/seriously-you-really-need-to-secure-your-wordpress-website-now\/\" \/>\n<meta property=\"og:site_name\" content=\"WPjournalist\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/wpjournalist\/\" \/>\n<meta property=\"article:published_time\" content=\"2016-04-18T10:23:59+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2021-10-31T14:49:25+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/wpjournalist.nl\/wp-content\/uploads\/2016\/04\/handleiding-beveiliging-WordPress-website-780x470-1.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"780\" \/>\n\t<meta property=\"og:image:height\" content=\"470\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"WPjournalist\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@wpjournalist\" \/>\n<meta name=\"twitter:site\" content=\"@wpjournalist\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"WPjournalist\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"12 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/wpjournalist.nl\\\/en\\\/seriously-you-really-need-to-secure-your-wordpress-website-now\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/wpjournalist.nl\\\/en\\\/seriously-you-really-need-to-secure-your-wordpress-website-now\\\/\"},\"author\":{\"name\":\"WPjournalist\",\"@id\":\"https:\\\/\\\/wpjournalist.nl\\\/#\\\/schema\\\/person\\\/89b679feb850b9f631e5dd5c0edb2d18\"},\"headline\":\"Seriously, you really need to secure your WordPress website now\",\"datePublished\":\"2016-04-18T10:23:59+00:00\",\"dateModified\":\"2021-10-31T14:49:25+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/wpjournalist.nl\\\/en\\\/seriously-you-really-need-to-secure-your-wordpress-website-now\\\/\"},\"wordCount\":2634,\"commentCount\":0,\"publisher\":{\"@id\":\"https:\\\/\\\/wpjournalist.nl\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/wpjournalist.nl\\\/en\\\/seriously-you-really-need-to-secure-your-wordpress-website-now\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/wpjournalist.nl\\\/wp-content\\\/uploads\\\/2016\\\/04\\\/handleiding-beveiliging-WordPress-website-780x470-1.jpg\",\"articleSection\":[\"Building a website\"],\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\\\/\\\/wpjournalist.nl\\\/en\\\/seriously-you-really-need-to-secure-your-wordpress-website-now\\\/#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/wpjournalist.nl\\\/en\\\/seriously-you-really-need-to-secure-your-wordpress-website-now\\\/\",\"url\":\"https:\\\/\\\/wpjournalist.nl\\\/en\\\/seriously-you-really-need-to-secure-your-wordpress-website-now\\\/\",\"name\":\"Seriously, you really need to secure your WordPress website now - WPjournalist\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/wpjournalist.nl\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/wpjournalist.nl\\\/en\\\/seriously-you-really-need-to-secure-your-wordpress-website-now\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/wpjournalist.nl\\\/en\\\/seriously-you-really-need-to-secure-your-wordpress-website-now\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/wpjournalist.nl\\\/wp-content\\\/uploads\\\/2016\\\/04\\\/handleiding-beveiliging-WordPress-website-780x470-1.jpg\",\"datePublished\":\"2016-04-18T10:23:59+00:00\",\"dateModified\":\"2021-10-31T14:49:25+00:00\",\"description\":\"How can you ensure that your website remains secure? In this ultimate manual we will give you tips; this is how you need to secure your WordPress\u00a0website.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/wpjournalist.nl\\\/en\\\/seriously-you-really-need-to-secure-your-wordpress-website-now\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/wpjournalist.nl\\\/en\\\/seriously-you-really-need-to-secure-your-wordpress-website-now\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/wpjournalist.nl\\\/en\\\/seriously-you-really-need-to-secure-your-wordpress-website-now\\\/#primaryimage\",\"url\":\"https:\\\/\\\/wpjournalist.nl\\\/wp-content\\\/uploads\\\/2016\\\/04\\\/handleiding-beveiliging-WordPress-website-780x470-1.jpg\",\"contentUrl\":\"https:\\\/\\\/wpjournalist.nl\\\/wp-content\\\/uploads\\\/2016\\\/04\\\/handleiding-beveiliging-WordPress-website-780x470-1.jpg\",\"width\":780,\"height\":470,\"caption\":\"security for your website\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/wpjournalist.nl\\\/en\\\/seriously-you-really-need-to-secure-your-wordpress-website-now\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/wpjournalist.nl\\\/en\\\/05-creative\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Seriously, you really need to secure your WordPress website now\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/wpjournalist.nl\\\/#website\",\"url\":\"https:\\\/\\\/wpjournalist.nl\\\/\",\"name\":\"WPjournalist\",\"description\":\"Gewoon een of andere WordPress website\",\"publisher\":{\"@id\":\"https:\\\/\\\/wpjournalist.nl\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/wpjournalist.nl\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/wpjournalist.nl\\\/#organization\",\"name\":\"WPjournalist\",\"url\":\"https:\\\/\\\/wpjournalist.nl\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/wpjournalist.nl\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/wpjournalist.nl\\\/wp-content\\\/uploads\\\/2021\\\/10\\\/logo.png\",\"contentUrl\":\"https:\\\/\\\/wpjournalist.nl\\\/wp-content\\\/uploads\\\/2021\\\/10\\\/logo.png\",\"width\":365,\"height\":90,\"caption\":\"WPjournalist\"},\"image\":{\"@id\":\"https:\\\/\\\/wpjournalist.nl\\\/#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/www.facebook.com\\\/wpjournalist\\\/\",\"https:\\\/\\\/x.com\\\/wpjournalist\",\"https:\\\/\\\/www.instagram.com\\\/wpjournalist\\\/\",\"https:\\\/\\\/www.linkedin.com\\\/in\\\/marcelgansevoort\\\/\"]},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/wpjournalist.nl\\\/#\\\/schema\\\/person\\\/89b679feb850b9f631e5dd5c0edb2d18\",\"name\":\"WPjournalist\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/wpjournalist.nl\\\/wp-content\\\/wphb-cache\\\/gravatar\\\/c83\\\/c8369747913a96930ea826a419736434x96.jpg\",\"url\":\"https:\\\/\\\/wpjournalist.nl\\\/wp-content\\\/wphb-cache\\\/gravatar\\\/c83\\\/c8369747913a96930ea826a419736434x96.jpg\",\"contentUrl\":\"https:\\\/\\\/wpjournalist.nl\\\/wp-content\\\/wphb-cache\\\/gravatar\\\/c83\\\/c8369747913a96930ea826a419736434x96.jpg\",\"caption\":\"WPjournalist\"},\"sameAs\":[\"https:\\\/\\\/wpjournalist.nl\"]}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Seriously, you really need to secure your WordPress website now - WPjournalist","description":"How can you ensure that your website remains secure? In this ultimate manual we will give you tips; this is how you need to secure your WordPress\u00a0website.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/wpjournalist.nl\/en\/seriously-you-really-need-to-secure-your-wordpress-website-now\/","og_locale":"en_US","og_type":"article","og_title":"Seriously, you really need to secure your WordPress website now - WPjournalist","og_description":"How can you ensure that your website remains secure? In this ultimate manual we will give you tips; this is how you need to secure your WordPress\u00a0website.","og_url":"https:\/\/wpjournalist.nl\/en\/seriously-you-really-need-to-secure-your-wordpress-website-now\/","og_site_name":"WPjournalist","article_publisher":"https:\/\/www.facebook.com\/wpjournalist\/","article_published_time":"2016-04-18T10:23:59+00:00","article_modified_time":"2021-10-31T14:49:25+00:00","og_image":[{"width":780,"height":470,"url":"https:\/\/wpjournalist.nl\/wp-content\/uploads\/2016\/04\/handleiding-beveiliging-WordPress-website-780x470-1.jpg","type":"image\/jpeg"}],"author":"WPjournalist","twitter_card":"summary_large_image","twitter_creator":"@wpjournalist","twitter_site":"@wpjournalist","twitter_misc":{"Written by":"WPjournalist","Est. reading time":"12 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/wpjournalist.nl\/en\/seriously-you-really-need-to-secure-your-wordpress-website-now\/#article","isPartOf":{"@id":"https:\/\/wpjournalist.nl\/en\/seriously-you-really-need-to-secure-your-wordpress-website-now\/"},"author":{"name":"WPjournalist","@id":"https:\/\/wpjournalist.nl\/#\/schema\/person\/89b679feb850b9f631e5dd5c0edb2d18"},"headline":"Seriously, you really need to secure your WordPress website now","datePublished":"2016-04-18T10:23:59+00:00","dateModified":"2021-10-31T14:49:25+00:00","mainEntityOfPage":{"@id":"https:\/\/wpjournalist.nl\/en\/seriously-you-really-need-to-secure-your-wordpress-website-now\/"},"wordCount":2634,"commentCount":0,"publisher":{"@id":"https:\/\/wpjournalist.nl\/#organization"},"image":{"@id":"https:\/\/wpjournalist.nl\/en\/seriously-you-really-need-to-secure-your-wordpress-website-now\/#primaryimage"},"thumbnailUrl":"https:\/\/wpjournalist.nl\/wp-content\/uploads\/2016\/04\/handleiding-beveiliging-WordPress-website-780x470-1.jpg","articleSection":["Building a website"],"inLanguage":"en-US","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/wpjournalist.nl\/en\/seriously-you-really-need-to-secure-your-wordpress-website-now\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/wpjournalist.nl\/en\/seriously-you-really-need-to-secure-your-wordpress-website-now\/","url":"https:\/\/wpjournalist.nl\/en\/seriously-you-really-need-to-secure-your-wordpress-website-now\/","name":"Seriously, you really need to secure your WordPress website now - WPjournalist","isPartOf":{"@id":"https:\/\/wpjournalist.nl\/#website"},"primaryImageOfPage":{"@id":"https:\/\/wpjournalist.nl\/en\/seriously-you-really-need-to-secure-your-wordpress-website-now\/#primaryimage"},"image":{"@id":"https:\/\/wpjournalist.nl\/en\/seriously-you-really-need-to-secure-your-wordpress-website-now\/#primaryimage"},"thumbnailUrl":"https:\/\/wpjournalist.nl\/wp-content\/uploads\/2016\/04\/handleiding-beveiliging-WordPress-website-780x470-1.jpg","datePublished":"2016-04-18T10:23:59+00:00","dateModified":"2021-10-31T14:49:25+00:00","description":"How can you ensure that your website remains secure? In this ultimate manual we will give you tips; this is how you need to secure your WordPress\u00a0website.","breadcrumb":{"@id":"https:\/\/wpjournalist.nl\/en\/seriously-you-really-need-to-secure-your-wordpress-website-now\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/wpjournalist.nl\/en\/seriously-you-really-need-to-secure-your-wordpress-website-now\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/wpjournalist.nl\/en\/seriously-you-really-need-to-secure-your-wordpress-website-now\/#primaryimage","url":"https:\/\/wpjournalist.nl\/wp-content\/uploads\/2016\/04\/handleiding-beveiliging-WordPress-website-780x470-1.jpg","contentUrl":"https:\/\/wpjournalist.nl\/wp-content\/uploads\/2016\/04\/handleiding-beveiliging-WordPress-website-780x470-1.jpg","width":780,"height":470,"caption":"security for your website"},{"@type":"BreadcrumbList","@id":"https:\/\/wpjournalist.nl\/en\/seriously-you-really-need-to-secure-your-wordpress-website-now\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/wpjournalist.nl\/en\/05-creative\/"},{"@type":"ListItem","position":2,"name":"Seriously, you really need to secure your WordPress website now"}]},{"@type":"WebSite","@id":"https:\/\/wpjournalist.nl\/#website","url":"https:\/\/wpjournalist.nl\/","name":"WPjournalist","description":"Gewoon een of andere WordPress website","publisher":{"@id":"https:\/\/wpjournalist.nl\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/wpjournalist.nl\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/wpjournalist.nl\/#organization","name":"WPjournalist","url":"https:\/\/wpjournalist.nl\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/wpjournalist.nl\/#\/schema\/logo\/image\/","url":"https:\/\/wpjournalist.nl\/wp-content\/uploads\/2021\/10\/logo.png","contentUrl":"https:\/\/wpjournalist.nl\/wp-content\/uploads\/2021\/10\/logo.png","width":365,"height":90,"caption":"WPjournalist"},"image":{"@id":"https:\/\/wpjournalist.nl\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/www.facebook.com\/wpjournalist\/","https:\/\/x.com\/wpjournalist","https:\/\/www.instagram.com\/wpjournalist\/","https:\/\/www.linkedin.com\/in\/marcelgansevoort\/"]},{"@type":"Person","@id":"https:\/\/wpjournalist.nl\/#\/schema\/person\/89b679feb850b9f631e5dd5c0edb2d18","name":"WPjournalist","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/wpjournalist.nl\/wp-content\/wphb-cache\/gravatar\/c83\/c8369747913a96930ea826a419736434x96.jpg","url":"https:\/\/wpjournalist.nl\/wp-content\/wphb-cache\/gravatar\/c83\/c8369747913a96930ea826a419736434x96.jpg","contentUrl":"https:\/\/wpjournalist.nl\/wp-content\/wphb-cache\/gravatar\/c83\/c8369747913a96930ea826a419736434x96.jpg","caption":"WPjournalist"},"sameAs":["https:\/\/wpjournalist.nl"]}]}},"_links":{"self":[{"href":"https:\/\/wpjournalist.nl\/en\/wp-json\/wp\/v2\/posts\/22697","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/wpjournalist.nl\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/wpjournalist.nl\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/wpjournalist.nl\/en\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/wpjournalist.nl\/en\/wp-json\/wp\/v2\/comments?post=22697"}],"version-history":[{"count":0,"href":"https:\/\/wpjournalist.nl\/en\/wp-json\/wp\/v2\/posts\/22697\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/wpjournalist.nl\/en\/wp-json\/wp\/v2\/media\/57819"}],"wp:attachment":[{"href":"https:\/\/wpjournalist.nl\/en\/wp-json\/wp\/v2\/media?parent=22697"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/wpjournalist.nl\/en\/wp-json\/wp\/v2\/categories?post=22697"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/wpjournalist.nl\/en\/wp-json\/wp\/v2\/tags?post=22697"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}