WordPress is undoubtedly one of the most popular publishing platforms. But unfortunately it is prone to attacks from hackers or web intruders who get in and cause havoc with your blog. Securing your WordPress weblog is the most important thing that you must do after you have set it up on your server. Today, I will share some tips, tricks and resources which will surely help you to secure and lock down your WordPress site and to fortify it from unwarranted attacks.

wordpress security

Checklist to Improve WordPress Security

1. Prevent directory listing
2. Update WordPress to the latest stable version.
3. Drop the WordPress version string in your Meta Tags.
4. Encrypt your login
5. Use a strong password
6. Change the default admin username
7. Take extra measures to secure your wp-admin folder
8. Encrypt your WordPress-related cookies
9. Change your WordPress database table prefix from default settings
10. Use correct file permissions on your WordPress files
11. Limit what search engine spiders can index
12. Use SFTP instead of FTP
13. Take regular backups of your site and Database

All these points are explained in great detail in the articles below. Check them out

WordPress Security plugins

There are many WordPress Plugins which help you in securing your Blog. The below list of articles talk about these plugins in detail.


Raju is the founder-editor of Technology Personalized. A proud geek and an Internet freak, who is also a social networking enthusiast. You can follow him on Facebook and on Twitter. Mail Raju PP. Follow rajupp


  • http://www.dollarshower.com/about Ajith

    Nice tips man… I used to do one more thing on top of the above – renaming the admin index file. When somebody types in the default index file, it will go to the blog home in that case. Not sure if it’s a great tip LOL but I discontinued doing it post theme upgrade.

    (Btw, the picture shows a rusty security latch 😆 )

  • http://pigjockey.com Ben

    Thanks for the tips. Great work!

    Your blog design looks really neat. Keep it up!

  • http://www.joyoge.com/ joyoge designers’ bookmark

    good technical, thanks for the tips..

  • sham

    Thanks for the info dude..

  • http://www.shoutmeloud.com Harsh Agrawal

    Very useful resource raju, more over point 13 is something which I feel is very important for any blog..

  • http://chaaps.com Chethan T

    Yes Point 5 is too important!
    Choosing a Strong Password!

  • Tech @ InkAPoint

    Everything is so important dude. Once I have faced an attack from hackers. After then only, I took serious steps to make it so secure.

  • George Serradinho

    Wow, some great points you listed. My site was hacked through my FTP account then they made trouble on my blog.

    BTW, I have added this post to my Monday roundup for next week. I’m sure some users need this important advice to ensure their blog/site is as safe as possible.

    • http://techpp.com Raju

      Thanks :)

  • http://techgenuine.com Ricky

    Well you have covered all the points. Thanx for the tips.

  • http://www.dishtracking.com/blog Anish K.S

    Its a nice list, Combination of Lower/upper cases, digits, instead of i,o put 1,0 are good tricks to set a strong password.

  • http://www.niharsworld.com/ Nihar

    Great post dude….

    Thanks for sharing these linsk…

  • http://wassupblog.com/thesis-theme-is-just-not-flexible-enough/ Sire

    Well done Raju. Not only do you state ways of protecting our WordPress blog, you also provide links for a more detailed explanation. Also, I wasn’t aware of those plugins, and although my blog is already a little top heavy, I may have to seriously look at some of those.

  • site fr

    merci pour ces info, et tous cela poura m’aider .