[Hidden-tech] WordPress security question

Sean Sullivan sean at xheightstudios.com
Thu Jan 14 16:37:37 EST 2016


1. Best way would be what Robert suggested. Create a new user and delete the old. When you delete a user you can re-assign authorship to the new user.

2. Yes you can block countries and domains if you want using plugins. I use one called IQ Country Block
https://wordpress.org/plugins/iq-block-country/ This allows you to block front and or backend access.

I also use iThemes Security to change the login url and block brute force attacks. 

https://ithemes.com/security/

Hope that helps, 

-Sean


–––––––––––––––––––––––––––––––––
Sean Sullivan | Owner | Interactive Director

Xheight Studios
101 Pondview Cir.
Belchertown, MA 01007
Tel: 413-725-4332 
sean at xheightstudios.com

On January 14, 2016 at 4:29:06 PM, Robert Heller (heller at deepsoft.com) wrote:




At Thu, 14 Jan 2016 11:19:54 -0500 Shel Horowitz <shel at principledprofit.com> wrote:  

>  
> MIME-Version: 1.0  
>  
>  
>  
>  
>  
>  
>  
> A client's site was compromised recently. I changed the password to  
> something impossible to guess--but I'm wondering if:  
> 1) There's a way to change the username in wp-admin  

You can't *change* the username, but you can create a new one and delete the  
old one -- this has much the same effect.  

> 2) It's possible to block domains or country codes of attackers trying to  
> sign in (most of them seem to be from France)  
>  

If you have shell access, you can put <Limit ...>...</Limit> directives in  
the site's .htaccess file. (Assumes Apache).  

> Thanks,  
>  
> ________________________________________________  
> Watch (and please share) my TEDx Talk,  
> "Impossible is a Dare: Business for a Better World"  
> *http://www.ted.com/tedx/events/11809  
> <http://www.ted.com/tedx/events/11809>*  
>  
> Contact me to bake in profitability while addressing hunger,  
> poverty, war, and catastrophic climate change  
>  
> Twitter: @shelhorowitz  
>  
> * First business ever to be Green America Gold Certified  
> * Inducted into the National Environmental Hall of Fame  
>  
> http://goingbeyondsustainability.com for the corporate world  
> http://impactwithprofit.com for entrepreneurs  
> http://greenandprofitable.com for green businesses  
> mailto:shel at greenandprofitable.com * 413-586-2388  
> Award-winning, best-selling (8th) book:  
> Guerrilla Marketing Goes Green (co-authored with Jay Conrad Levinson)  
> Coming in April: Guerrilla Marketing to Heal the World  
> _________________________________________________  
>  
> MIME-Version: 1.0  
>  
> _______________________________________________  
> Hidden-discuss mailing list - home page: http://www.hidden-tech.net  
> Hidden-discuss at lists.hidden-tech.net  
>  
> You are receiving this because you are on the Hidden-Tech Discussion list.  
> If you would like to change your list preferences, Go to the Members  
> page on the Hidden Tech Web site.  
> http://www.hidden-tech.net/members  
>  
>  

--  
Robert Heller -- 978-544-6933  
Deepwoods Software -- Custom Software Services  
http://www.deepsoft.com/ -- Linux Administration Services  
heller at deepsoft.com -- Webhosting Services  

_______________________________________________  
Hidden-discuss mailing list - home page: http://www.hidden-tech.net  
Hidden-discuss at lists.hidden-tech.net  

You are receiving this because you are on the Hidden-Tech Discussion list.  
If you would like to change your list preferences, Go to the Members  
page on the Hidden Tech Web site.  
http://www.hidden-tech.net/members  
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://lists.hidden-tech.net/pipermail/hidden-discuss/attachments/20160114/3b2cc70b/attachment.html 


Google

More information about the Hidden-discuss mailing list