Get the Edge with WordPress Security
Bloggers as a whole think small. They worry about things like color, site design, widgets, plug-ins, and AdSense. Instead they should be focus on getting the the big stuff like content creation, branding, web presence, and security. Yes security. Too many new webmasters have no sense of security, and implement little to protect their sites from attacks. So an attacker always has the edge over them. This is understandable however, most are just figuring out how to set up a site with WordPress and Fantastico, and are still learning basic keyword research for that up coming online dating tips post they want to write about. Hardcore security measures are the last priority, as they should. When your site is small and no one is visiting it, you have little chance of being attacked. However, once you gain some traction and are over 150 visitors a day, you really should start looking at ways to secure your WordPress site. Here are some things you can do:
First the most critical of anything you can do is to use an SFTP protocal, not FTP, which is what most use. The problem with FTP is all your information is sent out unencrypted. It can be intercepted easily if someone is listening. The information that is sent out is important stuff like your password, and all the indexes of your files. Someone could put in a secret SQL injection and you would have no idea. SFTP encrypts all this information, helping to secure your site that much more.
The next two things you should do are always have a backup of your files. Some web hosts do this automatically, other do not. If your web host does not, you should be doing it yourself. This is really easy though, there are quite a few plugins that do this for you. One other plug-in you should check out is “WordPress firewall”. It’s a simple little plug-in that prevents basic attacks, and it also notifies you of potential attacks, and from what IP address they came from.