Keep WordPress Safe
- Keep everything updated - WordPress core, themes, and plugins. Most hacks exploit outdated plugins.
- Use strong admin passwords and a unique admin username (not
admin). - Limit login attempts with a security plugin (Wordfence, Limit Login Attempts Reloaded).
- Remove unused themes and plugins - less code means less risk.
- Enable SSL so logins are encrypted - see Enable Free SSL.
- Take backups - TackHost runs weekly server backups, but keep your own too.
If your site is already compromised, see What to Do If Your Website Is Hacked.