WordPress Defender: 30 Ways to Secure Your Blog from Attack Anyone Can Do

Sun, Feb 28, 2010

WordPress

Last week I told you about how one single hacker broke my wife’s heart.

That hacker set me out on a mission.

Over the last couple of years I’ve soaked up everything I could about WordPress security. I learned many of the tricks those malicious jerks use to hack blogs, I watched as plugin developers developed plugins to fight back, I engaged the WordPress forums and other users in conversations about the topic.

All this time, experience, and knowledge I’ve gained over those last couple of years have culminated into one single resource I’ve been working on.

WordPress DefenderIt’s called WordPress Defender, and it’s mission is to help you to never wake up one morning with the same kind of broken heart my wife had.

It’s a 150 page guide jam packed with things you can do today to start protecting your WordPress blog from malicious attacks. And if you’re worried it might be over your head, don’t. I’ve taken special care to make sure any and everyone can follow it.

You even get over 1.5 hours of video (14 videos in all) where you can watch me in real time set up many of these security features.

3 Day Special Offer

Don’t wait too long, because for 3 days only (March 1st – 3rd 2010) you can get it all for nearly 50% off ($19.99). After that, the price will go up.

Now let me ask you, is your blog worth $20? Is it worth skipping that night at the movies to ensure your blog is protected?

And if you’re the affiliate type… it also comes with an affiliate program which pays out 40%.

So take the time, go check it out and let me know what you think.

And if you ever have a question about anything contained inside the book, you know where to find me.

WordPress Defender

WordPress Defender: 30 Ways to Secure Your Blog from Attack Anyone Can Do

Related posts:
  1. Something New to Blogosphere is Coming, Thanks to a Broken Heart
  2. 2 Easy Ways To Set Up A WordPress Firewall
  3. So You Think Your Website is Secure? Am I Scaring You Yet? I Hope So…
  4. Blog Hacking Alert and What You Need to Do Today!
  5. Hammering Down 2 More Ways To Speed Up Your WordPress Blog

, ,

19 Responses to “WordPress Defender: 30 Ways to Secure Your Blog from Attack Anyone Can Do”

  1. Barbara Swafford Says:

    Hi John,

    I can attest to the fact you have done a PHENOMENAL job on this project. You will not only save other bloggers from being hacked, but you’ll be giving us peace of mind that our blogs (our babies”) are safe and sound.

    I commend you for all of the hard work you put into this project. We need more bloggers like you – bloggers who care about others as they journey into blogosphere, often with no thought their “‘lil ole blog” is of any interest to a hacker, when in truth they hack blogs because they can.

    You and this project ROCK! I wish you a world of success with it.
    Barbara Swafford´s last blog ..S-L-O-W Down – Blogging Is Not A Race My ComLuv Profile

  2. Jannie Funster Says:

    Hey, John!! My post is now live on your incredible WordPress Defender!!! I hope every WP blogger will take advantage of this gift of security you give them.

    Maybe you’d check in on my post in the next few days to see if there are any questions in the comments you can address? Thanks, John! You are an amazing guy offering this amazing service and I know WordPress Defender will go far!!

  3. Jim Gaudet Says:

    Good luck John. I am going to purchase this soon, don’t ask why I don’t have it already. I should make it before the deadline…

    I am sure it will be greatly informative..
    Jim Gaudet´s last blog ..Monitoring Tsunamis and Earthquakes My ComLuv Profile

  4. John Hoff Says:

    Thank you everyone for your kind words. I have poured my heart and soul into this project and it’s a good feeling knowing it’s being well received.

    @Jannie – of you better believe I’ll be there with you every step of the way.

  5. Bamboo Forest - PunIntended Says:

    I really like how you included videos with your offer. That definitely makes things easier to grasp. Looks like a great product that any blogger could definitely use. I’ll be spreading the word.

  6. John Hoff Says:

    Thanks Bamboo. Yeah I figured what better way to show someone how to do something than actually showing them.

  7. Keith Davis Says:

    Hi John
    I can see that you worked hard on this, my eBook has spots of blood on it. LOL

    My thoughts…
    Great looking product, great content.
    The graphics are just right (have you been polishing your Photoshop skills?) and the quality of the book and videos is what we have come to expect from you… first class.

    I keep jumping between the book and the video and already feel that I have gained enough knowledge and confidence to tackle a database via phpMyAdmin. Never thought that I would say that!

    Thought that the database prefix plugin from SEO Egghead was brilliant…

    Enough blogging… back to the videos.
    Keith Davis´s last blog ..A helping hand… My ComLuv Profile

  8. John Hoff Says:

    Hi Keith. YES… I think there are blood stains on there. Is there anything beyond brain fried? That’s where I am. Definitely had a crash course in how to launch an ebook.

  9. Barb Hartsook Says:

    I’ve purchased the book, now waiting for PayPal to confirm to you so you can send me the book. Thanks ahead of time.

    Your video (on your sales page) tells me you’ll make it understandable to me. And since I’m pretty new to geekdom (still in kindergarten, haha), that’s a very good thing.

    Please tell Lindsey how awful I feel for her experience. I’ve had my blog hacked, my Facebook account hacked, my email address stolen and used by a lotto site (in my name), my car broken into for the phone charger, and my purse stolen from under my nose. Each time though, I learned something to better protect myself.

    Of all your wife lost, the business credibility and reputation is the hardest to deal with. I’m so sorry. She’s blessed to have you though…
    Barb Hartsook´s last blog ..Learning Changes Us… or Does It? My ComLuv Profile

  10. John Hoff Says:

    Hi Barb… first geez, I’m really sorry to hear all that. You know, I just don’t get that line of reasoning these people have. Unfortunately, we have to learn the hard way that many people in this world don’t have any honor, do they?

    About your order, after you purchased the ebook you should have been directed to the download page via E-Junkie.com.

    Have you gotten it yet?

    Ah wait, I see it. Yeah I think it’ll take a day or two with how your order was placed. I’ll see if I can do something about that for you. Email coming your way!

  11. Barb Hartsook Says:

    Thanks so much! I have printed it out and am on my way to Staples to have them spiral bind it for me. As it printed, I started reading. I notice some of the things I have already done, but fewer than a handful compared to all you have for us to do. And you are readable!
    Barb Hartsook´s last blog ..Learning Changes Us… or Does It? My ComLuv Profile

  12. John Hoff - WP Blog Host Says:

    Hi Barb. Nice. I was thinking down the road if the ebook is well received that it might be worth it to put it in print. And nice to know I’m readable! hehe

    I definitely did my best to write it more like I was talking to a friend rather than writing a tech manual.
    John Hoff – WP Blog Host´s last blog ..Something New to Blogosphere is Coming, Thanks to a Broken Heart My ComLuv Profile

  13. Justyna Bizdra Says:

    Hi John,

    I’m a happy blogger, who bought your powerful security weapon:) I have already read the ebook and it is excellent. One of my goals for this week is to implement your suggestions and protect my “babies”:)

    Thank you once more for this highly valuable product!

    Justyna
    Justyna Bizdra´s last blog ..8 Powerful Time Management Techniques for Internet Marketers My ComLuv Profile

  14. John Hoff Says:

    Hi Justyna. Thank you for your wonderful comment and I really appreciate you purchasing the ebook.

    If you have any questions, you can always contact me here or through the newsletter email (just hit reply).

    Have a great day!

  15. steve Says:

    Hi John,
    I’m going to check out WordPress Defender, but if I buy a copy, I want one without the blood stains. :) Seriously though, several of my fellow bloggers have been hacked and it is no fun. The most important thing is to always upgrade to the latest WP verion I think, but I’m interested to see what else is important, so I’m off to check out your link.
    Cheers, Steve
    steve´s last blog ..Trade Show Outboarding My ComLuv Profile

  16. John Hoff Says:

    Hi Steve.

    Without the blood stains? But that comes at no extra charge! hehe

    Keeping your WordPress blog up-to-date is definitely a must when talking about WordPress security, but there are several other ways someone might get into your blog even through your blog is fully upgraded.

    It could be because they’ve managed to download a virus to your computer which lets them see ways to get into your blog. Or perhaps your email, FTP, or login page itself screws it up for you. It could even be other social media sites.

    All those things and more are ways that someone could get into your blog even though your blog is upgraded to the latest version.

  17. V K Rajagopalan Says:

    Hi John,

    I had bought your WordPress Defender ebook a month back.

    I own some 35+ blogs/websites out of which some 5+ sites are authority sites.

    As usual, I was procrastinating and did not implement the tips as per your ebook.

    I upgraded WordPress to 3.0 on 25-26/Jun for all my blogs. Before/during upgrade, all the sites were ok.

    3 days back, when I was checking my blogs, I found that 2 of my blogs had been hacked. Luckily for me they were not my authority sites.

    Since yesterday, I have started reading your ebook and creating a checklist of all the things to implement in each of my blogs.

    I plan to implement the security measures as per this checklist, first to my authority blogs and then to all the other blogs of mine.

    I just wanted to clarify a doubt.

    1. On Page 48 of your ebook, you have asked that the security keys: AUTH_KEY; SECURE_AUTH_KEY; LOGGED_IN_KEY; NONCE_KEY, be added to the wp-config.php file.

    2. At another place, you have also said that the security key SECRET_KEY should be added.

    What I would like to know is that if I do #1 above, do I still need to add the #2, i.e., SECRET_KEY?

    Kindly advice.

    Thanks
    Raj

    PS: By the way, I forgot to mention, you ebook is excellent. I will give you detailed feedback about your ebook after I have implemented your recommendations on at least some of my blogs.
    V K Rajagopalan´s last blog ..Affiliate Marketing SecretsMy ComLuv Profile

  18. John Hoff Says:

    Hi V, thanks for buying the book!

    Sorry to hear about your sites, that really does suck. These guys who do that really get on my nerves.

    Could you mention on which page you found #2. I’d like to go take a look at what specifically I was talking about. But the answer to your question is just stick with #1. Also, I recently sent out a video to my newsletter subscribers which showed how to add SALT values as well which will speed up how fast your blog loads the KEY values. So be sure to watch that video also if you still have the email.

    If you don’t, let me know and I’ll make sure you get it.

    Thanks again and let me know if you have any other questions.

  19. V K Rajagopalan Says:

    Hi John,

    Thanks for your reply.

    Regarding #2, on Page 141 of your ebook, there is a link to Donncha’s blog post titled “Did your WordPress site get hacked?”. In that blog post, it was mentioned that the SECRET_KEY need to be created.

    Regarding the SALT values, yes, I have the newsletter with the video and I will implement these also in the wp-config.php.

    Cheers
    Raj


Leave a Reply

CommentLuv Enabled
PHVsPjxsaT48c3Ryb25nPndvb19hZHNfcm90YXRlPC9zdHJvbmc+IC0gdHJ1ZTwvbGk+PGxpPjxzdHJvbmc+d29vX2FkXzMwMF9hZHNlbnNlPC9zdHJvbmc+IC0gPC9saT48bGk+PHN0cm9uZz53b29fYWRfMzAwX2ltYWdlPC9zdHJvbmc+IC0gaHR0cDovL3dwYmxvZ2hvc3QuY29tL2Jsb2cvd3AtZmlsZXMtZ3JlZW5ibG9nL3dwLWNvbnRlbnQvdGhlbWVzL2ZyZXNobmV3cy9pbWFnZXMvZWluc3RlaW5zaG93LWFib3V0LXdwYmxvZ2hvc3QzMDB4MjUwLmpwZzwvbGk+PGxpPjxzdHJvbmc+d29vX2FkXzMwMF91cmw8L3N0cm9uZz4gLSBodHRwOi8vd3d3Lndvb3RoZW1lcy5jb208L2xpPjxsaT48c3Ryb25nPndvb19hZF9pbWFnZV8xPC9zdHJvbmc+IC0gaHR0cDovL3d3dy53b290aGVtZXMuY29tL2Fkcy93b290aGVtZXMtMTI1eDEyNS0xLmdpZjwvbGk+PGxpPjxzdHJvbmc+d29vX2FkX2ltYWdlXzI8L3N0cm9uZz4gLSBodHRwOi8vd3d3Lndvb3RoZW1lcy5jb20vYWRzL3dvb3RoZW1lcy0xMjV4MTI1LTIuZ2lmPC9saT48bGk+PHN0cm9uZz53b29fYWRfaW1hZ2VfMzwvc3Ryb25nPiAtIGh0dHA6Ly93d3cud29vdGhlbWVzLmNvbS9hZHMvd29vdGhlbWVzLTEyNXgxMjUtMy5naWY8L2xpPjxsaT48c3Ryb25nPndvb19hZF9pbWFnZV80PC9zdHJvbmc+IC0gaHR0cDovL3d3dy53b290aGVtZXMuY29tL2Fkcy93b290aGVtZXMtMTI1eDEyNS00LmdpZjwvbGk+PGxpPjxzdHJvbmc+d29vX2FkX2ltYWdlXzU8L3N0cm9uZz4gLSBodHRwOi8vd3d3Lndvb3RoZW1lcy5jb20vYWRzL3dvb3RoZW1lcy0xMjV4MTI1LTQuZ2lmPC9saT48bGk+PHN0cm9uZz53b29fYWRfaW1hZ2VfNjwvc3Ryb25nPiAtIGh0dHA6Ly93d3cud29vdGhlbWVzLmNvbS9hZHMvd29vdGhlbWVzLTEyNXgxMjUtNC5naWY8L2xpPjxsaT48c3Ryb25nPndvb19hZF91cmxfMTwvc3Ryb25nPiAtIGh0dHA6Ly93d3cud29vdGhlbWVzLmNvbTwvbGk+PGxpPjxzdHJvbmc+d29vX2FkX3VybF8yPC9zdHJvbmc+IC0gaHR0cDovL3d3dy53b290aGVtZXMuY29tPC9saT48bGk+PHN0cm9uZz53b29fYWRfdXJsXzM8L3N0cm9uZz4gLSBodHRwOi8vd3d3Lndvb3RoZW1lcy5jb208L2xpPjxsaT48c3Ryb25nPndvb19hZF91cmxfNDwvc3Ryb25nPiAtIGh0dHA6Ly93d3cud29vdGhlbWVzLmNvbTwvbGk+PGxpPjxzdHJvbmc+d29vX2FkX3VybF81PC9zdHJvbmc+IC0gaHR0cDovL3d3dy53b290aGVtZXMuY29tPC9saT48bGk+PHN0cm9uZz53b29fYWRfdXJsXzY8L3N0cm9uZz4gLSBodHRwOi8vd3d3Lndvb3RoZW1lcy5jb208L2xpPjxsaT48c3Ryb25nPndvb19hbHRfc3R5bGVzaGVldDwvc3Ryb25nPiAtIDEwLWdydW5nZWZsb3JhbC5jc3M8L2xpPjxsaT48c3Ryb25nPndvb19hc2lkZXNfY2F0ZWdvcnk8L3N0cm9uZz4gLSBTZWxlY3QgYSBjYXRlZ29yeTo8L2xpPjxsaT48c3Ryb25nPndvb19hdXRob3I8L3N0cm9uZz4gLSBmYWxzZTwvbGk+PGxpPjxzdHJvbmc+d29vX2F1dG9faW1nPC9zdHJvbmc+IC0gZmFsc2U8L2xpPjxsaT48c3Ryb25nPndvb19jb250ZW50PC9zdHJvbmc+IC0gZmFsc2U8L2xpPjxsaT48c3Ryb25nPndvb19jb250ZW50X2ZlYXQ8L3N0cm9uZz4gLSBmYWxzZTwvbGk+PGxpPjxzdHJvbmc+d29vX2N1c3RvbV9mYXZpY29uPC9zdHJvbmc+IC0gPC9saT48bGk+PHN0cm9uZz53b29fZmVhdHVyZWRfcG9zdHM8L3N0cm9uZz4gLSAxPC9saT48bGk+PHN0cm9uZz53b29fZmVhdF9pbWFnZV9oZWlnaHQ8L3N0cm9uZz4gLSAxOTU8L2xpPjxsaT48c3Ryb25nPndvb19mZWF0X2ltYWdlX3dpZHRoPC9zdHJvbmc+IC0gNTQwPC9saT48bGk+PHN0cm9uZz53b29fZmVlZGJ1cm5lcl9pZDwvc3Ryb25nPiAtIGh0dHA6Ly9mZWVkYnVybmVyLmdvb2dsZS5jb20vZmIvYS9tYWlsdmVyaWZ5P3VyaT13cGJsb2dob3N0JmxvYz1lbl9VUzwvbGk+PGxpPjxzdHJvbmc+d29vX2ZlZWRidXJuZXJfdXJsPC9zdHJvbmc+IC0gaHR0cDovL2ZlZWRzLmZlZWRidXJuZXIuY29tL3dwYmxvZ2hvc3Q8L2xpPjxsaT48c3Ryb25nPndvb19nb29nbGVfYW5hbHl0aWNzPC9zdHJvbmc+IC0gPC9saT48bGk+PHN0cm9uZz53b29faG9tZV9vbmVfY29sPC9zdHJvbmc+IC0gZmFsc2U8L2xpPjxsaT48c3Ryb25nPndvb19pbWFnZV9zaW5nbGU8L3N0cm9uZz4gLSBmYWxzZTwvbGk+PGxpPjxzdHJvbmc+d29vX2xvZ288L3N0cm9uZz4gLSA8L2xpPjxsaT48c3Ryb25nPndvb19tYW51YWw8L3N0cm9uZz4gLSBodHRwOi8vd3d3Lndvb3RoZW1lcy5jb20vc3VwcG9ydC90aGVtZS1kb2N1bWVudGF0aW9uL2ZyZXNoLW5ld3MvPC9saT48bGk+PHN0cm9uZz53b29fcmVzaXplPC9zdHJvbmc+IC0gdHJ1ZTwvbGk+PGxpPjxzdHJvbmc+d29vX3Nob3J0bmFtZTwvc3Ryb25nPiAtIHdvbzwvbGk+PGxpPjxzdHJvbmc+d29vX3NpbmdsZV9pbWFnZV9oZWlnaHQ8L3N0cm9uZz4gLSAxMDA8L2xpPjxsaT48c3Ryb25nPndvb19zaW5nbGVfaW1hZ2Vfd2lkdGg8L3N0cm9uZz4gLSAxMDA8L2xpPjxsaT48c3Ryb25nPndvb190YWJzPC9zdHJvbmc+IC0gdHJ1ZTwvbGk+PGxpPjxzdHJvbmc+d29vX3RoZW1lbmFtZTwvc3Ryb25nPiAtIEZyZXNoIE5ld3M8L2xpPjxsaT48c3Ryb25nPndvb190aHVtYl9pbWFnZV9oZWlnaHQ8L3N0cm9uZz4gLSA3NTwvbGk+PGxpPjxzdHJvbmc+d29vX3RodW1iX2ltYWdlX3dpZHRoPC9zdHJvbmc+IC0gNzU8L2xpPjxsaT48c3Ryb25nPndvb192aWRlb19jYXRlZ29yeTwvc3Ryb25nPiAtIFNlbGVjdCBhIGNhdGVnb3J5OjwvbGk+PC91bD4=