Make sure to protect your file directories, don’t make them writable by you only!
Red up:
http://codex.wordpress.org/Hardening_WordPress
And download:
http://wordpress.org/extend/plugins/wp-security-scan/
Related Posts:
- Is sanitize_text_field() is enough to save to DB?
- What is the most secure way to store post meta data in WP?
- What’s the most efficient database method to add and query usermeta?
- Extend the wp_users table
- Using two different DB users on one WP install
- Is $wpdb->prepare escaping to much? How to use it properly?
- update_user_meta() does not work
- Select Multiple meta_value from WP DB; Single Query
- Is it possible to store visitors IPs in wp_postmeta table?
- Which is more efficient? Using usermeta, or creating a new MySQL table?
- Who is responsible for data sanitization in WordPress development?
- How do I properly update the WordPress database password?
- A field with dashes in the slug [closed]
- In what part of the WordPress core does the users table and usermeta table get joined?
- Modify Database in Multi-Site wp_usermeta table
- Best way to tell if a user account is active, using the database only
- Using GROUP CONCAT in my-sql query with wp_usermeta table
- Is it safe to delete unnecessary user metadata?
- How to replicate a user plugin made table value, to this user’s custom meta table value?
- WordPress Database Huge wp_usermeta Table
- How to Access wp_usermeta Data Immediately After a New User is Created
- WordPress and user security
- What’s the proper way to sanitize checkbox value sent to the database
- Users table missing from Database [closed]
- Recovering the table wp_usermeta from users
- I cannot find the difference between these wp_capabilities values in wp_usermeta
- Buddypress avatar image in database [closed]
- WordPress security [closed]
- Storing user submitted forms [closed]
- wp_insert_user not creating account correctly when ID is manually set
- Secure way to use name_save_pre?
- Compare User meta_value with Product meta_value
- WordPress Database – wp_usermeta and the correct number of session_tokens rows
- Best Practice? – Saving multiple Values as Serialized Data / Saving each Value per Row / Dedicated Table
- Join Query on WP_USERMETA Table
- Insert NULL value using prepare()
- how add more field to wp user and save it to database
- Move Non-WordPress users table to WordPress database
- generate PDF from member information
- How to get the id of recently registered user from database?
- spambot registering without providing email or password, bypassing registration process
- update multiple user meta field based on another meta field
- get_user_meta and umeta_id
- Hash user emails in database?
- Preventing concurrent update of data
- Calling update_user_meta inside of another function doesn’t work
- What is best for saving lot of extra detail of user?
- wp_usermeta key problem
- Query a meta key using an array of values where the database value is a string
- Is it fine to have foreign key as primary key?
- Detecting errors generated by $wpdb->get_results()
- Restoring WordPress posts from database only
- Performance Gains of Relational DB Setup
- store simple data in get_option()
- What are conventions about the schema of the $table_prefix
- BuddyPress: What’s the use of wp_bp_xprofile_data table and how does it get updated? [closed]
- storing database in version control
- Is deleting orphaned wp_options entries safe?
- How to build a movie database with wordpress?
- Sub-domain or 2nd, temporary different domain?
- How do i get user data from a custom table in the wordpress database by user ID?
- Converting WordPress into Android or iPhone app
- Delete duplicate rows from wordpress database where a column is duplicate in phpmyadmin
- Database slowdown after update to 3.4.1
- WooCommerce sku location in DB
- How to insert data into MySQL database from the form created in WordPress site
- Emoji support and MariaDB 10.0.30-
- Can I have multiple database users within WordPress?
- $wpdb doesn’t like to store arrays
- Connect to a remote database for wordpress in my own hosting server
- Should I encrypt the response that triggers an Ajax action? Is nonce sufficient?
- WordPress ‘repairing database’ in a constant error loop?
- What Is the Proper Way to Merge Usermeta Table to a an existing WP Database?
- Importing CSV into database table not working?
- Check if an option exists and get its value in one hit
- Best practice to limit results in get_row()?
- Serialize data before inserting into the DB
- Reinstalling wordpress from database breaks the site
- Pages from custom table
- Trouble running $wpdb->query() with last_insert_id
- Can I customised default WP table
- Woocommerce – Check product stock availability from external database
- How to display data from db in select list [closed]
- Will adding & modifying default WordPress table index break future WordPress update
- Database migration issues – Error #1046 No database selected
- echo site_url() returns a different value than what is in the database siteurl field
- Native timestamp on wp_options option
- SELECT rows between two datetimes when the range is dynamic [closed]
- How to get the full stack trace for WordPress “table doesn’t exist” error in debug.log?
- WordPress Database Re-installed (Hacked)
- How to access a table in a wordpress database using REST API?
- error establishing a database connection 3
- Correct and secure way to access a custom SQL database in a custom PHP template file
- Missing latest posts and options after DB migration via phpMyAdmin
- Local host to server import problem
- Getting deleted users in database
- how to find the way they hacked my WP site
- Options of accessing wordpress data from mobile app
- Getting data from a table using a query
- Database interaction (private-public) [closed]