• peorman

    (@peorman)


    [ Moderator note: moved to Fixing WordPress. ]

    I have little knowledge of WordPress security other than what little I’ve read. I rely on the out of box configuration to supply whatever security my ISP does not. I do make sure that directories and files are locked down.

    However I see a lot of attempts in my net stats of single IP addresses continuously hitting the site with a lot of specified pages like /MySQL/sql-admin and then a second later /MySQL/sqladmin. Same is true for PHP admin, dbadmin, etc.

    It is my belief that these are site hacking attempts and I have blocked those IPs at the service provider level in the past. But I’m just guessing.

    Can anyone provide any advice or point me to whatever I’ve obviously missed to help identify and clarify these hits?

    Greatly appreciated. I can provide specific details if necessary, but the activity is really as I’ve described.

Viewing 2 replies - 1 through 2 (of 2 total)
  • seanperryman

    (@seanperryman)

    I can tell you from experience that the plugin WordFence, even its Free version, is invaluable as the first line of defense for a WordPress site. It will handle blocking IPs including countries and regions if necessary.

    During the installation, it will also point out if there are any glaring security flaws that need to be fixed, something I’ve found valuable many times.

    Thread Starter peorman

    (@peorman)

    Thanks for the advice. I’ve installed the WordFence plugin and will monitor traffic for changes. It may be nothing, but unfortunately there are bad actors out there that would love to compromise WordPress sites to gain access to the sever I’m paying for.

Viewing 2 replies - 1 through 2 (of 2 total)

The topic ‘WordPress Hack Detection?’ is closed to new replies.