Today when I accessed the page of a friend Blogger, the antivirus did not allow me to access it and I blocked access because it detected malware in the Blog. The first thing I thought was to analyze it with a free online antivirus canada business email database , and when I confirmed that the website did have malware, then I thought why not write an article that helps many Bloggers and web pages to avoid these problems.
This led me to think about three important things;
1.- The importance of having an antivirus installed on the computer that analyzes your online browsing.
2.- The importance of having free online tools that can analyze any web or Blog in search of any type of malware or to detect vulnerabilities.
3.- How to increase the security of my website or Blog to avoid these situations.
You may also be interested:
7 Tips to increase security in WordPress
How to protect the contents of a Blog
12 free tools to navigate safely with your computer or mobile
But before starting with the tools I want to give you some tips to improve the security of your website or Blog.
10 Tips to improve the security of your website or Blog in WordPress
1.- Change the default login URL of WordPress
Lockdown WP Admin is a very easy to use WordPress plugin that will allow us to change the url access to the backend of our blog, so that in this way the automatic tools that try to access our Blog or web do not consume resources from our server.
2.- Use Cloudflare
Cloudflare is an online tool that allows us to improve the loading speed, as well as protect our website against DDos attacks and SQL injections to the database. If you notice a suspicious increase in the size of the database, it can be an indicator of injected code.
Setting up this tool is not easy and it is preferable that you ask someone who knows it to configure it well, or, failing that, talk to your hosting company to see if they can configure it for you.
3.- Use an antivirus that analyzes and protects your web
Wordfence is a tool that we can use completely free on our website or WordPress Blog.
By default it is not configured as well as it should and you have to mark two options that are important before performing your first analysis in search of malware.
The first thing you have to do after installing and activating the plugin is to go to the “options” section, and add 2 configuration options that by default are not activated as shown in the following image.
wordfence configuration
The two options to be added are the penultimate and the second to last in this list, so that Wordfence analyzes files outside of the WordPress installation itself and so that it analyzes the image folder, where many malware is usually filtered.
How long have you not accessed by ftp to your image folder to check it?
Once you have it properly configured you can go to the “scan” section and perform your first analysis in search of malware and vulnerabilities of your website.
4.- Never use obsolete WordPress plugins
If your plugin does not update it more than 12 months ago, it is advisable that you remove it from your website or Blog and avoid a security problem.
Of course, if you want to add a new plugin to your family of wordpress plugins, follow the same recommendation.
5.- Always update the Worpress version
We need to always have our WordPress version of our website or Blog updated, but do not be in a hurry to click on the update button and make a backup beforehand.
6.- Update WordPress plugins
The same thing happens with the plugins, we must have them always updated to the latest available version.
7.- Update the theme version
This is perhaps the least done but it is usually one of the main focuses or entry doors of the malware, so try to update your theme at least every 6 months.
8.- Do not use trivial passwords
Think that there are many tools that can be right now trying to find out what is your administrator password to access and hack your website, so I recommend you use one with a high level of difficulty, and change it every 6 months, and so add better security.
How long have you not changed the wordpress administrator password?
9.- Choose a secure hosting
Some people think that hosting is not important to have more security a website or blog, but it is, I am very happy with the Raiola company, which is where my Blog has been hosted for a year, because they are experts in security and that offers me great security and tranquility in the future.
10.- Make backup copies of your website or Blog
An important aspect in security is undoubtedly make daily backup copies of our blog or website, so as to always have