<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:media="http://search.yahoo.com/mrss/" 
	>
<channel>
	<title>
	Comments on: 3 Must Apply Security Tips for WordPress	</title>
	<atom:link href="https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/feed/" rel="self" type="application/rss+xml" />
	<link>https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/</link>
	<description>DailyBlogTips.com takes you from SEO to CEO. You’ll learn everything you need to know to master blogging, SEO, marketing, web design leading you to passive income.</description>
	<lastBuildDate>Mon, 24 Jul 2023 21:54:38 +0000</lastBuildDate>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.7.4</generator>
	<item>
		<title>
		By: Keith Davis		</title>
		<link>https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-1019439</link>

		<dc:creator><![CDATA[Keith Davis]]></dc:creator>
		<pubDate>Sun, 15 Nov 2009 21:48:38 +0000</pubDate>
		<guid isPermaLink="false">https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-1019439</guid>

					<description><![CDATA[Three things you need to consider when using Wordpress... security, security, security.
Three great tips that could perhaps be explained in a little more detail.]]></description>
			<content:encoded><![CDATA[<p>Three things you need to consider when using WordPress&#8230; security, security, security.<br />
Three great tips that could perhaps be explained in a little more detail.</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: matt		</title>
		<link>https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-979078</link>

		<dc:creator><![CDATA[matt]]></dc:creator>
		<pubDate>Mon, 21 Sep 2009 04:59:01 +0000</pubDate>
		<guid isPermaLink="false">https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-979078</guid>

					<description><![CDATA[Thank you, I had been googling all the security problems that wordpress had to figure out how to fix it. I love wordpress, but the fact that anyone can hack into my site or edit something scares me, especially if I spend 100&#039;s of hours building up my site.]]></description>
			<content:encoded><![CDATA[<p>Thank you, I had been googling all the security problems that wordpress had to figure out how to fix it. I love wordpress, but the fact that anyone can hack into my site or edit something scares me, especially if I spend 100&#8217;s of hours building up my site.</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: Altis Lo (Beaulife)		</title>
		<link>https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-961458</link>

		<dc:creator><![CDATA[Altis Lo (Beaulife)]]></dc:creator>
		<pubDate>Fri, 28 Aug 2009 14:32:53 +0000</pubDate>
		<guid isPermaLink="false">https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-961458</guid>

					<description><![CDATA[Thanks for the tips and comments. I just thought about the dynamic IP for my broadband...  So tips no. 2 and 3 are the easiest to apply.]]></description>
			<content:encoded><![CDATA[<p>Thanks for the tips and comments. I just thought about the dynamic IP for my broadband&#8230;  So tips no. 2 and 3 are the easiest to apply.</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: HLBryant		</title>
		<link>https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-878644</link>

		<dc:creator><![CDATA[HLBryant]]></dc:creator>
		<pubDate>Tue, 26 May 2009 19:05:48 +0000</pubDate>
		<guid isPermaLink="false">https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-878644</guid>

					<description><![CDATA[I tried the htaccess and stumbled into an odd error! I couldn&#039;t use the Plugin automated service that is in the admin of a WP Blog. It told me I had no permission!

When I deleted it, I was able to install my plugins. :) Just something to look out for? :)]]></description>
			<content:encoded><![CDATA[<p>I tried the htaccess and stumbled into an odd error! I couldn&#8217;t use the Plugin automated service that is in the admin of a WP Blog. It told me I had no permission!</p>
<p>When I deleted it, I was able to install my plugins. 🙂 Just something to look out for? 🙂</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: Bikram		</title>
		<link>https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-772879</link>

		<dc:creator><![CDATA[Bikram]]></dc:creator>
		<pubDate>Fri, 13 Feb 2009 10:31:32 +0000</pubDate>
		<guid isPermaLink="false">https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-772879</guid>

					<description><![CDATA[Hi!

My IP changes every time i restart my broadband modem. what should i do to prevent hacking on my wordpress install? need help on this issue.

Thanks]]></description>
			<content:encoded><![CDATA[<p>Hi!</p>
<p>My IP changes every time i restart my broadband modem. what should i do to prevent hacking on my wordpress install? need help on this issue.</p>
<p>Thanks</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: Bikram		</title>
		<link>https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-772877</link>

		<dc:creator><![CDATA[Bikram]]></dc:creator>
		<pubDate>Fri, 13 Feb 2009 10:30:32 +0000</pubDate>
		<guid isPermaLink="false">https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-772877</guid>

					<description><![CDATA[Hi!

My IP changes every time i restart my broadband modem. what should i do to prevent hacking on my wordpress install? need help on this.]]></description>
			<content:encoded><![CDATA[<p>Hi!</p>
<p>My IP changes every time i restart my broadband modem. what should i do to prevent hacking on my wordpress install? need help on this.</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: Mr. I		</title>
		<link>https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-771327</link>

		<dc:creator><![CDATA[Mr. I]]></dc:creator>
		<pubDate>Thu, 12 Feb 2009 02:12:39 +0000</pubDate>
		<guid isPermaLink="false">https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-771327</guid>

					<description><![CDATA[Unfortunately, I have dynamic IP&#039;s and can&#039;t set tip no. 1. But I will apply no. 2 as No. 3 is already applied! :-)]]></description>
			<content:encoded><![CDATA[<p>Unfortunately, I have dynamic IP&#8217;s and can&#8217;t set tip no. 1. But I will apply no. 2 as No. 3 is already applied! 🙂</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: Eqwitty.com		</title>
		<link>https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-724452</link>

		<dc:creator><![CDATA[Eqwitty.com]]></dc:creator>
		<pubDate>Wed, 31 Dec 2008 19:01:24 +0000</pubDate>
		<guid isPermaLink="false">https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-724452</guid>

					<description><![CDATA[great tips.  thanks!]]></description>
			<content:encoded><![CDATA[<p>great tips.  thanks!</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: Jan Alvin		</title>
		<link>https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-653864</link>

		<dc:creator><![CDATA[Jan Alvin]]></dc:creator>
		<pubDate>Sun, 09 Nov 2008 20:43:49 +0000</pubDate>
		<guid isPermaLink="false">https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-653864</guid>

					<description><![CDATA[Wow, I&#039;ve got to prevent hacking my blog as soon as possible.]]></description>
			<content:encoded><![CDATA[<p>Wow, I&#8217;ve got to prevent hacking my blog as soon as possible.</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: Dinesh		</title>
		<link>https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-628374</link>

		<dc:creator><![CDATA[Dinesh]]></dc:creator>
		<pubDate>Tue, 14 Oct 2008 03:14:07 +0000</pubDate>
		<guid isPermaLink="false">https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-628374</guid>

					<description><![CDATA[Thanks for you information... 

But this is more secure than the above code

# -FrontPage-

Options None


order deny,allow
deny from all
allow from all
require group authors administrators


order deny,allow
deny from all

AuthType Basic
AuthName yourwebsite.com
AuthUserFile service.pwd //Example /home/usename/public_html/_vti_pvt/service.pwd
AuthGroupFile service.grp //Example /home/username/public_html/_vti_pvt/service.grp


From  ]]></description>
			<content:encoded><![CDATA[<p>Thanks for you information&#8230; </p>
<p>But this is more secure than the above code</p>
<p># -FrontPage-</p>
<p>Options None</p>
<p>order deny,allow<br />
deny from all<br />
allow from all<br />
require group authors administrators</p>
<p>order deny,allow<br />
deny from all</p>
<p>AuthType Basic<br />
AuthName yourwebsite.com<br />
AuthUserFile service.pwd //Example /home/usename/public_html/_vti_pvt/service.pwd<br />
AuthGroupFile service.grp //Example /home/username/public_html/_vti_pvt/service.grp</p>
<p>From  </p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: rajeev mehta		</title>
		<link>https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-445566</link>

		<dc:creator><![CDATA[rajeev mehta]]></dc:creator>
		<pubDate>Sat, 10 May 2008 07:03:19 +0000</pubDate>
		<guid isPermaLink="false">https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-445566</guid>

					<description><![CDATA[great tips.mine was getting hacked i think and this post really helped a lot ..]]></description>
			<content:encoded><![CDATA[<p>great tips.mine was getting hacked i think and this post really helped a lot ..</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: WebDiggin		</title>
		<link>https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-409409</link>

		<dc:creator><![CDATA[WebDiggin]]></dc:creator>
		<pubDate>Tue, 22 Apr 2008 13:11:09 +0000</pubDate>
		<guid isPermaLink="false">https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-409409</guid>

					<description><![CDATA[Thanks for the security heads-up. We haven&#039;t really thought about it til we saw this post.

FYI - Matt&#039;s post has an update where Joshua Slive pointed out that the .htaccess file shouldn&#039;t have a  around the IP addresses. That would have allowed IP addresses to POST, for example. 

We have a dynamic IP where the last digit of our IP address changes. There are about four or five different XX.XX.XXX.* address that we get with our ISP. 

We found that if we just drop the last number, we&#039;re still able to access our wp-admin folder, but if we use an anonymous proxy and try to access it from an IP address in Germany, it won&#039;t get in.

Can anyone else verify that this works for dynamic addresses?

allow from xx.xx.xx
allow from xx.xx.xxx

Thanks]]></description>
			<content:encoded><![CDATA[<p>Thanks for the security heads-up. We haven&#8217;t really thought about it til we saw this post.</p>
<p>FYI &#8211; Matt&#8217;s post has an update where Joshua Slive pointed out that the .htaccess file shouldn&#8217;t have a  around the IP addresses. That would have allowed IP addresses to POST, for example. </p>
<p>We have a dynamic IP where the last digit of our IP address changes. There are about four or five different XX.XX.XXX.* address that we get with our ISP. </p>
<p>We found that if we just drop the last number, we&#8217;re still able to access our wp-admin folder, but if we use an anonymous proxy and try to access it from an IP address in Germany, it won&#8217;t get in.</p>
<p>Can anyone else verify that this works for dynamic addresses?</p>
<p>allow from xx.xx.xx<br />
allow from xx.xx.xxx</p>
<p>Thanks</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: Mikael		</title>
		<link>https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-389642</link>

		<dc:creator><![CDATA[Mikael]]></dc:creator>
		<pubDate>Fri, 11 Apr 2008 18:59:30 +0000</pubDate>
		<guid isPermaLink="false">https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-389642</guid>

					<description><![CDATA[What happens if you have other authors writing posts. Will point number 1 affect their ability ot login and post topics? I mean if their IP isn&#039;t added to the file.]]></description>
			<content:encoded><![CDATA[<p>What happens if you have other authors writing posts. Will point number 1 affect their ability ot login and post topics? I mean if their IP isn&#8217;t added to the file.</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: Bloggero		</title>
		<link>https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-323954</link>

		<dc:creator><![CDATA[Bloggero]]></dc:creator>
		<pubDate>Wed, 20 Feb 2008 12:03:17 +0000</pubDate>
		<guid isPermaLink="false">https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-323954</guid>

					<description><![CDATA[If I put .htaccess in /wp-content/plugins/ the plugins will work ?]]></description>
			<content:encoded><![CDATA[<p>If I put .htaccess in /wp-content/plugins/ the plugins will work ?</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: Ness		</title>
		<link>https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-318926</link>

		<dc:creator><![CDATA[Ness]]></dc:creator>
		<pubDate>Sat, 16 Feb 2008 14:38:32 +0000</pubDate>
		<guid isPermaLink="false">https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-318926</guid>

					<description><![CDATA[Some good tips. Have just removed Meta tag showing wordpress version. Overlooked earlier.]]></description>
			<content:encoded><![CDATA[<p>Some good tips. Have just removed Meta tag showing wordpress version. Overlooked earlier.</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: Deborah		</title>
		<link>https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-315143</link>

		<dc:creator><![CDATA[Deborah]]></dc:creator>
		<pubDate>Thu, 14 Feb 2008 00:19:23 +0000</pubDate>
		<guid isPermaLink="false">https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-315143</guid>

					<description><![CDATA[Jaan and Hendry,

Thanks for the reminder on the Options -indexes. That works the easiest for managing, without having to add index.php or index.html files in folders.]]></description>
			<content:encoded><![CDATA[<p>Jaan and Hendry,</p>
<p>Thanks for the reminder on the Options -indexes. That works the easiest for managing, without having to add index.php or index.html files in folders.</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: Hendry Lee		</title>
		<link>https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-293593</link>

		<dc:creator><![CDATA[Hendry Lee]]></dc:creator>
		<pubDate>Thu, 31 Jan 2008 13:49:01 +0000</pubDate>
		<guid isPermaLink="false">https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-293593</guid>

					<description><![CDATA[Regarding number 2, I&#039;d recommend to disable directory index on all directories by placing the a line in .htaccess in the root directory:

Options -Indexes 

This way, the option is off for the whole domain.

While restricting access to wp-admin is useful it is not for people who don&#039;t have static IP.]]></description>
			<content:encoded><![CDATA[<p>Regarding number 2, I&#8217;d recommend to disable directory index on all directories by placing the a line in .htaccess in the root directory:</p>
<p>Options -Indexes </p>
<p>This way, the option is off for the whole domain.</p>
<p>While restricting access to wp-admin is useful it is not for people who don&#8217;t have static IP.</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: Mark		</title>
		<link>https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-291062</link>

		<dc:creator><![CDATA[Mark]]></dc:creator>
		<pubDate>Tue, 29 Jan 2008 16:06:54 +0000</pubDate>
		<guid isPermaLink="false">https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-291062</guid>

					<description><![CDATA[Why a blank index.html?  Can you use a blank index.php for this purpose to or is that a bigger security threat?]]></description>
			<content:encoded><![CDATA[<p>Why a blank index.html?  Can you use a blank index.php for this purpose to or is that a bigger security threat?</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: Daniel		</title>
		<link>https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-286870</link>

		<dc:creator><![CDATA[Daniel]]></dc:creator>
		<pubDate>Fri, 25 Jan 2008 19:05:28 +0000</pubDate>
		<guid isPermaLink="false">https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-286870</guid>

					<description><![CDATA[Brent, yes.]]></description>
			<content:encoded><![CDATA[<p>Brent, yes.</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: brent berrett		</title>
		<link>https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-286709</link>

		<dc:creator><![CDATA[brent berrett]]></dc:creator>
		<pubDate>Fri, 25 Jan 2008 16:30:22 +0000</pubDate>
		<guid isPermaLink="false">https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-286709</guid>

					<description><![CDATA[Can the files can be accessed directly even with a blank index.html file?]]></description>
			<content:encoded><![CDATA[<p>Can the files can be accessed directly even with a blank index.html file?</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: LoLo		</title>
		<link>https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-285120</link>

		<dc:creator><![CDATA[LoLo]]></dc:creator>
		<pubDate>Thu, 24 Jan 2008 12:58:31 +0000</pubDate>
		<guid isPermaLink="false">https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-285120</guid>

					<description><![CDATA[&quot;Do you know any other security tips that WordPress users should apply?&quot;

1. Change the default DB prefix (wp_).
2. Hide your entire install.
3. Matt&#039;s bonus tip was a bit off. You can still get his version info. Just edit your wp-includes/version.php to hide it correctly.

Info on how to hide your install and all the rest of this can be found here.]]></description>
			<content:encoded><![CDATA[<p>&#8220;Do you know any other security tips that WordPress users should apply?&#8221;</p>
<p>1. Change the default DB prefix (wp_).<br />
2. Hide your entire install.<br />
3. Matt&#8217;s bonus tip was a bit off. You can still get his version info. Just edit your wp-includes/version.php to hide it correctly.</p>
<p>Info on how to hide your install and all the rest of this can be found here.</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: Daniel		</title>
		<link>https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-282124</link>

		<dc:creator><![CDATA[Daniel]]></dc:creator>
		<pubDate>Mon, 21 Jan 2008 18:45:41 +0000</pubDate>
		<guid isPermaLink="false">https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-282124</guid>

					<description><![CDATA[If you have a dynamic IP just go with a password protected .htaccess file as described by James W.]]></description>
			<content:encoded><![CDATA[<p>If you have a dynamic IP just go with a password protected .htaccess file as described by James W.</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: Nick - road2blogging		</title>
		<link>https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-281197</link>

		<dc:creator><![CDATA[Nick - road2blogging]]></dc:creator>
		<pubDate>Mon, 21 Jan 2008 00:18:10 +0000</pubDate>
		<guid isPermaLink="false">https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-281197</guid>

					<description><![CDATA[thanks for the tips.  Hard to implement #1, but just done the other two.]]></description>
			<content:encoded><![CDATA[<p>thanks for the tips.  Hard to implement #1, but just done the other two.</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: Ruchir		</title>
		<link>https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-279751</link>

		<dc:creator><![CDATA[Ruchir]]></dc:creator>
		<pubDate>Sat, 19 Jan 2008 14:51:10 +0000</pubDate>
		<guid isPermaLink="false">https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-279751</guid>

					<description><![CDATA[&quot;Matt suggests to place a .htaccess file inside the /wp-admin/ folder to block the access to all IP addresses, except yours.&quot;

What if I have a dynamic IP?

And what if I access my admin through 2 different PCs with 2 different internet connections...]]></description>
			<content:encoded><![CDATA[<p>&#8220;Matt suggests to place a .htaccess file inside the /wp-admin/ folder to block the access to all IP addresses, except yours.&#8221;</p>
<p>What if I have a dynamic IP?</p>
<p>And what if I access my admin through 2 different PCs with 2 different internet connections&#8230;</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: Bong (JB)		</title>
		<link>https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-279337</link>

		<dc:creator><![CDATA[Bong (JB)]]></dc:creator>
		<pubDate>Sat, 19 Jan 2008 06:28:55 +0000</pubDate>
		<guid isPermaLink="false">https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-279337</guid>

					<description><![CDATA[I haven&#039;t worried about security stuff before but I&#039;m going to implement this. Better safe than sorry. Thanks.]]></description>
			<content:encoded><![CDATA[<p>I haven&#8217;t worried about security stuff before but I&#8217;m going to implement this. Better safe than sorry. Thanks.</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: James W		</title>
		<link>https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-279099</link>

		<dc:creator><![CDATA[James W]]></dc:creator>
		<pubDate>Sat, 19 Jan 2008 02:23:40 +0000</pubDate>
		<guid isPermaLink="false">https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-279099</guid>

					<description><![CDATA[Regarding .htaccess and IP Blocking:   An alternative method is to use htaccess password - that way you can access it anywhere and not have it restricted to an IP. It pops up with a login box when you try to access the folder.

There even a wordpress plugin to do it (I havent tested it)

 ]]></description>
			<content:encoded><![CDATA[<p>Regarding .htaccess and IP Blocking:   An alternative method is to use htaccess password &#8211; that way you can access it anywhere and not have it restricted to an IP. It pops up with a login box when you try to access the folder.</p>
<p>There even a wordpress plugin to do it (I havent tested it)</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: dennis		</title>
		<link>https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-279062</link>

		<dc:creator><![CDATA[dennis]]></dc:creator>
		<pubDate>Sat, 19 Jan 2008 01:51:38 +0000</pubDate>
		<guid isPermaLink="false">https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-279062</guid>

					<description><![CDATA[@Mikhail:  Its nearly impossible to plug all of the holes all of the time.  Just depends on how paranoid you are.  :)

 ]]></description>
			<content:encoded><![CDATA[<p>@Mikhail:  Its nearly impossible to plug all of the holes all of the time.  Just depends on how paranoid you are.  🙂</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: dennis		</title>
		<link>https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-279056</link>

		<dc:creator><![CDATA[dennis]]></dc:creator>
		<pubDate>Sat, 19 Jan 2008 01:43:43 +0000</pubDate>
		<guid isPermaLink="false">https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-279056</guid>

					<description><![CDATA[If you have control over your site&#039;s httpd.conf, it is probably a good idea to deny index listing by default.  Under your DocumentRoot directive, change your &#039;Options&#039; to include &#039;-Indexes&#039; (exactly as others have specified for .htaccess above).

Example (angle brackets changed so they don&#039;t mess up this comment):

[Directory &quot;/var/www/html/yoursite&quot;]
Options -Indexes]]></description>
			<content:encoded><![CDATA[<p>If you have control over your site&#8217;s httpd.conf, it is probably a good idea to deny index listing by default.  Under your DocumentRoot directive, change your &#8216;Options&#8217; to include &#8216;-Indexes&#8217; (exactly as others have specified for .htaccess above).</p>
<p>Example (angle brackets changed so they don&#8217;t mess up this comment):</p>
<p>[Directory &#8220;/var/www/html/yoursite&#8221;]<br />
Options -Indexes</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: Ash Haque		</title>
		<link>https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-278860</link>

		<dc:creator><![CDATA[Ash Haque]]></dc:creator>
		<pubDate>Fri, 18 Jan 2008 22:29:19 +0000</pubDate>
		<guid isPermaLink="false">https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-278860</guid>

					<description><![CDATA[Kind of defeats the whole point of being able to post to your site from anywhere (tip #1)]]></description>
			<content:encoded><![CDATA[<p>Kind of defeats the whole point of being able to post to your site from anywhere (tip #1)</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: David Zemens - 1955 Design		</title>
		<link>https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-278780</link>

		<dc:creator><![CDATA[David Zemens - 1955 Design]]></dc:creator>
		<pubDate>Fri, 18 Jan 2008 21:10:07 +0000</pubDate>
		<guid isPermaLink="false">https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-278780</guid>

					<description><![CDATA[@Mikhail: There is always a way around a security measure.  They are just designed to thwart a percentage of the hackers.  Thanks for the tip, though.  I placed that index.php file in all the subfolders of the plugin directory.  At least for the moment I am not exposed in the Akismet directory.]]></description>
			<content:encoded><![CDATA[<p>@Mikhail: There is always a way around a security measure.  They are just designed to thwart a percentage of the hackers.  Thanks for the tip, though.  I placed that index.php file in all the subfolders of the plugin directory.  At least for the moment I am not exposed in the Akismet directory.</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: Jonas		</title>
		<link>https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-278669</link>

		<dc:creator><![CDATA[Jonas]]></dc:creator>
		<pubDate>Fri, 18 Jan 2008 19:16:26 +0000</pubDate>
		<guid isPermaLink="false">https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-278669</guid>

					<description><![CDATA[Thanks for the tips! There are good reasons for hardening your Wordpress install. Wordpress stores passwords in the database as hash made from the password. A common Unix practice is to add random seed to the hash but Wordpress does not do this. Should the password hash be revealed it could even be revealed by googling the hash!]]></description>
			<content:encoded><![CDATA[<p>Thanks for the tips! There are good reasons for hardening your WordPress install. WordPress stores passwords in the database as hash made from the password. A common Unix practice is to add random seed to the hash but WordPress does not do this. Should the password hash be revealed it could even be revealed by googling the hash!</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: Jaan Kanellis		</title>
		<link>https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-278508</link>

		<dc:creator><![CDATA[Jaan Kanellis]]></dc:creator>
		<pubDate>Fri, 18 Jan 2008 16:34:40 +0000</pubDate>
		<guid isPermaLink="false">https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-278508</guid>

					<description><![CDATA[No problem!]]></description>
			<content:encoded><![CDATA[<p>No problem!</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: Chris Jacobson		</title>
		<link>https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-278502</link>

		<dc:creator><![CDATA[Chris Jacobson]]></dc:creator>
		<pubDate>Fri, 18 Jan 2008 16:29:18 +0000</pubDate>
		<guid isPermaLink="false">https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-278502</guid>

					<description><![CDATA[Great tips.

Thanks for the .htaccess trick, Jaan.]]></description>
			<content:encoded><![CDATA[<p>Great tips.</p>
<p>Thanks for the .htaccess trick, Jaan.</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: Zac Davis		</title>
		<link>https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-278494</link>

		<dc:creator><![CDATA[Zac Davis]]></dc:creator>
		<pubDate>Fri, 18 Jan 2008 16:21:55 +0000</pubDate>
		<guid isPermaLink="false">https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-278494</guid>

					<description><![CDATA[Wow, thanks for these tips.  I&#039;ll be sure to implement them.]]></description>
			<content:encoded><![CDATA[<p>Wow, thanks for these tips.  I&#8217;ll be sure to implement them.</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: Mikhail		</title>
		<link>https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-278490</link>

		<dc:creator><![CDATA[Mikhail]]></dc:creator>
		<pubDate>Fri, 18 Jan 2008 16:18:42 +0000</pubDate>
		<guid isPermaLink="false">https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-278490</guid>

					<description><![CDATA[@ David Zemens 1955 Design

don&#039;t be so excited, bro, by posting  your &quot;informational message&quot; 

look,

you are still exposed 

 ]]></description>
			<content:encoded><![CDATA[<p>@ David Zemens 1955 Design</p>
<p>don&#8217;t be so excited, bro, by posting  your &#8220;informational message&#8221; </p>
<p>look,</p>
<p>you are still exposed </p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: Michael Aulia		</title>
		<link>https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-278432</link>

		<dc:creator><![CDATA[Michael Aulia]]></dc:creator>
		<pubDate>Fri, 18 Jan 2008 15:13:44 +0000</pubDate>
		<guid isPermaLink="false">https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-278432</guid>

					<description><![CDATA[WOW..thanks so much..especially for Tip #2]]></description>
			<content:encoded><![CDATA[<p>WOW..thanks so much..especially for Tip #2</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: Daniel		</title>
		<link>https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-278365</link>

		<dc:creator><![CDATA[Daniel]]></dc:creator>
		<pubDate>Fri, 18 Jan 2008 13:30:48 +0000</pubDate>
		<guid isPermaLink="false">https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-278365</guid>

					<description><![CDATA[Thanks Jaan, yeah it is the same trick Shoemoney recommended sometime ago.]]></description>
			<content:encoded><![CDATA[<p>Thanks Jaan, yeah it is the same trick Shoemoney recommended sometime ago.</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: Jaan Kanellis		</title>
		<link>https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-278357</link>

		<dc:creator><![CDATA[Jaan Kanellis]]></dc:creator>
		<pubDate>Fri, 18 Jan 2008 13:25:16 +0000</pubDate>
		<guid isPermaLink="false">https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-278357</guid>

					<description><![CDATA[Just add the line:

Options -indexes 

to your htaccess file]]></description>
			<content:encoded><![CDATA[<p>Just add the line:</p>
<p>Options -indexes </p>
<p>to your htaccess file</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: Daniel		</title>
		<link>https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-278355</link>

		<dc:creator><![CDATA[Daniel]]></dc:creator>
		<pubDate>Fri, 18 Jan 2008 13:18:32 +0000</pubDate>
		<guid isPermaLink="false">https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-278355</guid>

					<description><![CDATA[@David Zemens, nice warning message you put there :).]]></description>
			<content:encoded><![CDATA[<p>@David Zemens, nice warning message you put there :).</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: Daniel		</title>
		<link>https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-278352</link>

		<dc:creator><![CDATA[Daniel]]></dc:creator>
		<pubDate>Fri, 18 Jan 2008 13:16:24 +0000</pubDate>
		<guid isPermaLink="false">https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-278352</guid>

					<description><![CDATA[That works then! Can you share the code you used in the .htaccess file? Either here or on your blog and I will link to it.]]></description>
			<content:encoded><![CDATA[<p>That works then! Can you share the code you used in the .htaccess file? Either here or on your blog and I will link to it.</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: Napster		</title>
		<link>https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-278349</link>

		<dc:creator><![CDATA[Napster]]></dc:creator>
		<pubDate>Fri, 18 Jan 2008 13:10:33 +0000</pubDate>
		<guid isPermaLink="false">https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-278349</guid>

					<description><![CDATA[Great security tips!]]></description>
			<content:encoded><![CDATA[<p>Great security tips!</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: Daniel		</title>
		<link>https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-278341</link>

		<dc:creator><![CDATA[Daniel]]></dc:creator>
		<pubDate>Fri, 18 Jan 2008 13:02:02 +0000</pubDate>
		<guid isPermaLink="false">https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-278341</guid>

					<description><![CDATA[Right, but when the user clicks on the image he would be directed to the wp-content folder on your blog. If you block that he would see a 404 page, won&#039;t he?]]></description>
			<content:encoded><![CDATA[<p>Right, but when the user clicks on the image he would be directed to the wp-content folder on your blog. If you block that he would see a 404 page, won&#8217;t he?</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: Jaan Kanellis		</title>
		<link>https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-278338</link>

		<dc:creator><![CDATA[Jaan Kanellis]]></dc:creator>
		<pubDate>Fri, 18 Jan 2008 12:55:10 +0000</pubDate>
		<guid isPermaLink="false">https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-278338</guid>

					<description><![CDATA[Daniel that should not be a problem at all.  Google doesnt find the images by browsing through folder access they find them through links on the pages themselves which would still work fine.]]></description>
			<content:encoded><![CDATA[<p>Daniel that should not be a problem at all.  Google doesnt find the images by browsing through folder access they find them through links on the pages themselves which would still work fine.</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: Daniel		</title>
		<link>https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-278330</link>

		<dc:creator><![CDATA[Daniel]]></dc:creator>
		<pubDate>Fri, 18 Jan 2008 12:44:32 +0000</pubDate>
		<guid isPermaLink="false">https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-278330</guid>

					<description><![CDATA[I wonder if you can specify IP ranges for tip number 1. This would solve the problem for people with dynamic IP addresses.

Well, you would still be vulnerable to people close to your IP class, but that reduces the risk greatly already.]]></description>
			<content:encoded><![CDATA[<p>I wonder if you can specify IP ranges for tip number 1. This would solve the problem for people with dynamic IP addresses.</p>
<p>Well, you would still be vulnerable to people close to your IP class, but that reduces the risk greatly already.</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: Daniel		</title>
		<link>https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-278329</link>

		<dc:creator><![CDATA[Daniel]]></dc:creator>
		<pubDate>Fri, 18 Jan 2008 12:42:03 +0000</pubDate>
		<guid isPermaLink="false">https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-278329</guid>

					<description><![CDATA[Jaan, yeah that is another option. I wonder if this would mess up people visiting single images via Google Image search though.]]></description>
			<content:encoded><![CDATA[<p>Jaan, yeah that is another option. I wonder if this would mess up people visiting single images via Google Image search though.</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: Jaan Kanellis		</title>
		<link>https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-278326</link>

		<dc:creator><![CDATA[Jaan Kanellis]]></dc:creator>
		<pubDate>Fri, 18 Jan 2008 12:37:59 +0000</pubDate>
		<guid isPermaLink="false">https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-278326</guid>

					<description><![CDATA[Browsing access that is.]]></description>
			<content:encoded><![CDATA[<p>Browsing access that is.</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: Jaan Kanellis		</title>
		<link>https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-278325</link>

		<dc:creator><![CDATA[Jaan Kanellis]]></dc:creator>
		<pubDate>Fri, 18 Jan 2008 12:37:37 +0000</pubDate>
		<guid isPermaLink="false">https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-278325</guid>

					<description><![CDATA[For #2 you should be blocking the content access in all folders through your htaccess file.]]></description>
			<content:encoded><![CDATA[<p>For #2 you should be blocking the content access in all folders through your htaccess file.</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: David Zemens - 1955 Design		</title>
		<link>https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-278324</link>

		<dc:creator><![CDATA[David Zemens - 1955 Design]]></dc:creator>
		<pubDate>Fri, 18 Jan 2008 12:33:46 +0000</pubDate>
		<guid isPermaLink="false">https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-278324</guid>

					<description><![CDATA[Great tips.  Without a static IP address tip #1 is difficult to implement.  I already made the change you suggested in tip #2, but added a bit of an informational message to the index.php file that I dropped into the plugin folder.]]></description>
			<content:encoded><![CDATA[<p>Great tips.  Without a static IP address tip #1 is difficult to implement.  I already made the change you suggested in tip #2, but added a bit of an informational message to the index.php file that I dropped into the plugin folder.</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: Colourblogger		</title>
		<link>https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-278300</link>

		<dc:creator><![CDATA[Colourblogger]]></dc:creator>
		<pubDate>Fri, 18 Jan 2008 12:11:36 +0000</pubDate>
		<guid isPermaLink="false">https://dailyblogtips.com/3-must-apply-security-tips-for-wordpress/#comment-278300</guid>

					<description><![CDATA[Good point! I never understand whay bloggers talk so freely about they installed plugins.]]></description>
			<content:encoded><![CDATA[<p>Good point! I never understand whay bloggers talk so freely about they installed plugins.</p>
]]></content:encoded>
		
			</item>
	</channel>
</rss>
