Good to see you're not throwing in the towel on WordPress. As far as open source CMSes go, it far and away my favorite.
A lot of the WordPress security plugins out there are the shits but you might want to take a look at WordFence for future use. It does a ton of stuff but, most importantly, it scans all core/theme/plugin files and compares them against the WordPress repository for modifications. It's hard to stop a hit and run exploit/injection/attack but WordFence at least gives you a fighting chance.
|