Welcome to the GoFuckYourself.com - Adult Webmaster Forum forums.

You are currently viewing our boards as a guest which gives you limited access to view most discussions and access our other features. By joining our free community you will have access to post topics, communicate privately with other members (PM), respond to polls, upload content and access many other special features. Registration is fast, simple and absolutely free so please, join our community today!

If you have any problems with the registration process or your account login, please contact us.

Post New Thread Reply

Register GFY Rules Calendar
Go Back   GoFuckYourself.com - Adult Webmaster Forum > >
Discuss what's fucking going on, and which programs are best and worst. One-time "program" announcements from "established" webmasters are allowed.

 
Thread Tools
Old 07-17-2013, 08:17 AM   #1
lakerslive
Confirmed User
 
Industry Role:
Join Date: Aug 2012
Posts: 929
Hiding The Admin URL Via wordpress prevent hackers?

would that help eliminate any hacking?

so my wordpress admin used to be domain.com/wp-admin/

now its domain.com/*******

tnx
lakerslive is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 07-17-2013, 08:19 AM   #2
lucas131
¯\_(ツ)_/¯
 
Industry Role:
Join Date: Aug 2004
Posts: 11,475
why you posted the new url here?
lucas131 is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 07-17-2013, 08:21 AM   #3
Sly
Let's do some business!
 
Sly's Avatar
 
Industry Role:
Join Date: Sep 2004
Location: Austin, TX
Posts: 31,296
You can set up IP restriction for the login page. This way only IP's that you allow will be able to access the login page. Ask your web host how to do this.
__________________
Vacares - Web Hosting, Domains, O365, Security & More - Paxum and BTC Accepted

Windows VPS now available - just $50/mo

Wanted: CCBill pay sites for sale
Sly is online now   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 07-17-2013, 08:27 AM   #4
Fat Panda
Porn is Dead. Move along.
 
Fat Panda's Avatar
 
Industry Role:
Join Date: Aug 2006
Posts: 13,295
htaccess to allow only your ip
Fat Panda is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 07-19-2013, 10:49 AM   #5
fris
Too lazy to set a custom title
 
fris's Avatar
 
Industry Role:
Join Date: Aug 2002
Posts: 55,319
Quote:
Originally Posted by SAC View Post
htaccess to allow only your ip
agreed, plus disable wp-admin for subscribers, redirect users to main.
__________________
Since 1999: 69 Adult Industry awards for Best Hosting Company and professional excellence.


WP Stuff
fris is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 07-19-2013, 11:38 AM   #6
freecartoonporn
Confirmed User
 
freecartoonporn's Avatar
 
Industry Role:
Join Date: Jan 2012
Location: NC
Posts: 7,683
just rename login page.
freecartoonporn is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 07-19-2013, 12:06 PM   #7
tokmansta
Confirmed User
 
Industry Role:
Join Date: Jan 2013
Posts: 566
99% of the time you get fucked by an automatic scanner.

solutions:
-change wp-admin directory
-remove readme.html and licence.txt
-remove the "powered by wordpress" part in the footer
tokmansta is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 07-19-2013, 01:09 PM   #8
Rob
I'm a great bowler.
 
Rob's Avatar
 
Industry Role:
Join Date: Nov 2003
Location: Right Outside of Normal.
Posts: 13,309
Quote:
Originally Posted by tokmansta View Post
99% of the time you get fucked by an automatic scanner.

solutions:
-change wp-admin directory
-remove readme.html and licence.txt
-remove the "powered by wordpress" part in the footer
This. Also utilize .htaccess to allow only your IP and disallow everything else. That should make it pretty secure.
__________________
Rob is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 07-19-2013, 01:27 PM   #9
nexcom28
So Fucking Banned
 
Join Date: Jan 2005
Posts: 3,716
I recommend you make the wp-admin directory an obscure name. There is a tool that will scan like 1000+ different login directorys.
Make it something like wp-pooface and you should be ok.
nexcom28 is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 07-19-2013, 08:32 PM   #10
freecartoonporn
Confirmed User
 
freecartoonporn's Avatar
 
Industry Role:
Join Date: Jan 2012
Location: NC
Posts: 7,683
why not install plugin to lock the fraud logins ?
freecartoonporn is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 07-20-2013, 02:43 AM   #11
NinjaSteve
Too lazy to set a custom title
 
Industry Role:
Join Date: Dec 2003
Posts: 11,089
CyberSEO linked to a plugin a little while ago, but I'm not sure what thread it was. Here's the plugin he mentioned http://codecanyon.net/item/hide-my-w...dpress/4177158
__________________
...
NinjaSteve is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 07-20-2013, 04:28 AM   #12
Ferus
Bye - Left to do stuff
 
Industry Role:
Join Date: Feb 2013
Posts: 4,108
Most hack happes due to plugins with bad security and script weaknesses in WP itself.
Ferus is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 07-20-2013, 04:33 AM   #13
adult-help
Confirmed User
 
Industry Role:
Join Date: Mar 2008
Posts: 2,450
yeah I also limit IP to my IP. It sucks if it changes a lot though.
adult-help is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 07-20-2013, 06:57 AM   #14
scouser
marketer.
 
Industry Role:
Join Date: Aug 2006
Location: bcn
Posts: 2,280
u can stop logins (well, whitelist it against ips). it wont stop all hacks at all (most are plugin ones) but it stops people trying to login and brute force guess pws...

<Files wp-login.php>
order deny,allow
deny from all
allow from 123.123.123.123
allow from 456.789.456.789
</Files>
scouser is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Post New Thread Reply
Go Back   GoFuckYourself.com - Adult Webmaster Forum > >

Bookmarks



Advertising inquiries - marketing at gfy dot com

Contact Admin - Advertise - GFY Rules - Top

©2000-, AI Media Network Inc



Powered by vBulletin
Copyright © 2000- Jelsoft Enterprises Limited.