Home » Blogging, Downloads

Top 5 Plugins to Protect Your Wordpress Blog

9 November 2008 1,220 views 8 Comments

As a blogger, you can’t just post your articles daily and that’s it. You also need to think about the security of your wodpress blog. There are many hackers out there who will try their best to sneak in to your blog. Some do it for fun, some do it to profit. I have collected here some of the most available and reliable WordPress security plugins that will help you do the job 24/7. Hackers don’t sleep so should your security helpers.

1. Login Lockdown

In a number of instances, hackers will try to login to your wordpress blog using different logins and password. Some of these attempts more often are unsuccessfull. With the login lockdown plugin, you can see there is such an attempt to your wordpress blog. Login Lockdown will record the IP address of every failed login attempt. If more than a certain number of attempts are detected within a short period of time from the same IP range, then the login function is disabled for all requests from that range. Currently the plugin defaults to a 1 hour lock out of an IP block after 3 failed login attempts within 5 minutes. This plugin has lots of options panel so you can modify it to work the way you want.

Version: 1.2
Wordpress Compatibility: 2.5 or higher

http://www.wisecrunch.com/wp-content/plugins/downloads-manager/img/icons/winzip.gif download: Login Lockdown v1.2 (10.26KB)
added: 09/11/2008
clicks: 2061
description: Login Lockdown will record the IP address of every failed login attempt.

2. AskApache Password Protect

This one adds a serious password protection to your WordPress blog. It not only protect your wp-admin directory, but also your wp-includes, wp-content, plugins, etc. The plugin also adds up a 2nd layer of security to your blog by requiring a username and password to access anything in the wp-admin folder.

The power of this plugin is that it creates a virtual wall around your blog allowing it to stop attacks before they even reach your blog to deliver a malicious payload. In addition, this plugin also has the capability to block spam with a resounding slap, saving CPU, Memory, and Database resources.

It’s simple to use, just choose a username and password and your done. It writes the .htaccess file, without messing it up. It also encrypts your password and creates the .htpasswd file, as well as setting the correct security-enhanced file permissions on both.

Version: 4.6.5
Wordpress Compatibility: 2.5 or higher

http://www.wisecrunch.com/wp-content/plugins/downloads-manager/img/icons/winzip.gif download: AskApache Password Protect (94.44KB)
added: 09/11/2008
clicks: 379
description: The plugin also adds up a 2nd layer of security to your blog by requiring a username and password to access anything in the wp-admin folder.

3. WP Security Scan

This plugin scans your WodPress installation for security vulnerabilities and suggests corrective actions on the following:

* passwords
* file permissions
* database security
* version hiding
* WordPress admin protection/security
* removes WP Generator META tag from core code

Version: 2.3
Wordpress Compatibility: 2.3 or higher

http://www.wisecrunch.com/wp-content/plugins/downloads-manager/img/icons/winzip.gif download: WP Security Scan (69.17KB)
added: 09/11/2008
clicks: 395
description: Scans your WordPress installation for security vulnerabilities and suggests corrective actions.

4. WP Blogsecurify Wordpress Security Plugin

This security plugin is designed to integrate several simple but important security patches to your wordpress installation. This protects your blog by:

* Forcing users to login over a secure communication channel.
* Protecting session identifiers from incidental session leaks.
* It hides database errors which could be caused by a malfunctioning plugin.
* Protecting the entire user session from session-hijacking attacks.

Version 1.0

http://www.wisecrunch.com/wp-content/plugins/downloads-manager/img/icons/winzip.gif download: WP Blogsecurify (2.48KB)
added: 09/11/2008
clicks: 370
description: Designed to integrate several simple but important security patches to your wordpress installation.

5. Replace WP-Version

A lot of bloggers are not upgrading. It’s hardwork and take a lot of time. So if you are running on an older version of WordPress, anyone can view source to see what attacks might work against your blog. This plugin eliminates or replace your wp-version and database-version very easily.

Version: 1.0
Wordpress Compatibility: 1.5 or higher

http://www.wisecrunch.com/wp-content/plugins/downloads-manager/img/icons/winzip.gif download: Replace WP-Version (1.64KB)
added: 09/11/2008
clicks: 386
description: This plugin eliminates or replace your wp-version and database-version very easily.

If you wish to get more updates on what you have just read above, please enter your email address:

1 Star2 Stars3 Stars4 Stars5 Stars (No Ratings Yet)
Loading ... Loading ...

Related Posts


8 Comments »

  • Jehzeel Laurente said:

    I tried askapache password protect plugin and had a problem with it. It really secures your wordpress blog, even I can’t login anymore, because my wp-admin turned 404. The only way to revert is install a new wordpress blog :D

  • Timekeeper said:

    I very liked this post. Can I copy it to my blog?
    Thanks in advance.

    Sincerely, Timur Alhimenkov.

  • fedhz said:

    Does wordpress really need protecting that much? As long as you keep up with the releases you should be ok.

    Not like the phpnuke CMS which used to get exploited every couple of weeks.

  • Paulo Martirez (author) said:

    Hi, fedhz! How are you?

    I believe Wordpress is getting more secured nowadays but its always a good thing to get additional security just to be sure. Its a nice way to give hackers a scratch on their head. Hehehe…

  • test said:

    Excellent blog was very useful……

  • Suzie said:

    I too would like to share this with my readers. Thanks for the great post!

  • Suzie said:

    How come I keep getting this pop up. “The site at google-analystics.com has been reported as an attack site and has been blocked based on your security preferences.”

  • 6 New Tips To Secure Your Wordpress Blog | WiseCrunch said:

    [...] See also Top 5 Plugins to Protect Your Wordpress Blog [...]

Leave your response!

Add your comment below, or trackback from your own site. You can also subscribe to these comments via RSS.

Be nice. Keep it clean. Stay on topic. No spam.

You can use these tags:
<a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <strike> <strong>

This is a Gravatar-enabled weblog. To get your own globally-recognized-avatar, please register at Gravatar.