pt>

Subscribe to RSS | 250 801 5401 | [email protected]  | Your Account

  • Home
  • About
  • Services
BlueBird Business Consulting
  • Blog
  • Store
  • Contact

Why and How To Choose A Secure Password For Your (WordPress) Website

April 21, 2013  |  By Frithjof In Social Media, Websites
3 Shares
Share
Tweet1
Share
Pin
+12
Stumble

If you follow my weekly “Best Blog Post” series you have seen many scary reports about an increasing wave of brute force attacks on WordPress sites. These report are strong reminders to secure our accounts with a good, secure password.

At any given time I’m helping several website owners taking charge of their website or helping to fix errors and I am amazed by the number of websites that don’t have the most basic security and SEO functionality installed or activated. And what is even more surprising is that most of those are not set up by hobby bloggers but purchased from developers.

Ok, I’ll stop ranting 🙂

Bottom Line: Stop using “admin” and weak passwords!

For WordPress the easiest way to do this is to create a new account with administrator rights, associate your posts with the new account and delete “admin” as a user.

If you don’t want to deal with all that back-end stuff, contact your webmaster or…send me an email

But what is behind all of these scary reports?

In cases like these I like to contact my trusty network of helpers and my friend Cate Eales of Computer Care Kelowna happens to have a lifetime of experience in computer and network security. Cate operates a mobile computer business, Computer Care Kelowna, providing on-site service for home and business customers. Her weekly column, “Getting Along With Your Computer” appears Mondays on castanet.net. The column archive is available any time at the column archive.

First I asked Cate to explain what all the fuss is really about:

  • What is a brute force attack?
  • What is a “bot-net”?
  • How do hackers get my passoword?

Brian Krebs is a well-known security expert, and I got some of the information from this blog post: http://krebsonsecurity.com/2013/04/brute-force-attacks-build-wordpress-botnet/.

One things I like about Cate’s advice is that she does have well founded suggestions for what to do.

(apologies for the first 1.5 minutes of silence - you can drag the little number to forward)

Summary:

  • Create a strong password
  • Use a login that is not a common login
  • What a strong password really is
  • Don’t use a word that can be easily guessed
  • The best way to create a password is using a phrase

You want to use these strong passwords and you want to be able to remember them

Ways to remember:

  • Keepass
  • LastPass
  • Roboform
  • 1Password
  • Word / Excel file
  • Pencil & Paper but no sticky note 🙂

What account name should you use instead of admin.

Willie Sutton Wikipedia
image: Wikipedia

Sutton is known, albeit apocryphally, for the urban legend that he said that he robbed banks “because that’s where the money is.” ~Wikipedia

Here are more valuable resources Cate shared with me:

  • The Sucuri Blog is here: http://blog.sucuri.net/.
  • If you ever want to check your (WordPress) site to see if it’s serving up malware or blacklisted, try the (free) SiteCheck API here: http://sucuri.net/services/sucuri-sitecheck-api.  It’s awesome.
  • I drew heavily from a blog post about the Brute Force timeline here: http://blog.sucuri.net/2013/04/the-wordpress-brute-force-attack-timeline.html.
Password Diagram Cate Eales
Image rights: Cate Eales

[hr]

 

  • Bio
  • Twitter
  • Facebook
  • LinkedIn
  • Latest Posts
Frithjof

Frithjof

I am the the founder of BlueBird Business Consulting (formerly Tweet4Ok). My focus is on Social Media strategy and education. My blog covers topics ranging from how-to social media posts to more general topics of concern for a rapidly changing digital world. Favourite quote: “To succeed in the business of the future we have to become the very people we are trying to reach” ~ Brian Solis
Frithjof

@bluebirdbc

Digital strategist / #SocialMedia coach, blogger, and speaker / Community manager. Oh, and I fix #WordPress websites.
How to us #Twitter as a #research tool via @SurveyRock https://t.co/Elyirg5jxD #SocialMedia #Marketing - 2 hours ago
Frithjof
Frithjof
Frithjof

Latest posts by Frithjof (see all)

  • What is Organic Reach - BlueBird Dictionary - July 5, 2016
  • BlueBird Dictionary Posts - July 5, 2016
  • My Interview with Sean Smith - June 29, 2016
3 Shares
Share
Tweet1
Share
Pin
+12
Stumble
Previous StoryUse a Badge on Your Profile to Support Your Cause!
Next StoryCreate and Connect: How One Artist Uses Instagram

Related Articles

  • Ostrich approach to social media
    Social Media Adoption, Challenges for Organizations
    View Details
  • It's a trap
    4 Things to Consider Before Choosing a Free Website
    View Details

2 replies added

  1. Joel April 25, 2013 Reply

    Sites like http://random.pw can help you create a strong, yet memorable password. It even has a password strength checker so you can gauge how strong your passwords are.

    • Frithjof April 25, 2013 Reply

      Thanks for the tip Joel!

Leave your comment Cancel Reply

(will not be shared)

Facebook

Bluebird Business Consulting

Popular Posts

BlueBird Dictionary Posts
Do It Yourself or Hire a Professional For Your Website?
Using Facebook Profiles For Business Means Breaking The Law
My New Year’s Prediction: Sales and Marketing Automation for Small Business
Your Website As A Branding Tool
Should You Cross-Sell Items In Your Online Store?

BlueBird Search

Recent BlueBird Posts

  • What is Organic Reach - BlueBird Dictionary
  • BlueBird Dictionary Posts
  • My Interview with Sean Smith
  • The Day Dexter the Rat Went Viral
  • Algotrithm - BlueBird Dictionary

Google Ads

Featured BlueBird Products

  • Email Boot Camp 30 Day Email Boot Camp $14.50
  • BlueBird Shop Image E-Book: 30 Day Email Boot Camp $7.50
  • WordPress Mechanic BlueBird Mechanic Monthly $35.00
  • BlueBird WordPress Garage WordPress Garage

New posts direct to your email!

Facebook

  • "if you've been trying to build a lasting brand and a meaningful alpha audience, radical honesty is the only way to build trust" ~ @Mark Schaefer - The Content Code
    July 29, 2016
  • Outside of the hates auto-dm on Twitter. What do you think about direct messaging?
    July 29, 2016
Like

Instagram

Follow
  • Terms & Conditions
  • Client Login
  • Contact
Copyright ©2016 BlueBird Business Consulting Kelowna. All Rights Reserved
3 Shares
Share
Tweet1
Share
Pin
+12
Stumble