In recent weeks, it has come to light that there is an ongoing, highly distributed effort to attack Wordpress websites with poorly secured administrator passwords. This attack is highly organised, using over 90,000 IP addresses in an attempt to guess the administrator password for WordPress sites. We are aware of these efforts and are deploying a series of counter-measures to protect our customers against this effort. We do, however, encourage our customers to take steps to ensure their WordPress sites aren’t compromised due to weak or insecure passwords. The following are several ways customers can further protect their WordPress sites: WordPress BulletProof Security Plugin The WordPress BulletProof Security Plugin is a free, multi-purpose security tool for WordPress intended to protect your WordPress site against a variety of security attacks. This tool is installed like any other WordPress plugin and provides a number of tools customers can use to improve the security of their site. If you are interested, you can find more details about the plugin at http://wordpress.org/extend/plugins/bulletproof-security/ WordPress Better WP Security Plugin Another alternative plugin for WordPress, “Better wordpress security” provides extra features, and security measures which are widely used, and provides it in a single plugin which is easy to manage, and provides many methods for protection. If you are interested, you can find more details about the plugin at http://wordpress.org/extend/plugins/better-wp-security/ Deny Access to your wp-login.php Page based on Country Code Another method, which can assist, is by utilizing a rewrite which would deny access to your websites….











