erzoolander
asked on
Securing Wordpress
So we've got this site that was developed by another company - that we're going to be hosting and doing minor edits on - and it's been giving us headaches ever since we loaded it up. It appears that there's some malware script in it. The other developer has disappeared - and I'm left having to work this out.
After the first intrusion into the site, I did a halfhearted reload where I just reuploaded everything replacing files only if the file sizes were different (figuring that an altered/injected file would have a different file size). That seemed to "fix" it for a bit, but now there's evidence of other intrusions into the site (the header being altered for mobile versions sending you off to porn/etc).
Are there any tips you can give me on how to properly secure a WordPress site? The version is 4.6.
Thanks in advance!
After the first intrusion into the site, I did a halfhearted reload where I just reuploaded everything replacing files only if the file sizes were different (figuring that an altered/injected file would have a different file size). That seemed to "fix" it for a bit, but now there's evidence of other intrusions into the site (the header being altered for mobile versions sending you off to porn/etc).
Are there any tips you can give me on how to properly secure a WordPress site? The version is 4.6.
Thanks in advance!
SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
ASKER CERTIFIED SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
ASKER