SlideShare a Scribd company logo
WORDPRESS
SECURITY & PERFORMANCE
A BEGINNERS GUIDE
Carel Bekker: President/Owner
Copyright & trademark ClickHOST.com
What we’ll cover
2
ClickHOST Overview
WordPress Security tips
WordPress performance tips
Copyright & trademark ClickHOST.com
ClickHOST
Blazing fast & secure Website Hosting based SSD storage
WordPress Hosting
Flex/VPS Hosting
Domain Names
Amazon Web Services Managed Hosting
Free Malware monitoring
Free Premium Spam Filtering
Free Cloudflare WAF
3
Personal Security
Web Hosting
WordPress
Copyright & trademark ClickHOST.com
Personal Security
•Use https access where possible
•Don’t use public (including Starbucks) WiFi
unless you have to.
•Remember your smart phone connects
automatically
•Make sure you use a industrial strength spam
filter like, Gmail or SpamExperts.
6
Copyright & trademark ClickHOST.com
Personal Security
•Use a Password Manager
•LastPass
•Backup!
•Local -TimeMachine
•Cloud - Crashplan
7
Copyright & trademark ClickHOST.com
Backup Basics
8
• What is a backup?
•Reliable recent copy of your website.
•Should be easy to restore from your backup.
• Why should I backup?
•Bad things happen, especially in the WWW = wild, wild west.
• How often & when should I backup?
•Before any major updates to your website
•Before updating WordPress, plugins or themes
•Daily,Weekly, Monthly.
•1-2 different backup copies.
Copyright & trademark ClickHOST.com
Website Security Myths
• 1:Who would want to hack my website
• 2: I will see when my website is hacked
• 3: My website is 100% secure
• 4: My hosting provider will have a backup for me
• 5: I use strong passwords -- I’m ok
9
Copyright & trademark ClickHOST.com 10
Top Tips to
Secure WordPress
Copyright & trademark ClickHOST.com
WordPress Security
• Easy tips:
• Update!
• Limit access to wp-admin.
• Change wp-admin URL.
• Avoid potential cross contamination.
• Delete unused WordPress installations.
• Delete unused themes
• Deactivate and delete unused plugins
• JetPack -> Protect
11
Copyright & trademark ClickHOST.com
WordPress Security
12
• Don’t use admin as your username.
• This is the default when installing
• Almost as bad as using password for your password :)
• How to fix this!
• Create a new administrator user.
• Log out, then log in as the new admin user.
• Delete the old “admin” user.
Copyright & trademark ClickHOST.com
WordPress Security Plugins
• Most include:
• One-click hardening
• File monitoring
• Personal Firewall (IP blocking)
• Install at least one Security plugin
• Sucuri
• iThemes
• Wordfence
• Akismet for spam control
• Tip: Set Alerts only for successful actions. Not failed actions.
13
Copyright & trademark ClickHOST.com
WAF
• WAF:Web Application Firewall
• Sucuri CloudProxy
• Cloudflare
• AWS WAF
• Note:All traffic flows via WAF
14
Copyright & trademark ClickHOST.com 15
WordPress
performance tips
Copyright & trademark ClickHOST.com
WordPress Stack
•To understand WordPress performance, you
need to understand the WordPress stack.
•HTML/PHP
•MYSQL
•Linux
•Which component is the slowest?
•WordPress content is mostly dynamically
generated version static HTML.
16
Copyright & trademark ClickHOST.com
Should I use a CDN?
•What is a CDN?
•Content Deliver Network.
•Requested resources are geographically closer to you.
•Why should you use a CDN?
•Users in different parts of the world.
•Need faster loading.
•Answer: It depends…
17
Copyright & trademark ClickHOST.com
CDNs
•Cloudflare
•Akamai
•MaxCDN
•Amazon Cloudfront
•Great tip: JetPack Photon. Images only.
18
Copyright & trademark ClickHOST.com
Caching
•What is caching?
•Load cached version of HTML from memory.
•Minify Javascript, CSS files — compress & combine.
•Use Basics settings for best performance.
•Plugins:
•W3Total Cache
•SuperCache
•WPRocket
19
Copyright & trademark ClickHOST.com
Easy Performance tips
•Use SSD hosting for fast DB access
•Enabled gzip compression
•Fewer plugins are better
•De-active rarely used plugins.
•Use Lightweight themes or frameworks
•Optimize images: smush.it or compressor.io.
•Use JetPack->Photon image CDN.
•Prevent access to wp-admin — reduces PHP load during brute
force attacks.
20
Copyright & trademark ClickHOST.com
Real Performance - AWS!
21
Copyright & trademark ClickHOST.com
Carel Bekker
President&Owner
carel@clickhost.com
http://www.clickhost.com/
Tel: 404.220.8110
Mobile: 404.216.5201
22

More Related Content

What's hot

Locking down word press
Locking down word pressLocking down word press
Locking down word press
Zachary Russell
 
WordPress.org & Optimizing Security for your WordPress sites
WordPress.org & Optimizing Security for your WordPress sitesWordPress.org & Optimizing Security for your WordPress sites
WordPress.org & Optimizing Security for your WordPress sites
GovLoop
 
A crash course in scaling wordpress
A crash course inscaling wordpress A crash course inscaling wordpress
A crash course in scaling wordpress
GovLoop
 
Getting started with WordPress
Getting started with WordPressGetting started with WordPress
Getting started with WordPress
Kristen Symonds
 
WordPress Security is like a HHAM Sandwich
WordPress Security is like a HHAM SandwichWordPress Security is like a HHAM Sandwich
WordPress Security is like a HHAM Sandwich
Red8 Interactive
 
Battling the WSOD - A Tech Support Tale
Battling the WSOD - A Tech Support TaleBattling the WSOD - A Tech Support Tale
Battling the WSOD - A Tech Support Tale
Kayleigh Thorpe
 
WordPress Security
WordPress SecurityWordPress Security
WordPress Security
Ivan Storck
 
WordPress Security Basics - Melbourne WordPress User Meetup
WordPress Security Basics - Melbourne WordPress User MeetupWordPress Security Basics - Melbourne WordPress User Meetup
WordPress Security Basics - Melbourne WordPress User Meetup
Chris Burgess
 
WordPress Security Implementation Guideline - Presentation for OWASP Romania ...
WordPress Security Implementation Guideline - Presentation for OWASP Romania ...WordPress Security Implementation Guideline - Presentation for OWASP Romania ...
WordPress Security Implementation Guideline - Presentation for OWASP Romania ...
Dan Vasile
 
Ignite - selfhosting WordPress - tips and tricks
Ignite - selfhosting WordPress - tips and tricksIgnite - selfhosting WordPress - tips and tricks
Ignite - selfhosting WordPress - tips and tricks
evilzenscientist
 
Dan Catalin Vasile - Hacking the Wordpress Ecosystem
Dan Catalin Vasile - Hacking the Wordpress EcosystemDan Catalin Vasile - Hacking the Wordpress Ecosystem
Dan Catalin Vasile - Hacking the Wordpress Ecosystem
Dan Vasile
 
Dan Catalin Vasile - Defcamp2013 - Does it pay to be a blackhat hacker
Dan Catalin Vasile - Defcamp2013 - Does it pay to be a blackhat hackerDan Catalin Vasile - Defcamp2013 - Does it pay to be a blackhat hacker
Dan Catalin Vasile - Defcamp2013 - Does it pay to be a blackhat hacker
Dan Vasile
 
WordPress Security WordCamp OC 2013
WordPress Security WordCamp OC 2013WordPress Security WordCamp OC 2013
WordPress Security WordCamp OC 2013
Brad Williams
 
Wordpress vs Google Blogger/ Wampserver
Wordpress vs Google Blogger/ WampserverWordpress vs Google Blogger/ Wampserver
Wordpress vs Google Blogger/ Wampserver
Kshitij Wagle
 
Managing Multisite: Lessons from a Large Network
Managing Multisite: Lessons from a Large NetworkManaging Multisite: Lessons from a Large Network
Managing Multisite: Lessons from a Large Network
William Earnhardt
 
Leeward WordPress Meetup- Caching and Website Speed
Leeward WordPress Meetup- Caching and Website SpeedLeeward WordPress Meetup- Caching and Website Speed
Leeward WordPress Meetup- Caching and Website Speed
Arlen Nagata
 
Protect Your WordPress From The Inside Out
Protect Your WordPress From The Inside OutProtect Your WordPress From The Inside Out
Protect Your WordPress From The Inside Out
SiteGround.com
 
Why wordpress is not completely safe
Why wordpress is not completely safeWhy wordpress is not completely safe
Why wordpress is not completely safe
Brainwork Technologies
 
Hands on workshop on word press
Hands on workshop on word pressHands on workshop on word press
Hands on workshop on word press
Mohammad Shoriful Islam Ronju
 
How to install wordpress
How to install wordpress How to install wordpress
How to install wordpress
Deepanshu Kapoor
 

What's hot (20)

Locking down word press
Locking down word pressLocking down word press
Locking down word press
 
WordPress.org & Optimizing Security for your WordPress sites
WordPress.org & Optimizing Security for your WordPress sitesWordPress.org & Optimizing Security for your WordPress sites
WordPress.org & Optimizing Security for your WordPress sites
 
A crash course in scaling wordpress
A crash course inscaling wordpress A crash course inscaling wordpress
A crash course in scaling wordpress
 
Getting started with WordPress
Getting started with WordPressGetting started with WordPress
Getting started with WordPress
 
WordPress Security is like a HHAM Sandwich
WordPress Security is like a HHAM SandwichWordPress Security is like a HHAM Sandwich
WordPress Security is like a HHAM Sandwich
 
Battling the WSOD - A Tech Support Tale
Battling the WSOD - A Tech Support TaleBattling the WSOD - A Tech Support Tale
Battling the WSOD - A Tech Support Tale
 
WordPress Security
WordPress SecurityWordPress Security
WordPress Security
 
WordPress Security Basics - Melbourne WordPress User Meetup
WordPress Security Basics - Melbourne WordPress User MeetupWordPress Security Basics - Melbourne WordPress User Meetup
WordPress Security Basics - Melbourne WordPress User Meetup
 
WordPress Security Implementation Guideline - Presentation for OWASP Romania ...
WordPress Security Implementation Guideline - Presentation for OWASP Romania ...WordPress Security Implementation Guideline - Presentation for OWASP Romania ...
WordPress Security Implementation Guideline - Presentation for OWASP Romania ...
 
Ignite - selfhosting WordPress - tips and tricks
Ignite - selfhosting WordPress - tips and tricksIgnite - selfhosting WordPress - tips and tricks
Ignite - selfhosting WordPress - tips and tricks
 
Dan Catalin Vasile - Hacking the Wordpress Ecosystem
Dan Catalin Vasile - Hacking the Wordpress EcosystemDan Catalin Vasile - Hacking the Wordpress Ecosystem
Dan Catalin Vasile - Hacking the Wordpress Ecosystem
 
Dan Catalin Vasile - Defcamp2013 - Does it pay to be a blackhat hacker
Dan Catalin Vasile - Defcamp2013 - Does it pay to be a blackhat hackerDan Catalin Vasile - Defcamp2013 - Does it pay to be a blackhat hacker
Dan Catalin Vasile - Defcamp2013 - Does it pay to be a blackhat hacker
 
WordPress Security WordCamp OC 2013
WordPress Security WordCamp OC 2013WordPress Security WordCamp OC 2013
WordPress Security WordCamp OC 2013
 
Wordpress vs Google Blogger/ Wampserver
Wordpress vs Google Blogger/ WampserverWordpress vs Google Blogger/ Wampserver
Wordpress vs Google Blogger/ Wampserver
 
Managing Multisite: Lessons from a Large Network
Managing Multisite: Lessons from a Large NetworkManaging Multisite: Lessons from a Large Network
Managing Multisite: Lessons from a Large Network
 
Leeward WordPress Meetup- Caching and Website Speed
Leeward WordPress Meetup- Caching and Website SpeedLeeward WordPress Meetup- Caching and Website Speed
Leeward WordPress Meetup- Caching and Website Speed
 
Protect Your WordPress From The Inside Out
Protect Your WordPress From The Inside OutProtect Your WordPress From The Inside Out
Protect Your WordPress From The Inside Out
 
Why wordpress is not completely safe
Why wordpress is not completely safeWhy wordpress is not completely safe
Why wordpress is not completely safe
 
Hands on workshop on word press
Hands on workshop on word pressHands on workshop on word press
Hands on workshop on word press
 
How to install wordpress
How to install wordpress How to install wordpress
How to install wordpress
 

Viewers also liked

Jepang
JepangJepang
EXTENDING THE CLOTHESLINE (EDITED FOR CONTENT)
EXTENDING THE CLOTHESLINE (EDITED FOR CONTENT)EXTENDING THE CLOTHESLINE (EDITED FOR CONTENT)
EXTENDING THE CLOTHESLINE (EDITED FOR CONTENT)
Tim Lotito
 
DIGITAL MARKETING MATTERS / AAF IC:CR Education Day 2015
DIGITAL MARKETING MATTERS / AAF IC:CR Education Day 2015DIGITAL MARKETING MATTERS / AAF IC:CR Education Day 2015
DIGITAL MARKETING MATTERS / AAF IC:CR Education Day 2015
Joshua McNary
 
Gli Ebrei
Gli EbreiGli Ebrei
Gli Ebrei
elena
 
Breathing Apparatus Training.
Breathing Apparatus Training.Breathing Apparatus Training.
Breathing Apparatus Training.
A.k.M Salauddin
 
Smell and taste 4º
Smell and taste 4ºSmell and taste 4º
Smell and taste 4º
María González Bueno
 
Gli Ebrei
Gli EbreiGli Ebrei
Gli Ebrei
elena
 
The best tools to make things happen
The best tools to make things happenThe best tools to make things happen
The best tools to make things happen
Mickey Mellen
 
Understanding history
Understanding historyUnderstanding history
Understanding history
Dr. Sopan Shende
 
TelyCam Product Line
TelyCam Product LineTelyCam Product Line
TelyCam Product Line
VideoConferenceGear.com
 
Interneta un TV operatoru salīdzinājums
Interneta un TV operatoru salīdzinājumsInterneta un TV operatoru salīdzinājums
Interneta un TV operatoru salīdzinājumsJurisZ
 
세월호 기자회견 자료(2016.7.7)
세월호 기자회견 자료(2016.7.7)세월호 기자회견 자료(2016.7.7)
세월호 기자회견 자료(2016.7.7)
humandasan
 
B-to-B (B2B) engagement in digital marketing
B-to-B (B2B) engagement in digital marketingB-to-B (B2B) engagement in digital marketing
B-to-B (B2B) engagement in digital marketing
Winnie Ng
 
PASIÓN POR EL TRABAJO & ACTITUD
PASIÓN POR EL TRABAJO & ACTITUDPASIÓN POR EL TRABAJO & ACTITUD
PASIÓN POR EL TRABAJO & ACTITUD
Christopher Landauro
 
урок по химии 2
урок по химии 2урок по химии 2
El factor motivacional, etica profecional
El factor motivacional, etica profecionalEl factor motivacional, etica profecional
El factor motivacional, etica profecional
david arturo lopez guerrero
 

Viewers also liked (16)

Jepang
JepangJepang
Jepang
 
EXTENDING THE CLOTHESLINE (EDITED FOR CONTENT)
EXTENDING THE CLOTHESLINE (EDITED FOR CONTENT)EXTENDING THE CLOTHESLINE (EDITED FOR CONTENT)
EXTENDING THE CLOTHESLINE (EDITED FOR CONTENT)
 
DIGITAL MARKETING MATTERS / AAF IC:CR Education Day 2015
DIGITAL MARKETING MATTERS / AAF IC:CR Education Day 2015DIGITAL MARKETING MATTERS / AAF IC:CR Education Day 2015
DIGITAL MARKETING MATTERS / AAF IC:CR Education Day 2015
 
Gli Ebrei
Gli EbreiGli Ebrei
Gli Ebrei
 
Breathing Apparatus Training.
Breathing Apparatus Training.Breathing Apparatus Training.
Breathing Apparatus Training.
 
Smell and taste 4º
Smell and taste 4ºSmell and taste 4º
Smell and taste 4º
 
Gli Ebrei
Gli EbreiGli Ebrei
Gli Ebrei
 
The best tools to make things happen
The best tools to make things happenThe best tools to make things happen
The best tools to make things happen
 
Understanding history
Understanding historyUnderstanding history
Understanding history
 
TelyCam Product Line
TelyCam Product LineTelyCam Product Line
TelyCam Product Line
 
Interneta un TV operatoru salīdzinājums
Interneta un TV operatoru salīdzinājumsInterneta un TV operatoru salīdzinājums
Interneta un TV operatoru salīdzinājums
 
세월호 기자회견 자료(2016.7.7)
세월호 기자회견 자료(2016.7.7)세월호 기자회견 자료(2016.7.7)
세월호 기자회견 자료(2016.7.7)
 
B-to-B (B2B) engagement in digital marketing
B-to-B (B2B) engagement in digital marketingB-to-B (B2B) engagement in digital marketing
B-to-B (B2B) engagement in digital marketing
 
PASIÓN POR EL TRABAJO & ACTITUD
PASIÓN POR EL TRABAJO & ACTITUDPASIÓN POR EL TRABAJO & ACTITUD
PASIÓN POR EL TRABAJO & ACTITUD
 
урок по химии 2
урок по химии 2урок по химии 2
урок по химии 2
 
El factor motivacional, etica profecional
El factor motivacional, etica profecionalEl factor motivacional, etica profecional
El factor motivacional, etica profecional
 

Similar to WordPress security & performance a beginners guide

WordPress Security - WordPress Meetup Copenhagen 2013
WordPress Security - WordPress Meetup Copenhagen 2013WordPress Security - WordPress Meetup Copenhagen 2013
WordPress Security - WordPress Meetup Copenhagen 2013
Thor Kristiansen
 
20 tips to Improving Your WordPress Site...for Beginners
20 tips to Improving Your WordPress Site...for Beginners20 tips to Improving Your WordPress Site...for Beginners
20 tips to Improving Your WordPress Site...for Beginners
TRB Design, Inc.
 
WordPress End-User Security
WordPress End-User SecurityWordPress End-User Security
WordPress End-User Security
Dre Armeda
 
Introduction to WordPress Security
Introduction to WordPress SecurityIntroduction to WordPress Security
Introduction to WordPress Security
Nile Flores
 
Getting started with wordpress hosting and security
Getting started with wordpress hosting and securityGetting started with wordpress hosting and security
Getting started with wordpress hosting and security
WP Pittsburgh Meetup Group
 
WordPress Resources Nov 2014
WordPress Resources Nov 2014WordPress Resources Nov 2014
WordPress Resources Nov 2014
Judy Wilson
 
Top Ten WordPress Security Tips for 2012
Top Ten WordPress Security Tips for 2012Top Ten WordPress Security Tips for 2012
Top Ten WordPress Security Tips for 2012
Brad Williams
 
Up and Running with WordPress - Site Shack Nashville Web Design
Up and Running with WordPress - Site Shack Nashville Web DesignUp and Running with WordPress - Site Shack Nashville Web Design
Up and Running with WordPress - Site Shack Nashville Web Design
Judy Wilson
 
Higher Order WordPress Security
Higher Order WordPress SecurityHigher Order WordPress Security
Higher Order WordPress Security
Dougal Campbell
 
WordPress Plugins and Security
WordPress Plugins and SecurityWordPress Plugins and Security
WordPress Plugins and Security
Think Media Inc.
 
WordPress Security and Best Practices
WordPress Security and Best PracticesWordPress Security and Best Practices
WordPress Security and Best Practices
Robert Vidal
 
Joomla! security jday2015
Joomla! security jday2015Joomla! security jday2015
Joomla! security jday2015
kriptonium
 
Joomla! security jday2015
Joomla! security jday2015Joomla! security jday2015
Joomla! security jday2015
Shaiffulnizam Mohamad
 
The moment my site got hacked
The moment my site got hackedThe moment my site got hacked
The moment my site got hacked
Marko Heijnen
 
WordCamp Boston WordPress plugins-8-2014
WordCamp Boston WordPress plugins-8-2014WordCamp Boston WordPress plugins-8-2014
WordCamp Boston WordPress plugins-8-2014
The Toolbox, Inc.
 
CollabSphere SC 103 : Domino on the Web : Yes, It's (Probably) Hackable
CollabSphere SC 103 : Domino on the Web : Yes, It's (Probably) HackableCollabSphere SC 103 : Domino on the Web : Yes, It's (Probably) Hackable
CollabSphere SC 103 : Domino on the Web : Yes, It's (Probably) Hackable
Darren Duke
 
OWASP Thailand 2016 - Joomla Security
OWASP Thailand 2016 - Joomla Security OWASP Thailand 2016 - Joomla Security
OWASP Thailand 2016 - Joomla Security
Akarawuth Tamrareang
 
How secure is WordPress ?
How secure is WordPress ?How secure is WordPress ?
How secure is WordPress ?
Er. Narayan Koirala
 
How to create a WordPress Site
How to create a WordPress Site How to create a WordPress Site
How to create a WordPress Site
MuhammadUsaid2
 
Securing the cloud
Securing the cloudSecuring the cloud
Securing the cloud
ZIONSECURITY
 

Similar to WordPress security & performance a beginners guide (20)

WordPress Security - WordPress Meetup Copenhagen 2013
WordPress Security - WordPress Meetup Copenhagen 2013WordPress Security - WordPress Meetup Copenhagen 2013
WordPress Security - WordPress Meetup Copenhagen 2013
 
20 tips to Improving Your WordPress Site...for Beginners
20 tips to Improving Your WordPress Site...for Beginners20 tips to Improving Your WordPress Site...for Beginners
20 tips to Improving Your WordPress Site...for Beginners
 
WordPress End-User Security
WordPress End-User SecurityWordPress End-User Security
WordPress End-User Security
 
Introduction to WordPress Security
Introduction to WordPress SecurityIntroduction to WordPress Security
Introduction to WordPress Security
 
Getting started with wordpress hosting and security
Getting started with wordpress hosting and securityGetting started with wordpress hosting and security
Getting started with wordpress hosting and security
 
WordPress Resources Nov 2014
WordPress Resources Nov 2014WordPress Resources Nov 2014
WordPress Resources Nov 2014
 
Top Ten WordPress Security Tips for 2012
Top Ten WordPress Security Tips for 2012Top Ten WordPress Security Tips for 2012
Top Ten WordPress Security Tips for 2012
 
Up and Running with WordPress - Site Shack Nashville Web Design
Up and Running with WordPress - Site Shack Nashville Web DesignUp and Running with WordPress - Site Shack Nashville Web Design
Up and Running with WordPress - Site Shack Nashville Web Design
 
Higher Order WordPress Security
Higher Order WordPress SecurityHigher Order WordPress Security
Higher Order WordPress Security
 
WordPress Plugins and Security
WordPress Plugins and SecurityWordPress Plugins and Security
WordPress Plugins and Security
 
WordPress Security and Best Practices
WordPress Security and Best PracticesWordPress Security and Best Practices
WordPress Security and Best Practices
 
Joomla! security jday2015
Joomla! security jday2015Joomla! security jday2015
Joomla! security jday2015
 
Joomla! security jday2015
Joomla! security jday2015Joomla! security jday2015
Joomla! security jday2015
 
The moment my site got hacked
The moment my site got hackedThe moment my site got hacked
The moment my site got hacked
 
WordCamp Boston WordPress plugins-8-2014
WordCamp Boston WordPress plugins-8-2014WordCamp Boston WordPress plugins-8-2014
WordCamp Boston WordPress plugins-8-2014
 
CollabSphere SC 103 : Domino on the Web : Yes, It's (Probably) Hackable
CollabSphere SC 103 : Domino on the Web : Yes, It's (Probably) HackableCollabSphere SC 103 : Domino on the Web : Yes, It's (Probably) Hackable
CollabSphere SC 103 : Domino on the Web : Yes, It's (Probably) Hackable
 
OWASP Thailand 2016 - Joomla Security
OWASP Thailand 2016 - Joomla Security OWASP Thailand 2016 - Joomla Security
OWASP Thailand 2016 - Joomla Security
 
How secure is WordPress ?
How secure is WordPress ?How secure is WordPress ?
How secure is WordPress ?
 
How to create a WordPress Site
How to create a WordPress Site How to create a WordPress Site
How to create a WordPress Site
 
Securing the cloud
Securing the cloudSecuring the cloud
Securing the cloud
 

More from Mickey Mellen

A Brighter Web: Finding new clients for your business
A Brighter Web: Finding new clients for your businessA Brighter Web: Finding new clients for your business
A Brighter Web: Finding new clients for your business
Mickey Mellen
 
Website Accessibility: Help your users, help your rankings
Website Accessibility: Help your users, help your rankingsWebsite Accessibility: Help your users, help your rankings
Website Accessibility: Help your users, help your rankings
Mickey Mellen
 
Woodstock WordPress Meetup
Woodstock WordPress MeetupWoodstock WordPress Meetup
Woodstock WordPress Meetup
Mickey Mellen
 
Scorecard metrics to watch
Scorecard metrics to watchScorecard metrics to watch
Scorecard metrics to watch
Mickey Mellen
 
Time is money, so use some of these tools to have more of both
Time is money, so use some of these tools to have more of bothTime is money, so use some of these tools to have more of both
Time is money, so use some of these tools to have more of both
Mickey Mellen
 
Planning For A Great 2020
Planning For A Great 2020Planning For A Great 2020
Planning For A Great 2020
Mickey Mellen
 
Tools and Plugins to Help Get More Done and Stay Sane
Tools and Plugins to Help Get More Done and Stay SaneTools and Plugins to Help Get More Done and Stay Sane
Tools and Plugins to Help Get More Done and Stay Sane
Mickey Mellen
 
Googles Latest Changes, WordCamp Atlanta 2019
Googles Latest Changes, WordCamp Atlanta 2019Googles Latest Changes, WordCamp Atlanta 2019
Googles Latest Changes, WordCamp Atlanta 2019
Mickey Mellen
 
Grow your business by gaining, pursuing and closing leads the right way
Grow your business by gaining, pursuing and closing leads the right wayGrow your business by gaining, pursuing and closing leads the right way
Grow your business by gaining, pursuing and closing leads the right way
Mickey Mellen
 
Meetup: Optimizing your Site for Better SEO, Better Speed, and More Conversions
Meetup: Optimizing your Site for Better SEO, Better Speed, and More ConversionsMeetup: Optimizing your Site for Better SEO, Better Speed, and More Conversions
Meetup: Optimizing your Site for Better SEO, Better Speed, and More Conversions
Mickey Mellen
 
Google AdWords - An Inside Look At The World's Most Powerful Online Ad Platform
Google AdWords - An Inside Look At The World's Most Powerful Online Ad PlatformGoogle AdWords - An Inside Look At The World's Most Powerful Online Ad Platform
Google AdWords - An Inside Look At The World's Most Powerful Online Ad Platform
Mickey Mellen
 
GDPR: Keep Your Website Out of Legal Trouble
GDPR: Keep Your Website Out of Legal TroubleGDPR: Keep Your Website Out of Legal Trouble
GDPR: Keep Your Website Out of Legal Trouble
Mickey Mellen
 
A Brighter Web Meetup: Our Favorite WordPress Plugins and Tools
A Brighter Web Meetup: Our Favorite WordPress Plugins and ToolsA Brighter Web Meetup: Our Favorite WordPress Plugins and Tools
A Brighter Web Meetup: Our Favorite WordPress Plugins and Tools
Mickey Mellen
 
Meetup: Fresh ideas to get your SEO improved and rank higher in Google
Meetup: Fresh ideas to get your SEO improved and rank higher in GoogleMeetup: Fresh ideas to get your SEO improved and rank higher in Google
Meetup: Fresh ideas to get your SEO improved and rank higher in Google
Mickey Mellen
 
Meetup: The big change coming to WordPress in 2018 - Gutenberg
Meetup: The big change coming to WordPress in 2018 - GutenbergMeetup: The big change coming to WordPress in 2018 - Gutenberg
Meetup: The big change coming to WordPress in 2018 - Gutenberg
Mickey Mellen
 
Meetup: Tools to grow your business
Meetup: Tools to grow your businessMeetup: Tools to grow your business
Meetup: Tools to grow your business
Mickey Mellen
 
WordCamp Birmingham 2017 - Blogging strategies for 2018
WordCamp Birmingham 2017 - Blogging strategies for 2018WordCamp Birmingham 2017 - Blogging strategies for 2018
WordCamp Birmingham 2017 - Blogging strategies for 2018
Mickey Mellen
 
Drive Engagement with Sight and Sound
Drive Engagement with Sight and Sound Drive Engagement with Sight and Sound
Drive Engagement with Sight and Sound
Mickey Mellen
 
Staying on Top of the Latest News and Trends
Staying on Top of the Latest News and TrendsStaying on Top of the Latest News and Trends
Staying on Top of the Latest News and Trends
Mickey Mellen
 
Meetup: Psychic SEO Keyword Research
Meetup: Psychic SEO Keyword ResearchMeetup: Psychic SEO Keyword Research
Meetup: Psychic SEO Keyword Research
Mickey Mellen
 

More from Mickey Mellen (20)

A Brighter Web: Finding new clients for your business
A Brighter Web: Finding new clients for your businessA Brighter Web: Finding new clients for your business
A Brighter Web: Finding new clients for your business
 
Website Accessibility: Help your users, help your rankings
Website Accessibility: Help your users, help your rankingsWebsite Accessibility: Help your users, help your rankings
Website Accessibility: Help your users, help your rankings
 
Woodstock WordPress Meetup
Woodstock WordPress MeetupWoodstock WordPress Meetup
Woodstock WordPress Meetup
 
Scorecard metrics to watch
Scorecard metrics to watchScorecard metrics to watch
Scorecard metrics to watch
 
Time is money, so use some of these tools to have more of both
Time is money, so use some of these tools to have more of bothTime is money, so use some of these tools to have more of both
Time is money, so use some of these tools to have more of both
 
Planning For A Great 2020
Planning For A Great 2020Planning For A Great 2020
Planning For A Great 2020
 
Tools and Plugins to Help Get More Done and Stay Sane
Tools and Plugins to Help Get More Done and Stay SaneTools and Plugins to Help Get More Done and Stay Sane
Tools and Plugins to Help Get More Done and Stay Sane
 
Googles Latest Changes, WordCamp Atlanta 2019
Googles Latest Changes, WordCamp Atlanta 2019Googles Latest Changes, WordCamp Atlanta 2019
Googles Latest Changes, WordCamp Atlanta 2019
 
Grow your business by gaining, pursuing and closing leads the right way
Grow your business by gaining, pursuing and closing leads the right wayGrow your business by gaining, pursuing and closing leads the right way
Grow your business by gaining, pursuing and closing leads the right way
 
Meetup: Optimizing your Site for Better SEO, Better Speed, and More Conversions
Meetup: Optimizing your Site for Better SEO, Better Speed, and More ConversionsMeetup: Optimizing your Site for Better SEO, Better Speed, and More Conversions
Meetup: Optimizing your Site for Better SEO, Better Speed, and More Conversions
 
Google AdWords - An Inside Look At The World's Most Powerful Online Ad Platform
Google AdWords - An Inside Look At The World's Most Powerful Online Ad PlatformGoogle AdWords - An Inside Look At The World's Most Powerful Online Ad Platform
Google AdWords - An Inside Look At The World's Most Powerful Online Ad Platform
 
GDPR: Keep Your Website Out of Legal Trouble
GDPR: Keep Your Website Out of Legal TroubleGDPR: Keep Your Website Out of Legal Trouble
GDPR: Keep Your Website Out of Legal Trouble
 
A Brighter Web Meetup: Our Favorite WordPress Plugins and Tools
A Brighter Web Meetup: Our Favorite WordPress Plugins and ToolsA Brighter Web Meetup: Our Favorite WordPress Plugins and Tools
A Brighter Web Meetup: Our Favorite WordPress Plugins and Tools
 
Meetup: Fresh ideas to get your SEO improved and rank higher in Google
Meetup: Fresh ideas to get your SEO improved and rank higher in GoogleMeetup: Fresh ideas to get your SEO improved and rank higher in Google
Meetup: Fresh ideas to get your SEO improved and rank higher in Google
 
Meetup: The big change coming to WordPress in 2018 - Gutenberg
Meetup: The big change coming to WordPress in 2018 - GutenbergMeetup: The big change coming to WordPress in 2018 - Gutenberg
Meetup: The big change coming to WordPress in 2018 - Gutenberg
 
Meetup: Tools to grow your business
Meetup: Tools to grow your businessMeetup: Tools to grow your business
Meetup: Tools to grow your business
 
WordCamp Birmingham 2017 - Blogging strategies for 2018
WordCamp Birmingham 2017 - Blogging strategies for 2018WordCamp Birmingham 2017 - Blogging strategies for 2018
WordCamp Birmingham 2017 - Blogging strategies for 2018
 
Drive Engagement with Sight and Sound
Drive Engagement with Sight and Sound Drive Engagement with Sight and Sound
Drive Engagement with Sight and Sound
 
Staying on Top of the Latest News and Trends
Staying on Top of the Latest News and TrendsStaying on Top of the Latest News and Trends
Staying on Top of the Latest News and Trends
 
Meetup: Psychic SEO Keyword Research
Meetup: Psychic SEO Keyword ResearchMeetup: Psychic SEO Keyword Research
Meetup: Psychic SEO Keyword Research
 

Recently uploaded

The basics of sentences session 6pptx.pptx
The basics of sentences session 6pptx.pptxThe basics of sentences session 6pptx.pptx
The basics of sentences session 6pptx.pptx
heathfieldcps1
 
How to Manage Your Lost Opportunities in Odoo 17 CRM
How to Manage Your Lost Opportunities in Odoo 17 CRMHow to Manage Your Lost Opportunities in Odoo 17 CRM
How to Manage Your Lost Opportunities in Odoo 17 CRM
Celine George
 
S1-Introduction-Biopesticides in ICM.pptx
S1-Introduction-Biopesticides in ICM.pptxS1-Introduction-Biopesticides in ICM.pptx
S1-Introduction-Biopesticides in ICM.pptx
tarandeep35
 
Top five deadliest dog breeds in America
Top five deadliest dog breeds in AmericaTop five deadliest dog breeds in America
Top five deadliest dog breeds in America
Bisnar Chase Personal Injury Attorneys
 
MARY JANE WILSON, A “BOA MÃE” .
MARY JANE WILSON, A “BOA MÃE”           .MARY JANE WILSON, A “BOA MÃE”           .
MARY JANE WILSON, A “BOA MÃE” .
Colégio Santa Teresinha
 
Pollock and Snow "DEIA in the Scholarly Landscape, Session One: Setting Expec...
Pollock and Snow "DEIA in the Scholarly Landscape, Session One: Setting Expec...Pollock and Snow "DEIA in the Scholarly Landscape, Session One: Setting Expec...
Pollock and Snow "DEIA in the Scholarly Landscape, Session One: Setting Expec...
National Information Standards Organization (NISO)
 
What is the purpose of studying mathematics.pptx
What is the purpose of studying mathematics.pptxWhat is the purpose of studying mathematics.pptx
What is the purpose of studying mathematics.pptx
christianmathematics
 
Exploiting Artificial Intelligence for Empowering Researchers and Faculty, In...
Exploiting Artificial Intelligence for Empowering Researchers and Faculty, In...Exploiting Artificial Intelligence for Empowering Researchers and Faculty, In...
Exploiting Artificial Intelligence for Empowering Researchers and Faculty, In...
Dr. Vinod Kumar Kanvaria
 
ANATOMY AND BIOMECHANICS OF HIP JOINT.pdf
ANATOMY AND BIOMECHANICS OF HIP JOINT.pdfANATOMY AND BIOMECHANICS OF HIP JOINT.pdf
ANATOMY AND BIOMECHANICS OF HIP JOINT.pdf
Priyankaranawat4
 
Digital Artefact 1 - Tiny Home Environmental Design
Digital Artefact 1 - Tiny Home Environmental DesignDigital Artefact 1 - Tiny Home Environmental Design
Digital Artefact 1 - Tiny Home Environmental Design
amberjdewit93
 
Your Skill Boost Masterclass: Strategies for Effective Upskilling
Your Skill Boost Masterclass: Strategies for Effective UpskillingYour Skill Boost Masterclass: Strategies for Effective Upskilling
Your Skill Boost Masterclass: Strategies for Effective Upskilling
Excellence Foundation for South Sudan
 
বাংলাদেশ অর্থনৈতিক সমীক্ষা (Economic Review) ২০২৪ UJS App.pdf
বাংলাদেশ অর্থনৈতিক সমীক্ষা (Economic Review) ২০২৪ UJS App.pdfবাংলাদেশ অর্থনৈতিক সমীক্ষা (Economic Review) ২০২৪ UJS App.pdf
বাংলাদেশ অর্থনৈতিক সমীক্ষা (Economic Review) ২০২৪ UJS App.pdf
eBook.com.bd (প্রয়োজনীয় বাংলা বই)
 
A Independência da América Espanhola LAPBOOK.pdf
A Independência da América Espanhola LAPBOOK.pdfA Independência da América Espanhola LAPBOOK.pdf
A Independência da América Espanhola LAPBOOK.pdf
Jean Carlos Nunes Paixão
 
World environment day ppt For 5 June 2024
World environment day ppt For 5 June 2024World environment day ppt For 5 June 2024
World environment day ppt For 5 June 2024
ak6969907
 
Chapter 4 - Islamic Financial Institutions in Malaysia.pptx
Chapter 4 - Islamic Financial Institutions in Malaysia.pptxChapter 4 - Islamic Financial Institutions in Malaysia.pptx
Chapter 4 - Islamic Financial Institutions in Malaysia.pptx
Mohd Adib Abd Muin, Senior Lecturer at Universiti Utara Malaysia
 
Introduction to AI for Nonprofits with Tapp Network
Introduction to AI for Nonprofits with Tapp NetworkIntroduction to AI for Nonprofits with Tapp Network
Introduction to AI for Nonprofits with Tapp Network
TechSoup
 
A Survey of Techniques for Maximizing LLM Performance.pptx
A Survey of Techniques for Maximizing LLM Performance.pptxA Survey of Techniques for Maximizing LLM Performance.pptx
A Survey of Techniques for Maximizing LLM Performance.pptx
thanhdowork
 
Azure Interview Questions and Answers PDF By ScholarHat
Azure Interview Questions and Answers PDF By ScholarHatAzure Interview Questions and Answers PDF By ScholarHat
Azure Interview Questions and Answers PDF By ScholarHat
Scholarhat
 
RPMS TEMPLATE FOR SCHOOL YEAR 2023-2024 FOR TEACHER 1 TO TEACHER 3
RPMS TEMPLATE FOR SCHOOL YEAR 2023-2024 FOR TEACHER 1 TO TEACHER 3RPMS TEMPLATE FOR SCHOOL YEAR 2023-2024 FOR TEACHER 1 TO TEACHER 3
RPMS TEMPLATE FOR SCHOOL YEAR 2023-2024 FOR TEACHER 1 TO TEACHER 3
IreneSebastianRueco1
 
Group Presentation 2 Economics.Ariana Buscigliopptx
Group Presentation 2 Economics.Ariana BuscigliopptxGroup Presentation 2 Economics.Ariana Buscigliopptx
Group Presentation 2 Economics.Ariana Buscigliopptx
ArianaBusciglio
 

Recently uploaded (20)

The basics of sentences session 6pptx.pptx
The basics of sentences session 6pptx.pptxThe basics of sentences session 6pptx.pptx
The basics of sentences session 6pptx.pptx
 
How to Manage Your Lost Opportunities in Odoo 17 CRM
How to Manage Your Lost Opportunities in Odoo 17 CRMHow to Manage Your Lost Opportunities in Odoo 17 CRM
How to Manage Your Lost Opportunities in Odoo 17 CRM
 
S1-Introduction-Biopesticides in ICM.pptx
S1-Introduction-Biopesticides in ICM.pptxS1-Introduction-Biopesticides in ICM.pptx
S1-Introduction-Biopesticides in ICM.pptx
 
Top five deadliest dog breeds in America
Top five deadliest dog breeds in AmericaTop five deadliest dog breeds in America
Top five deadliest dog breeds in America
 
MARY JANE WILSON, A “BOA MÃE” .
MARY JANE WILSON, A “BOA MÃE”           .MARY JANE WILSON, A “BOA MÃE”           .
MARY JANE WILSON, A “BOA MÃE” .
 
Pollock and Snow "DEIA in the Scholarly Landscape, Session One: Setting Expec...
Pollock and Snow "DEIA in the Scholarly Landscape, Session One: Setting Expec...Pollock and Snow "DEIA in the Scholarly Landscape, Session One: Setting Expec...
Pollock and Snow "DEIA in the Scholarly Landscape, Session One: Setting Expec...
 
What is the purpose of studying mathematics.pptx
What is the purpose of studying mathematics.pptxWhat is the purpose of studying mathematics.pptx
What is the purpose of studying mathematics.pptx
 
Exploiting Artificial Intelligence for Empowering Researchers and Faculty, In...
Exploiting Artificial Intelligence for Empowering Researchers and Faculty, In...Exploiting Artificial Intelligence for Empowering Researchers and Faculty, In...
Exploiting Artificial Intelligence for Empowering Researchers and Faculty, In...
 
ANATOMY AND BIOMECHANICS OF HIP JOINT.pdf
ANATOMY AND BIOMECHANICS OF HIP JOINT.pdfANATOMY AND BIOMECHANICS OF HIP JOINT.pdf
ANATOMY AND BIOMECHANICS OF HIP JOINT.pdf
 
Digital Artefact 1 - Tiny Home Environmental Design
Digital Artefact 1 - Tiny Home Environmental DesignDigital Artefact 1 - Tiny Home Environmental Design
Digital Artefact 1 - Tiny Home Environmental Design
 
Your Skill Boost Masterclass: Strategies for Effective Upskilling
Your Skill Boost Masterclass: Strategies for Effective UpskillingYour Skill Boost Masterclass: Strategies for Effective Upskilling
Your Skill Boost Masterclass: Strategies for Effective Upskilling
 
বাংলাদেশ অর্থনৈতিক সমীক্ষা (Economic Review) ২০২৪ UJS App.pdf
বাংলাদেশ অর্থনৈতিক সমীক্ষা (Economic Review) ২০২৪ UJS App.pdfবাংলাদেশ অর্থনৈতিক সমীক্ষা (Economic Review) ২০২৪ UJS App.pdf
বাংলাদেশ অর্থনৈতিক সমীক্ষা (Economic Review) ২০২৪ UJS App.pdf
 
A Independência da América Espanhola LAPBOOK.pdf
A Independência da América Espanhola LAPBOOK.pdfA Independência da América Espanhola LAPBOOK.pdf
A Independência da América Espanhola LAPBOOK.pdf
 
World environment day ppt For 5 June 2024
World environment day ppt For 5 June 2024World environment day ppt For 5 June 2024
World environment day ppt For 5 June 2024
 
Chapter 4 - Islamic Financial Institutions in Malaysia.pptx
Chapter 4 - Islamic Financial Institutions in Malaysia.pptxChapter 4 - Islamic Financial Institutions in Malaysia.pptx
Chapter 4 - Islamic Financial Institutions in Malaysia.pptx
 
Introduction to AI for Nonprofits with Tapp Network
Introduction to AI for Nonprofits with Tapp NetworkIntroduction to AI for Nonprofits with Tapp Network
Introduction to AI for Nonprofits with Tapp Network
 
A Survey of Techniques for Maximizing LLM Performance.pptx
A Survey of Techniques for Maximizing LLM Performance.pptxA Survey of Techniques for Maximizing LLM Performance.pptx
A Survey of Techniques for Maximizing LLM Performance.pptx
 
Azure Interview Questions and Answers PDF By ScholarHat
Azure Interview Questions and Answers PDF By ScholarHatAzure Interview Questions and Answers PDF By ScholarHat
Azure Interview Questions and Answers PDF By ScholarHat
 
RPMS TEMPLATE FOR SCHOOL YEAR 2023-2024 FOR TEACHER 1 TO TEACHER 3
RPMS TEMPLATE FOR SCHOOL YEAR 2023-2024 FOR TEACHER 1 TO TEACHER 3RPMS TEMPLATE FOR SCHOOL YEAR 2023-2024 FOR TEACHER 1 TO TEACHER 3
RPMS TEMPLATE FOR SCHOOL YEAR 2023-2024 FOR TEACHER 1 TO TEACHER 3
 
Group Presentation 2 Economics.Ariana Buscigliopptx
Group Presentation 2 Economics.Ariana BuscigliopptxGroup Presentation 2 Economics.Ariana Buscigliopptx
Group Presentation 2 Economics.Ariana Buscigliopptx
 

WordPress security & performance a beginners guide

  • 1. WORDPRESS SECURITY & PERFORMANCE A BEGINNERS GUIDE Carel Bekker: President/Owner
  • 2. Copyright & trademark ClickHOST.com What we’ll cover 2 ClickHOST Overview WordPress Security tips WordPress performance tips
  • 3. Copyright & trademark ClickHOST.com ClickHOST Blazing fast & secure Website Hosting based SSD storage WordPress Hosting Flex/VPS Hosting Domain Names Amazon Web Services Managed Hosting Free Malware monitoring Free Premium Spam Filtering Free Cloudflare WAF 3
  • 4.
  • 6. Copyright & trademark ClickHOST.com Personal Security •Use https access where possible •Don’t use public (including Starbucks) WiFi unless you have to. •Remember your smart phone connects automatically •Make sure you use a industrial strength spam filter like, Gmail or SpamExperts. 6
  • 7. Copyright & trademark ClickHOST.com Personal Security •Use a Password Manager •LastPass •Backup! •Local -TimeMachine •Cloud - Crashplan 7
  • 8. Copyright & trademark ClickHOST.com Backup Basics 8 • What is a backup? •Reliable recent copy of your website. •Should be easy to restore from your backup. • Why should I backup? •Bad things happen, especially in the WWW = wild, wild west. • How often & when should I backup? •Before any major updates to your website •Before updating WordPress, plugins or themes •Daily,Weekly, Monthly. •1-2 different backup copies.
  • 9. Copyright & trademark ClickHOST.com Website Security Myths • 1:Who would want to hack my website • 2: I will see when my website is hacked • 3: My website is 100% secure • 4: My hosting provider will have a backup for me • 5: I use strong passwords -- I’m ok 9
  • 10. Copyright & trademark ClickHOST.com 10 Top Tips to Secure WordPress
  • 11. Copyright & trademark ClickHOST.com WordPress Security • Easy tips: • Update! • Limit access to wp-admin. • Change wp-admin URL. • Avoid potential cross contamination. • Delete unused WordPress installations. • Delete unused themes • Deactivate and delete unused plugins • JetPack -> Protect 11
  • 12. Copyright & trademark ClickHOST.com WordPress Security 12 • Don’t use admin as your username. • This is the default when installing • Almost as bad as using password for your password :) • How to fix this! • Create a new administrator user. • Log out, then log in as the new admin user. • Delete the old “admin” user.
  • 13. Copyright & trademark ClickHOST.com WordPress Security Plugins • Most include: • One-click hardening • File monitoring • Personal Firewall (IP blocking) • Install at least one Security plugin • Sucuri • iThemes • Wordfence • Akismet for spam control • Tip: Set Alerts only for successful actions. Not failed actions. 13
  • 14. Copyright & trademark ClickHOST.com WAF • WAF:Web Application Firewall • Sucuri CloudProxy • Cloudflare • AWS WAF • Note:All traffic flows via WAF 14
  • 15. Copyright & trademark ClickHOST.com 15 WordPress performance tips
  • 16. Copyright & trademark ClickHOST.com WordPress Stack •To understand WordPress performance, you need to understand the WordPress stack. •HTML/PHP •MYSQL •Linux •Which component is the slowest? •WordPress content is mostly dynamically generated version static HTML. 16
  • 17. Copyright & trademark ClickHOST.com Should I use a CDN? •What is a CDN? •Content Deliver Network. •Requested resources are geographically closer to you. •Why should you use a CDN? •Users in different parts of the world. •Need faster loading. •Answer: It depends… 17
  • 18. Copyright & trademark ClickHOST.com CDNs •Cloudflare •Akamai •MaxCDN •Amazon Cloudfront •Great tip: JetPack Photon. Images only. 18
  • 19. Copyright & trademark ClickHOST.com Caching •What is caching? •Load cached version of HTML from memory. •Minify Javascript, CSS files — compress & combine. •Use Basics settings for best performance. •Plugins: •W3Total Cache •SuperCache •WPRocket 19
  • 20. Copyright & trademark ClickHOST.com Easy Performance tips •Use SSD hosting for fast DB access •Enabled gzip compression •Fewer plugins are better •De-active rarely used plugins. •Use Lightweight themes or frameworks •Optimize images: smush.it or compressor.io. •Use JetPack->Photon image CDN. •Prevent access to wp-admin — reduces PHP load during brute force attacks. 20
  • 21. Copyright & trademark ClickHOST.com Real Performance - AWS! 21
  • 22. Copyright & trademark ClickHOST.com Carel Bekker President&Owner carel@clickhost.com http://www.clickhost.com/ Tel: 404.220.8110 Mobile: 404.216.5201 22