<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: WordPress Security Tip #1 &#8211; Get Rid of the Admin Account</title>
	<atom:link href="http://ilikewordpress.com/146/wordpress-security-tip-1/feed/" rel="self" type="application/rss+xml" />
	<link>http://ilikewordpress.com/146/wordpress-security-tip-1/</link>
	<description>Just another WordPress weblog</description>
	<lastBuildDate>Mon, 23 Jan 2012 07:39:55 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=</generator>
	<item>
		<title>By: Zoran</title>
		<link>http://ilikewordpress.com/146/wordpress-security-tip-1/#comment-1073</link>
		<dc:creator>Zoran</dc:creator>
		<pubDate>Sun, 26 Dec 2010 22:21:10 +0000</pubDate>
		<guid isPermaLink="false">http://ilikewordpress.com/?p=146#comment-1073</guid>
		<description>@Joy, i had the same problem, but in my case it was my FTP client FileZilla, which keeps the username and password in plain text file, so the best advice is to change it. I hope that helps :)</description>
		<content:encoded><![CDATA[<p>@Joy, i had the same problem, but in my case it was my FTP client FileZilla, which keeps the username and password in plain text file, so the best advice is to change it. I hope that helps <img src='http://ilikewordpress.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Stephan</title>
		<link>http://ilikewordpress.com/146/wordpress-security-tip-1/#comment-586</link>
		<dc:creator>Stephan</dc:creator>
		<pubDate>Thu, 07 Oct 2010 16:18:25 +0000</pubDate>
		<guid isPermaLink="false">http://ilikewordpress.com/?p=146#comment-586</guid>
		<description>Stealth WordPress admin account and other users for that matter...

Here is what I do; not sure if it is of any value, but does appease me some :-)

Using the WP-Optimize Plugin rename the Admin user to a user name that is meaningless and very difficult to guess - essentially a strong password.
Then add the Nickname: Admin
Then set the Display name publicly as: Admin (Never as the actual User Name)

Result…
User Name:  SG38_hW10-29Xz
Password:     Io%26ehdr1cAGt9j#wq8Y
Nicknames:   Admin  (or whatever makes sense i.e.:  John)
Display Public as:  Admin
or, 
Display Public as:  John

I do that for every user that has strong privileges...

My thinking is that Hackers will be trying to guess password and all the while thinking user is Admin... At least will have to work a little harder for it ;-)

I use www.KeePass.info Portable Password software, so no worries about trying to remember my User/password combo.

Your opinion / feedback sincerely welcomed.

Cheers,
Stephan</description>
		<content:encoded><![CDATA[<p>Stealth WordPress admin account and other users for that matter&#8230;</p>
<p>Here is what I do; not sure if it is of any value, but does appease me some <img src='http://ilikewordpress.com/wp-includes/images/smilies/icon_smile.gif' alt=':-)' class='wp-smiley' /> </p>
<p>Using the WP-Optimize Plugin rename the Admin user to a user name that is meaningless and very difficult to guess &#8211; essentially a strong password.<br />
Then add the Nickname: Admin<br />
Then set the Display name publicly as: Admin (Never as the actual User Name)</p>
<p>Result…<br />
User Name:  SG38_hW10-29Xz<br />
Password:     Io%26ehdr1cAGt9j#wq8Y<br />
Nicknames:   Admin  (or whatever makes sense i.e.:  John)<br />
Display Public as:  Admin<br />
or,<br />
Display Public as:  John</p>
<p>I do that for every user that has strong privileges&#8230;</p>
<p>My thinking is that Hackers will be trying to guess password and all the while thinking user is Admin&#8230; At least will have to work a little harder for it <img src='http://ilikewordpress.com/wp-includes/images/smilies/icon_wink.gif' alt=';-)' class='wp-smiley' /> </p>
<p>I use <a href="http://www.KeePass.info" rel="nofollow">http://www.KeePass.info</a> Portable Password software, so no worries about trying to remember my User/password combo.</p>
<p>Your opinion / feedback sincerely welcomed.</p>
<p>Cheers,<br />
Stephan</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Joy</title>
		<link>http://ilikewordpress.com/146/wordpress-security-tip-1/#comment-551</link>
		<dc:creator>Joy</dc:creator>
		<pubDate>Tue, 28 Sep 2010 18:15:58 +0000</pubDate>
		<guid isPermaLink="false">http://ilikewordpress.com/?p=146#comment-551</guid>
		<description>They say that: &quot;According to the information available, only login attempts from the current IP address you are using to connect to the Internet have been recorded over the last four days. &quot;

They just told me to change my ftp password, but I had already done that and it&#039;s been hacked again.

The other hosting company involved say &quot;This was the same as the previous exploit. It looks like the FTP password was compromised and this let them log in and modify the files.&quot;

I found a WP Security plugin - do you think that would help?</description>
		<content:encoded><![CDATA[<p>They say that: &#8220;According to the information available, only login attempts from the current IP address you are using to connect to the Internet have been recorded over the last four days. &#8221;</p>
<p>They just told me to change my ftp password, but I had already done that and it&#8217;s been hacked again.</p>
<p>The other hosting company involved say &#8220;This was the same as the previous exploit. It looks like the FTP password was compromised and this let them log in and modify the files.&#8221;</p>
<p>I found a WP Security plugin &#8211; do you think that would help?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Steve</title>
		<link>http://ilikewordpress.com/146/wordpress-security-tip-1/#comment-545</link>
		<dc:creator>Steve</dc:creator>
		<pubDate>Tue, 28 Sep 2010 00:58:26 +0000</pubDate>
		<guid isPermaLink="false">http://ilikewordpress.com/?p=146#comment-545</guid>
		<description>I think you&#039;re pretty safe deleting subscribers from Russia :)

You&#039;re in the tedious stage - cleaning out the bad stuff. I feel for ya.

Let me know, if you can, what your hosting companies finally say.</description>
		<content:encoded><![CDATA[<p>I think you&#8217;re pretty safe deleting subscribers from Russia <img src='http://ilikewordpress.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
<p>You&#8217;re in the tedious stage &#8211; cleaning out the bad stuff. I feel for ya.</p>
<p>Let me know, if you can, what your hosting companies finally say.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Joy</title>
		<link>http://ilikewordpress.com/146/wordpress-security-tip-1/#comment-544</link>
		<dc:creator>Joy</dc:creator>
		<pubDate>Tue, 28 Sep 2010 00:25:05 +0000</pubDate>
		<guid isPermaLink="false">http://ilikewordpress.com/?p=146#comment-544</guid>
		<description>Hi Steve

Hosting companies stunned into silence so far LOL    However, I deleted admin as per your advice on two of my blogs, so will see if they survive.

Discovered some non-WP sites also hacked, so that means WP isn&#039;t the common link. But my PC is coming up clean and protected and has done so for three weeks now.

What is happening is that the nasty urls are inserted at the very end of either index.html or index.php files.  Easy enough to spot edit out now I know what to do, but I have several blogs, only do this part-time, not very technical and I&#039;m struggling!

Many of the nasty urls have .ru, and I notice I&#039;m getting several .ru subscribers. Shall I delete them?</description>
		<content:encoded><![CDATA[<p>Hi Steve</p>
<p>Hosting companies stunned into silence so far LOL    However, I deleted admin as per your advice on two of my blogs, so will see if they survive.</p>
<p>Discovered some non-WP sites also hacked, so that means WP isn&#8217;t the common link. But my PC is coming up clean and protected and has done so for three weeks now.</p>
<p>What is happening is that the nasty urls are inserted at the very end of either index.html or index.php files.  Easy enough to spot edit out now I know what to do, but I have several blogs, only do this part-time, not very technical and I&#8217;m struggling!</p>
<p>Many of the nasty urls have .ru, and I notice I&#8217;m getting several .ru subscribers. Shall I delete them?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Steve</title>
		<link>http://ilikewordpress.com/146/wordpress-security-tip-1/#comment-541</link>
		<dc:creator>Steve</dc:creator>
		<pubDate>Mon, 27 Sep 2010 20:19:40 +0000</pubDate>
		<guid isPermaLink="false">http://ilikewordpress.com/?p=146#comment-541</guid>
		<description>Wow, Joy - something just isn&#039;t quite right.

When you say &#039;hacked&#039;, what exactly do you mean? Malicious javascript on your pages, that sort of thing? Something else?

My initial thought would be that what/whoever got you the first time managed to slip some stuff into the database, maybe the posts table. If that is the case, you can update WordPress until you&#039;re blue in the face and it won&#039;t do any good.

The &#039;change admin&#039; isn&#039;t a feature. The post outlines the safest way to delete your existing admin account and replace it with an administrator account with a different login username.

Do let me know what your hosting companies come up with. I&#039;m interested in knowing just what is going on with your sites.</description>
		<content:encoded><![CDATA[<p>Wow, Joy &#8211; something just isn&#8217;t quite right.</p>
<p>When you say &#8216;hacked&#8217;, what exactly do you mean? Malicious javascript on your pages, that sort of thing? Something else?</p>
<p>My initial thought would be that what/whoever got you the first time managed to slip some stuff into the database, maybe the posts table. If that is the case, you can update WordPress until you&#8217;re blue in the face and it won&#8217;t do any good.</p>
<p>The &#8216;change admin&#8217; isn&#8217;t a feature. The post outlines the safest way to delete your existing admin account and replace it with an administrator account with a different login username.</p>
<p>Do let me know what your hosting companies come up with. I&#8217;m interested in knowing just what is going on with your sites.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Joy</title>
		<link>http://ilikewordpress.com/146/wordpress-security-tip-1/#comment-540</link>
		<dc:creator>Joy</dc:creator>
		<pubDate>Mon, 27 Sep 2010 19:57:39 +0000</pubDate>
		<guid isPermaLink="false">http://ilikewordpress.com/?p=146#comment-540</guid>
		<description>Hi

My WP sites are being hacked faster than I can recover them. Different hosting companies, both looking into it for me.

I have bought a new PC, changed passwords, running Spybot, Security Essentials, Malwarebytes. All come up clean, but still the sites get hacked almost as soon as I get Google to say they&#039;re OK. I update WP as soon as I spot a new release, but haven&#039;t yet spotted this &quot;change admin&quot; feature. Perhaps it&#039;s not there yet?

Is there a way to tell if the issue is my ftp login or my wordpress login, please?

Joy</description>
		<content:encoded><![CDATA[<p>Hi</p>
<p>My WP sites are being hacked faster than I can recover them. Different hosting companies, both looking into it for me.</p>
<p>I have bought a new PC, changed passwords, running Spybot, Security Essentials, Malwarebytes. All come up clean, but still the sites get hacked almost as soon as I get Google to say they&#8217;re OK. I update WP as soon as I spot a new release, but haven&#8217;t yet spotted this &#8220;change admin&#8221; feature. Perhaps it&#8217;s not there yet?</p>
<p>Is there a way to tell if the issue is my ftp login or my wordpress login, please?</p>
<p>Joy</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Steve</title>
		<link>http://ilikewordpress.com/146/wordpress-security-tip-1/#comment-341</link>
		<dc:creator>Steve</dc:creator>
		<pubDate>Thu, 13 May 2010 15:21:21 +0000</pubDate>
		<guid isPermaLink="false">http://ilikewordpress.com/?p=146#comment-341</guid>
		<description>Agreed. Glad to see that&#039;s going to be a new feature in 3.0 coming soon.</description>
		<content:encoded><![CDATA[<p>Agreed. Glad to see that&#8217;s going to be a new feature in 3.0 coming soon.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Adam</title>
		<link>http://ilikewordpress.com/146/wordpress-security-tip-1/#comment-339</link>
		<dc:creator>Adam</dc:creator>
		<pubDate>Thu, 13 May 2010 14:04:34 +0000</pubDate>
		<guid isPermaLink="false">http://ilikewordpress.com/?p=146#comment-339</guid>
		<description>Nice post.  In addition to keeping your plugins and version of WP up to date, removing the default admin account is probably the easiest thing that can be done to improve the security of a WP blog.</description>
		<content:encoded><![CDATA[<p>Nice post.  In addition to keeping your plugins and version of WP up to date, removing the default admin account is probably the easiest thing that can be done to improve the security of a WP blog.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Watch Out for Recent WordPress Gumblar PHP Exploit &#124; GROWMAP.COM</title>
		<link>http://ilikewordpress.com/146/wordpress-security-tip-1/#comment-66</link>
		<dc:creator>Watch Out for Recent WordPress Gumblar PHP Exploit &#124; GROWMAP.COM</dc:creator>
		<pubDate>Fri, 15 May 2009 03:30:52 +0000</pubDate>
		<guid isPermaLink="false">http://ilikewordpress.com/?p=146#comment-66</guid>
		<description>[...] In Depth Tutorial On How To Secure Your WordPress Blog Tip 1 (Apr 8, 2009) [...]</description>
		<content:encoded><![CDATA[<p>[...] In Depth Tutorial On How To Secure Your WordPress Blog Tip 1 (Apr 8, 2009) [...]</p>
]]></content:encoded>
	</item>
</channel>
</rss>

