Lock Down Your WP Blogs!

January 19, 2008 by Evan

Tony Hung has a tremendous reminder / tip / must-do if you’re running a blog on Wordpress:

If you’re running Wordpress, unless you’ve already locked down your Wp-content folder with some .htaccess fixes, you may not notice that your Wp-content/plugins folder is naked and bare to the world. That is, navigate to http://www.yourblogname.com/wp-content/plugins and you may find a directory listing of your plugins folder, files and all. How do you fix it? Easy. Just upload an empty index.html into the wp-content/plugins folder and its all fixed.

(Via Deep Jive Interests.)

Bookmark and Share

 

Trackbacks

(Trackback URL)

close Reblog this comment
blog comments powered by Disqus