• Skip to primary navigation
  • Skip to main content
Intelect Group

Intelect Group

Assurance through experience

  • Home
  • About
  • IRIS
    • Find out more
  • Training
  • Investigations
    • Due Diligence Investigations
    • Investigations Support
    • Screening Services
  • Compliance chronicles
  • Useful Websites
  • Books
  • Contact
  • Shop
    • Basket
    • Checkout
    • My account
website-security-featured

Underestimating the importance of website security

With the popularity of code-free website building software such as WordPress growing, there has never been so much opportunity for website hackers as there is at the moment.

This blog post looks at the growth of content management system (CMS) based software (such as WordPress), how hackers are utilising the vulnerabilities in the software and what you can do to mitigate the risk of a cyber-attack on your website.

The Rise and Rise of WordPress

WordPress now powers more than 40% of every website that you visit and 65% of every website that uses a CMS (source). This is a phenomenal achievement in a relatively short space of time.

Major businesses such as Microsoft, Zoom, Intuit and Udemy now use WordPress to power their websites. It’s more than likely that your website is powered by WordPress too.

But this popularity and the fact that the software is open source, has resulted in the software that powers your website being vulnerable to cyber-attack.

Website vulnerabilities exposed

WordPress software is open source, meaning it is freely available to download and use to build websites. The software development is contributed to by thousands of developers worldwide, meaning that frequent enhancement and security updates are released to the general public, so they can update their website software accordingly.

If software updates are not performed when notified, this presents a major security vulnerability, resulting in that piece of software – and your website – being at risk of cyber-attack. Cyber criminals have seized upon these opportunities to attack websites in various ways such as DDoS and SQL Injection attacks (source).

In fact, the highly publicised Panama Papers leak was attributed to in large, by a WordPress plugin that was out of date (source).  This highlights the need to ensure your website CMS software is kept up to date.

Mitigating the risk of cyber-attacks on your website

Your website will never be 100% secure from the possibility of cyber-attacks. However, the following recommendations will, if implemented, help to ensure that your website is as protected from cyber-attacks as it can be.

  1. When creating your WordPress user profile, always change the default ‘admin’ username to your own.
  2. Change your user password regularly using a random password generator (you may also want to incorporate password changes into a password manager account).
  3. Delete any unused WordPress themes and plugins.
  4. Use the minimal number of plugins that are needed to deliver your websites needs.
  5. Ensure that your website is being backed up daily, so if the unthinkable does happen, you can restore your site with minimal loss of data.
  6. Install a reputable WordPress security plugin such as Wordfence to monitor and defend any possible cyber-attack attempts on your website.
  7. Always process updates to WordPress core, theme and plugin software.

You may also want to consider off-website factors, such as the security of the servers that your website is on. Your website host should be able to provide information about the security measures they have in place to protect your website.

Intelect Group can provide comprehensive assessments and services around cyber-security and will be happy to assist you.

Published on June 15, 2021

Filed Under: Useful Information

Subscribe to receive updates

If you enjoyed this article, subscribe to our email list to receive regular updates with new articles, courses and more.

Reader Interactions

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Discover more

Go to Our eLearning Portal Get Free Resources Contact Us

Footer


Cronk View, Ballanard Road, Douglas, Isle of Man IM2 5HB

All Content - Copyright © 2022 · All Rights Reserved.

Keep In Touch

  • Facebook
  • Instagram
  • LinkedIn
  • Twitter
  • Vimeo
  • YouTube

Telephone Us

Landline: +44(0)207 0960370
Landline: +44(0)1624 618380
Mobile: +44(0)7624 487065
Wildcard SSL Certificates
  • Privacy Policy
  • Cookie Policy
  • Isle of Man, Cyber Security, Due Diligence, Investigations, Risk Management
We use cookies on our website to give you the most relevant experience by remembering your preferences and repeat visits. By clicking “Accept”, you consent to the use of ALL the cookies. Read More
Cookie settingsACCEPT
Manage Cookie consent

Privacy Overview

This website uses cookies to improve your experience while you navigate through the website. Out of these, the cookies that are categorized as necessary are stored on your browser as they are essential for the working of basic functionalities of the website. We also use third-party cookies that help us analyze and understand how you use this website. These cookies will be stored in your browser only with your consent. You also have the option to opt-out of these cookies. But opting out of some of these cookies may affect your browsing experience.
Necessary
Always Enabled
Necessary cookies are absolutely essential for the website to function properly. This category only includes cookies that ensures basic functionalities and security features of the website. These cookies do not store any personal information.
Non-necessary
Any cookies that may not be particularly necessary for the website to function and is used specifically to collect user personal data via analytics, ads, other embedded contents are termed as non-necessary cookies. It is mandatory to procure user consent prior to running these cookies on your website.
SAVE & ACCEPT