Skip to main content

What you should do if your WordPress website has been Hacked!

There is no call that strikes fear in the heart of a business owner quite
like the one where your friend calls and asks, "Um, have you looked at your
website recently? It looks like it might have been hacked." Ugh. What do you
do when you realize your website was hacked?

Website Hacked

Have backed up your site recently. Yes, I realize it is a bit odd to start
this list with an item in the present perfect tense. But, I am assuming most
of you reading this right now haven't been hacked yet. I have caught you in
time! Before it happens, get in the habit of backing up your site regularly.
Your options are much better and trust me, the pit in your stomach won't be
as deep if you know there is a recent backup of your site that exists in the
world. There are many good options for WordPress plugins that automatically
back up a WordPress site on a regular basis. One that Spring Insight uses
for its clients is ManageWP. This service allows us to run full site
backups; to manage updating WordPress Core, Themes, and Plugins; and to scan
our website for malware.

Take a deep breath. This is one of those moments where people tend to freak
out. Calm down so you can properly assess the situation. What is leading you
to think your site was hacked? Does the page now show a huge Viking with a
"HACKED BY BAD GUY" message? Is something funky going on with a feature? Is
your site full of ads for an "all-natural" Viagra alternative? Gather as
much information as you can.

Google what you know. I have found Google to be a great place to start. You
probably aren't the first person to experience what you are experiencing.
See what you can learn from others who have gone through the same process.
You will be surprised at what you can figure out from Googling a few simple
search terms. So start investigating.

Call your web host. You might not be the only one experiencing this. Many
times if you are on a shared server, whatever is impacting your site is
impacting others. It's worth checking to see if the hosting provider is
dealing with the issue or should be. Although the hosting provider usually
will not do the work of cleaning your website, they will provide assistance
in finding experts who will do that for you. Also, some WordPress hosting
providers, like WP Engine, offer daily full site backups as part of their
monthly service plan.

Call your friendly neighbourhood technology crew. Sometimes, you just need a
bit of help. If you don't have the right technical know-how on staff, your
best option is to call in support. IT people deal with hacking on a regular
basis. They know all the tricks of the trade and depending on the situation,
can talk you through finding and removing the hack or do it for you. They
can also help you to reinstall elements of your site. Reinstalling can be
very effective because installers often overwrite existing files and hacks
often work by adding new files to your website.

Secure user access. Once you are up and running again, you will want to look
at who has access to your website and make sure everyone has proper user
credentials. Yes, this means changing YOUR password to something complicated
that will be hard to remember. But, that isn't all it means. It also means
checking to make sure that only the people who should have access to your
website have access to your website. That temp you had two years ago? Make
sure her account has been deleted. For those users remaining, their
passwords will also need to change to be unpleasantly long and complicated.

Being hacked is not the end of the world. Yes, it's not fun. Yes, you feel
vulnerable. Yes, you will likely have to spend some time and money getting
everything working normally again. But you will recover from this. So, like
the song says, "don't fear the reaper…errr hacker."


my motto is "Keep it simple" and "don't leave anything for tomorrow that can
be done today."

Regards Gerald Crawford

Stellenbosch South Africa
E-mail: gerald@webcraft.ws


---
This email has been checked for viruses by Avast antivirus software.
https://www.avast.com/antivirus

Comments

Popular posts from this blog

What Is Internet Website Content?

What Is Internet Website Content? Content is made up of multiple elements, and is primarily the; * On-page visible text * Images and image Alt text * Anchor text in hyperlinks to internal or external pages * Hyperlink titles in links and menus * The descriptive Title and Description meta-data In the context of Google, a picture is NOT worth a thousand words! Moreover, words must be accessible, not embedded in images or Flash movies, JavaScript, slide shows etc. In 15 years as an SEO consultant, if there's one common denominator evident on websites, it's that there is a profound reluctance to expend time, money, and creative energy on unique text content. Brevity is the watchword - economical use of words is encouraged by design, branding and marketing advisers! * The branding gurus want you to use the textual equivalent of sound bites - bullet points and short sentences! * The website designers want the entire content of the page to be above ...

How to Write Web Copy

Actionable tips for software developers writing web copy. Scan Web site visitors read websites very differently than they might read a book or a newspaper. Web visitors scan the text, rather than reading each and every word. As a result, the web copy should be designed to be easily scannable. That is not to say the copy should not be well written, but it should be broken into small "chunks" so that the visitor can easily scan it and take away the main idea. White Space Avoid dense copy. Copy should be broken into readable, digestible "chunks" and surrounded by a good amount of white space. Font Type Font size matters. Avoid using micro fonts. Studies have shown that the easiest type faces to read on the Internet are san serif fonts. Popular sans fonts include Helvetica, Avant Garde, and Arial. Popular serif fonts include Times Roman, Courier, and Palatino. Sans-serif fonts have become the de facto standard for "body" text on-screen, because monitors pr...

The REAL Value of Keywords

An important question in SEO is how much intrinsic value resides in a specific keyword and, whether SEO has the potential to take everybody on a fool's errand? When it comes to bigger companies, for instance, can a massive SEO investment in trying to achieve top ranking for almost-generic, ultra-competitive keywords be worth all the disappointment and soul-searching? Surely, in so many cases, there has to be a better way? At the other end of the scale are smaller companies with a limited marketing budget, particularly in the business-to-business sphere. There is often a fine balance to achieve when it comes to investing in SEO for what can only be low-traffic keywords in niche sectors, even where higher gross margins per sale indicate otherwise. Realizing this, many companies will skip the on-line sales dance, or resign themselves to having a website that is little more than an 'on-line brochure' presence or a support mechanism for Pay-Per-Click or social media activities. ...