How To Secure Your WordPress Blog Folder?
Written on July 12, 2007 by admin
If you’re using WordPress for your blog, there is one security issue mentioned in WeblogToolsCollection & ShoeMoney.
Some folder and specially the plugins folder is open to public viewing. Although the folder lists the names of all the plugins that you have and no obvious security problem, but by just knowing the names of the plug-ins a good hacker can find holes in these plug-ins and can attempt to hack your blog.
Test it with this:
YourBlogName.com/wp-content/plugins/
Your folder will look like this: (here is my folder before it’s secured)

I am sure this will be taken care of in future WordPress updates. But if you need a quick solution to protect this directory then here’s what I did… This is a simple & easy method for CPanel hosting, you can find a similar solution from other hosting services..
Log-in to your account & “click” on the “index Manager” icon

Click on the folder (wp-content) Then(/plugins)


Select the “No Indexes” and then Click “Save”

If you check your folder again it should look like this. (The small image indicate “No Indexes”):

And here is the page After I protected it with (No Indexes):

You can do the same with other folders like (Themes & Uploads)



