How to protect your website from hackers

Most hacks are automated and target easy, well-known weaknesses. Close those and you're far safer.

The basics that stop most attacks

  • Update everything — your CMS (WordPress, etc.), themes and plugins.
  • Strong, unique passwords for cPanel, admin areas and email — plus two-factor authentication.
  • Use https everywhere (free SSL is included).
  • Remove software, plugins and themes you don't use.

Extra protection

  • Install a security plugin or firewall (such as Wordfence on WordPress).
  • Take regular backups so you can recover fast.
  • Limit login attempts and use the cPanel IP Blocker for repeat offenders.

Think you've been hacked?

Change all passwords immediately and open a ticket — we can help you clean up and restore from a clean backup.

Was this answer helpful?

 Print this Article

Also Read

What is an SSL certificate and why you need one

An SSL certificate encrypts the connection between your website and your visitors, shown by...

How to fix common SSL errors

SSL errors look alarming but are usually quick to resolve. Here are the common ones. Not secure...

How to enable two-factor authentication on your account

Two-factor authentication (2FA) adds a second step to login — a code from your phone — so even if...

Why keeping your software updated matters

Outdated software is the number-one cause of hacked websites. Updates aren't just new features —...

How to renew your SSL certificate

SSL certificates have an expiry date. The good news is that BPHOST's free AutoSSL renews itself —...