Monitoring Security Problems

There are several plugins that will help you maintain a secure installation:

WP Security Scan checks your file permissions (Figure 11-17), passwords, database security, and more. It provides tools to fix most of the problems it identifies.

WordPress Firewall monitors HTTP requests for blacklisted phrases and can email you when it finds something suspicious.

Exploit Scanner (Figure 11-18) searches your files and database for any suspicious entries, like files full of spam links.

Audit Trail (Figure 11-19) is also useful for letting you know who's been attempting to log in and what they changed.

See Appendix 1 for more security-related plugins.

Figure 11-17. Checking file and directory permissions with WP Security Scan
Figure 11-18. Configuring the Exploit Scanner plugin
Figure 11-19. The Audit Trail
