SlideShare a Scribd company logo
Website hacking – what does it
mean? & What WordPress
security issues you should be
aware of
In this section, it will be enough to list
several major technical ways how website
(or server-side infrastructure) can be
hacked, so that someone could grasp the
overall picture:
(the ways how to protect from these and
other hacks are given in one of the next
sections below)
Web site hacking
MetaKave.com
Web Site Hacking
MetaKave.com
• Guessing admin name and password – hacking
scripts just make tons of requests and finally guess
login credentials
• Sending a malicious command to database
• Changing the code of website
Web Site Hacking
MetaKave.com
• Changing websites scripts to control users’ browser
Web Site Hacking
MetaKave.com
• Input forms to steal sensitive information like credit
card credentials or admin user/password
• Stealing authentication and session information to
be able to use login and password
Web Site Hacking
MetaKave.com
Stealing cookies, the hacks can be done on these
levels:
• client level (operation system and browser)
• website level (software, e.g. WordPress, plugins)
• server level (e.g. hosting)
• network level (connection breaches, e.g. insecure wi-
fi)
Web Site Hacking
MetaKave.com
• The most scary thing is that someone may even not
notice that he or she have been hacked
• But a malicious code can be on website doing its
harm for business and even for visitors silently
How Website Can Be Hacked
MetaKave.com
How Website Can Be Hacked
MetaKave.com
• Hacking is constantly evolving game
• New methods and vulnerabilities are discovered and
used by hackers year by year
WordPress Security Issue should be aware of
MetaKave.com
Here are the general vulnerable spots directly
connected with your WordPress website:
• WordPress core
WordPress Security Issue should be aware of
MetaKave.com
Here are the general vulnerable spots directly connected
with your WordPress website:
• Hosting vulnerabilities
• Insecurities in WordPress themes
• Plugins security breaches
• Insecure passwords
• Website file access insecure permissions
WordPress Security Issue should be aware of
MetaKave.com
• Hackers have a lot of potential because of people’s
predictability, laziness or lack of awareness
WordPress Security Issue should be aware of
MetaKave.com
• For example, less than 17% of WP sites use the most
recent WP version as of time of writing this
• It means that majority of WP sites can be hacked
much easier
• So it’s people who are lazy to keep their WordPress
version up to date
WordPress Security Issue should be aware of
MetaKave.com
• Although WordPress core is pretty secure WordPress
add-ons such as themes and plugins are not reliable
• The speaker says WP plugins are generally not secure
at all and it’s not exaggeration
WordPress Security Issue should be aware of
MetaKave.com
• All these weaknesses in plugins, themes etc take
place for laziness of developers and lack of
developer’s expertise in security
• Serious providers update products regularly fixing
new security weaknesses
•If you need free consultation for SEO,
feel free to contact us
•Our Email is: sadiq@metakave.com
•Get Free Consultation Today
•Visit us at http://metakave.com
Get Free Quote
MetaKave.com
Communication
Sadiq M. Alam
Founder & Head of Ideas
Call: (+880) 017110 56474, (+880) 09611 699 014
Email: sadiq@metakave.com
Skype: sadiq.alam
MetaKave Dev HQ
Apt 12B2, Al-Baraka Tower
252 Elephant Road,
Dhaka-1205, Bangladesh

More Related Content

PPTX
Website Hacking and Preventive Measures
Shubham Takode
 
PPT
Hacking A Web Site And Secure Web Server Techniques Used
Siddharth Bhattacharya
 
PPTX
Website hacking and prevention (All Tools,Topics & Technique )
Jay Nagar
 
PPTX
Web application attacks
hruth
 
PPTX
Presentation on Web Attacks
Vivek Sinha Anurag
 
PPTX
Help AG spot light - social engineering
Michael Hendrickx
 
PPTX
Web Security Attacks
Sajid Hasan
 
PPT
Brute force
Prajwal Panchmahalkar
 
Website Hacking and Preventive Measures
Shubham Takode
 
Hacking A Web Site And Secure Web Server Techniques Used
Siddharth Bhattacharya
 
Website hacking and prevention (All Tools,Topics & Technique )
Jay Nagar
 
Web application attacks
hruth
 
Presentation on Web Attacks
Vivek Sinha Anurag
 
Help AG spot light - social engineering
Michael Hendrickx
 
Web Security Attacks
Sajid Hasan
 

What's hot (20)

PPTX
password cracking and Key logger
Patel Mit
 
PPTX
Lesson 6 web based attacks
Frank Victory
 
PPTX
Password Cracking
Sina Manavi
 
PPTX
Rapid Android Application Security Testing
Nutan Kumar Panda
 
PPTX
Owasp Top 10 A1: Injection
Michael Hendrickx
 
PPTX
Browser Security by pratimesh Pathak ( Buldhana)
Pratimesh Pathak
 
PDF
Web Security 101
Michael Peters
 
PPT
Web browser privacy and security
amiable_indian
 
PPTX
ECrime presentation - A few bits about malware
Michael Hendrickx
 
PPTX
Secure Code Warrior - Unrestricted file upload
Secure Code Warrior
 
PDF
Introduction to Web Application Security - Blackhoodie US 2018
Niranjanaa Ragupathy
 
PDF
Web Security: A Primer for Developers
Mike North
 
PPT
Web attacks
husnara mohammad
 
PPTX
Php security common 2011
10n Software, LLC
 
PPTX
Evaluating a password manager
Evan J Johnson (Not a CISSP)
 
PPTX
Finding the source of Ransomware - Wire data analytics
NetFort
 
PPTX
Error codes & custom 404s
Ronan Dunne, CEH, SSCP
 
PPTX
Tips for web security
kareowebtech
 
PPTX
Secure Code Warrior - Cookies and sessions
Secure Code Warrior
 
PPTX
A5: Security Misconfiguration
Tariq Islam
 
password cracking and Key logger
Patel Mit
 
Lesson 6 web based attacks
Frank Victory
 
Password Cracking
Sina Manavi
 
Rapid Android Application Security Testing
Nutan Kumar Panda
 
Owasp Top 10 A1: Injection
Michael Hendrickx
 
Browser Security by pratimesh Pathak ( Buldhana)
Pratimesh Pathak
 
Web Security 101
Michael Peters
 
Web browser privacy and security
amiable_indian
 
ECrime presentation - A few bits about malware
Michael Hendrickx
 
Secure Code Warrior - Unrestricted file upload
Secure Code Warrior
 
Introduction to Web Application Security - Blackhoodie US 2018
Niranjanaa Ragupathy
 
Web Security: A Primer for Developers
Mike North
 
Web attacks
husnara mohammad
 
Php security common 2011
10n Software, LLC
 
Evaluating a password manager
Evan J Johnson (Not a CISSP)
 
Finding the source of Ransomware - Wire data analytics
NetFort
 
Error codes & custom 404s
Ronan Dunne, CEH, SSCP
 
Tips for web security
kareowebtech
 
Secure Code Warrior - Cookies and sessions
Secure Code Warrior
 
A5: Security Misconfiguration
Tariq Islam
 

Similar to Web site hacking;what does it mean (20)

PPTX
Securing your WordPress website - New Port Richey WP Meetup
Oyster Bay Marauders LLC
 
DOCX
The Ultimate Guide to Wordpress Security
AidanChard
 
PPTX
WordPress Security
Nathan Platt
 
PDF
Detailed Developer Report.pdf
nalla14
 
PPTX
WordPress security
Shelley Magnezi
 
PPTX
Building Secure WordPress Sites
Catch Themes
 
PPTX
Hacking_Environment_Web_Application_updated.pptx
shibabrataghosh1
 
PPTX
WordPress Security and Best Practices
Robert Vidal
 
PPTX
Steps to Keep Your Site Clean
Sucuri
 
PPTX
WordPress Resources Nov 2014
Judy Wilson
 
PPT
Web Application Security
Chris Hillman
 
PPT
How to know if your WordPress Website is hacked Get the Inside Story.ppt
Saurabh Srivastava
 
PDF
The WordPress Hosting experience - Bought cheaply and paid dearly? - Jan Löf...
Jan Löffler
 
PDF
Introduction to WordPress Security
Nile Flores
 
PPT
Up and Running with WordPress - Site Shack Nashville Web Design
Judy Wilson
 
PDF
Types of Security Threats WordPress Websites Face: Part-1
WPWhiteBoard
 
PDF
WordPress Security Essentials
Angela Bowman
 
PDF
Your Site Has Been Hacked, Now What?
Michele Butcher-Jones
 
PDF
Demystifying WordPress
Mykl Roventine
 
PPT
Wordpress Security Tips
Lalit Nama
 
Securing your WordPress website - New Port Richey WP Meetup
Oyster Bay Marauders LLC
 
The Ultimate Guide to Wordpress Security
AidanChard
 
WordPress Security
Nathan Platt
 
Detailed Developer Report.pdf
nalla14
 
WordPress security
Shelley Magnezi
 
Building Secure WordPress Sites
Catch Themes
 
Hacking_Environment_Web_Application_updated.pptx
shibabrataghosh1
 
WordPress Security and Best Practices
Robert Vidal
 
Steps to Keep Your Site Clean
Sucuri
 
WordPress Resources Nov 2014
Judy Wilson
 
Web Application Security
Chris Hillman
 
How to know if your WordPress Website is hacked Get the Inside Story.ppt
Saurabh Srivastava
 
The WordPress Hosting experience - Bought cheaply and paid dearly? - Jan Löf...
Jan Löffler
 
Introduction to WordPress Security
Nile Flores
 
Up and Running with WordPress - Site Shack Nashville Web Design
Judy Wilson
 
Types of Security Threats WordPress Websites Face: Part-1
WPWhiteBoard
 
WordPress Security Essentials
Angela Bowman
 
Your Site Has Been Hacked, Now What?
Michele Butcher-Jones
 
Demystifying WordPress
Mykl Roventine
 
Wordpress Security Tips
Lalit Nama
 

More from MetaKave (11)

PDF
CIRDAP Website Redesign
MetaKave
 
PPTX
Ux 101
MetaKave
 
PPTX
Analytic data
MetaKave
 
PPTX
21 new rules for content marketing
MetaKave
 
PPTX
15 Excuses unproductive people basically always use.
MetaKave
 
PPTX
Social media in a nutshell
MetaKave
 
PPTX
The authority building machine
MetaKave
 
PPTX
Meta kave presentation-v1 (1)
MetaKave
 
PDF
Metakave Profile
MetaKave
 
PPTX
MetaKave Presentation
MetaKave
 
PPTX
CMS Site Migration and Security Audit
MetaKave
 
CIRDAP Website Redesign
MetaKave
 
Ux 101
MetaKave
 
Analytic data
MetaKave
 
21 new rules for content marketing
MetaKave
 
15 Excuses unproductive people basically always use.
MetaKave
 
Social media in a nutshell
MetaKave
 
The authority building machine
MetaKave
 
Meta kave presentation-v1 (1)
MetaKave
 
Metakave Profile
MetaKave
 
MetaKave Presentation
MetaKave
 
CMS Site Migration and Security Audit
MetaKave
 

Recently uploaded (20)

PPTX
cloud computing vai.pptx for the project
vaibhavdobariyal79
 
PDF
AI-Cloud-Business-Management-Platforms-The-Key-to-Efficiency-Growth.pdf
Artjoker Software Development Company
 
PDF
MASTERDECK GRAPHSUMMIT SYDNEY (Public).pdf
Neo4j
 
PDF
A Strategic Analysis of the MVNO Wave in Emerging Markets.pdf
IPLOOK Networks
 
PPTX
Agile Chennai 18-19 July 2025 Ideathon | AI Powered Microfinance Literacy Gui...
AgileNetwork
 
PDF
Economic Impact of Data Centres to the Malaysian Economy
flintglobalapac
 
PDF
Research-Fundamentals-and-Topic-Development.pdf
ayesha butalia
 
PPTX
Introduction to Flutter by Ayush Desai.pptx
ayushdesai204
 
PDF
Brief History of Internet - Early Days of Internet
sutharharshit158
 
PDF
How Open Source Changed My Career by abdelrahman ismail
a0m0rajab1
 
PDF
Structs to JSON: How Go Powers REST APIs
Emily Achieng
 
PPTX
Dev Dives: Automate, test, and deploy in one place—with Unified Developer Exp...
AndreeaTom
 
PDF
GDG Cloud Munich - Intro - Luiz Carneiro - #BuildWithAI - July - Abdel.pdf
Luiz Carneiro
 
PDF
CIFDAQ's Market Wrap : Bears Back in Control?
CIFDAQ
 
PDF
SparkLabs Primer on Artificial Intelligence 2025
SparkLabs Group
 
PDF
OFFOFFBOX™ – A New Era for African Film | Startup Presentation
ambaicciwalkerbrian
 
PDF
AI Unleashed - Shaping the Future -Starting Today - AIOUG Yatra 2025 - For Co...
Sandesh Rao
 
PPTX
OA presentation.pptx OA presentation.pptx
pateldhruv002338
 
PPTX
AI and Robotics for Human Well-being.pptx
JAYMIN SUTHAR
 
PDF
The Future of Artificial Intelligence (AI)
Mukul
 
cloud computing vai.pptx for the project
vaibhavdobariyal79
 
AI-Cloud-Business-Management-Platforms-The-Key-to-Efficiency-Growth.pdf
Artjoker Software Development Company
 
MASTERDECK GRAPHSUMMIT SYDNEY (Public).pdf
Neo4j
 
A Strategic Analysis of the MVNO Wave in Emerging Markets.pdf
IPLOOK Networks
 
Agile Chennai 18-19 July 2025 Ideathon | AI Powered Microfinance Literacy Gui...
AgileNetwork
 
Economic Impact of Data Centres to the Malaysian Economy
flintglobalapac
 
Research-Fundamentals-and-Topic-Development.pdf
ayesha butalia
 
Introduction to Flutter by Ayush Desai.pptx
ayushdesai204
 
Brief History of Internet - Early Days of Internet
sutharharshit158
 
How Open Source Changed My Career by abdelrahman ismail
a0m0rajab1
 
Structs to JSON: How Go Powers REST APIs
Emily Achieng
 
Dev Dives: Automate, test, and deploy in one place—with Unified Developer Exp...
AndreeaTom
 
GDG Cloud Munich - Intro - Luiz Carneiro - #BuildWithAI - July - Abdel.pdf
Luiz Carneiro
 
CIFDAQ's Market Wrap : Bears Back in Control?
CIFDAQ
 
SparkLabs Primer on Artificial Intelligence 2025
SparkLabs Group
 
OFFOFFBOX™ – A New Era for African Film | Startup Presentation
ambaicciwalkerbrian
 
AI Unleashed - Shaping the Future -Starting Today - AIOUG Yatra 2025 - For Co...
Sandesh Rao
 
OA presentation.pptx OA presentation.pptx
pateldhruv002338
 
AI and Robotics for Human Well-being.pptx
JAYMIN SUTHAR
 
The Future of Artificial Intelligence (AI)
Mukul
 

Web site hacking;what does it mean

  • 1. Website hacking – what does it mean? & What WordPress security issues you should be aware of In this section, it will be enough to list several major technical ways how website (or server-side infrastructure) can be hacked, so that someone could grasp the overall picture: (the ways how to protect from these and other hacks are given in one of the next sections below)
  • 3. Web Site Hacking MetaKave.com • Guessing admin name and password – hacking scripts just make tons of requests and finally guess login credentials • Sending a malicious command to database • Changing the code of website
  • 4. Web Site Hacking MetaKave.com • Changing websites scripts to control users’ browser
  • 5. Web Site Hacking MetaKave.com • Input forms to steal sensitive information like credit card credentials or admin user/password • Stealing authentication and session information to be able to use login and password
  • 6. Web Site Hacking MetaKave.com Stealing cookies, the hacks can be done on these levels: • client level (operation system and browser) • website level (software, e.g. WordPress, plugins) • server level (e.g. hosting) • network level (connection breaches, e.g. insecure wi- fi)
  • 7. Web Site Hacking MetaKave.com • The most scary thing is that someone may even not notice that he or she have been hacked • But a malicious code can be on website doing its harm for business and even for visitors silently
  • 8. How Website Can Be Hacked MetaKave.com
  • 9. How Website Can Be Hacked MetaKave.com • Hacking is constantly evolving game • New methods and vulnerabilities are discovered and used by hackers year by year
  • 10. WordPress Security Issue should be aware of MetaKave.com Here are the general vulnerable spots directly connected with your WordPress website: • WordPress core
  • 11. WordPress Security Issue should be aware of MetaKave.com Here are the general vulnerable spots directly connected with your WordPress website: • Hosting vulnerabilities • Insecurities in WordPress themes • Plugins security breaches • Insecure passwords • Website file access insecure permissions
  • 12. WordPress Security Issue should be aware of MetaKave.com • Hackers have a lot of potential because of people’s predictability, laziness or lack of awareness
  • 13. WordPress Security Issue should be aware of MetaKave.com • For example, less than 17% of WP sites use the most recent WP version as of time of writing this • It means that majority of WP sites can be hacked much easier • So it’s people who are lazy to keep their WordPress version up to date
  • 14. WordPress Security Issue should be aware of MetaKave.com • Although WordPress core is pretty secure WordPress add-ons such as themes and plugins are not reliable • The speaker says WP plugins are generally not secure at all and it’s not exaggeration
  • 15. WordPress Security Issue should be aware of MetaKave.com • All these weaknesses in plugins, themes etc take place for laziness of developers and lack of developer’s expertise in security • Serious providers update products regularly fixing new security weaknesses
  • 16. •If you need free consultation for SEO, feel free to contact us •Our Email is: [email protected] •Get Free Consultation Today •Visit us at http://metakave.com Get Free Quote MetaKave.com
  • 17. Communication Sadiq M. Alam Founder & Head of Ideas Call: (+880) 017110 56474, (+880) 09611 699 014 Email: [email protected] Skype: sadiq.alam MetaKave Dev HQ Apt 12B2, Al-Baraka Tower 252 Elephant Road, Dhaka-1205, Bangladesh