Are you confident that your WordPress website is secure?

Yesterday, on the 9th of December 2021, 1.6 Million WordPress Sites were Hit With 13.7 Million Attacks In 36 Hours From 16,000 IPs. It’s safe to say this is a major concern to businesses everywhere. WordPress security is key to ensuring your website continues to deliver content for your customers and leads and business continues to operate.

 

How this can affect your business?

For most companies, websites are the main source of information about your business, therefore your WordPress being hacked means your site isn’t available for your customers and prospects, which could have a huge impact on your business and revenue. It can then lead to loss of reputation and loss of custom.

If user details are stored on the site, they may become compromised too. Loss of personally identifiable information or if your site is used to redirect and trick customers into paying  fraudulent accounts, may cause legal issues as well.

 

So what can you do?

Wordfence Premium users are protected against any exploit attempts targeting all of these vulnerabilities. Wordfence free users are protected against attacks but there is a one month delay in the updates which means this latest attack will not be protected until January 6 2021.

As a minimum we would recommend that you download and install Wordfence within WordPress. Once it has run ensure you apply the fixes to better protect your website.

Website hosting also has a significant role to play in keeping your website secure.  When choosing a hosting provider ask some questions about how they approach security.  Many hosting providers just buy space which means they have no control over the physical server let alone the firewalls that protect that server from the Internet.  Absolutely PC uses dedicated servers in secure data centres and employs the latest security techniques to ensure the infrastructure is as safe as possible.  More information about secure hosting can be found on our hosting page 

 

Let us help you

If security of your website is of concern then book a free 15 minute consultation so we can make sure your website and WordPress is secure. On the Wordfence website you can see more details about this attack here

 

Fake Microsoft Azure Alerts, Why Regulated Firms Must Not Let Their Guard Down

A sophisticated new phishing campaign is exploiting Microsoft Azure Monitor to deliver scam alerts that look entirely legitimate. For regulated firms, where client trust and data governance are non-negotiable, this evolving threat demands a more rigorous approach to email verification and incident response.

Is Your Data Security Keeping Pace With Your Business?

Most professional service firms believe their data security is under control — but confidence and compliance readiness are not the same thing. As cloud platforms, legacy systems and AI tools increase complexity beneath the surface, the gap between perceived security and actual governance grows. This post examines the questions every regulated firm should be asking about where data lives, who has access, and whether the answers would satisfy an auditor.

Why AI is the wrong tool for Passwords

Are the passwords protecting your business as strong as you think they are? AI may seem like a smart shortcut, but when it comes to security, it could be creating hidden weaknesses you can’t afford to ignore.

Beware the Next Generation of Phishing Attacks

Phishing scams are no longer crude or easy to spot. New, smarter attacks are changing the rules — and businesses need to rethink how they stay protected.

Your Browser Knows More Than You Think

Your browser doesn’t just see the websites you visit. It sees patterns, habits, and clues about your business. Most people never check what’s being shared behind the scenes. That’s a risk worth paying attention to.

Old Passwords Are Still Unlocking Systems

Old passwords your team hasn’t used in years could still unlock your systems — and attackers know it. A recent cyber incident revealed how forgotten credentials put professional service firms at serious risk, and why enforcing MFA has never been more important.

Protecting Your Business from Today’s Smarter Digital Fraud

Digital fraud is evolving at a rapid pace, and modern scams are becoming harder to spot than ever. In this article, we explore practical, everyday habits your team can adopt to stay safer online — and how a few simple tools can make a big difference.

Using AI Browsers at Work? You Need to Know This.

AI‑powered browsers can boost productivity, but they also introduce new security and data risks. Learn what businesses need to consider before adopting them.

Phishing Email: Is that email from Microsoft or a phishing attempt?

Update on how realistic phishing attacks are becoming. Could you tell the difference between a real email and a phishing one?

Windows 10 Extended Security Update

Windows 10 End of Life is in October 2025 but Microsoft is now allowing the purchase of an Extended Security Update. With different options for businesses and individuals this article looks at what is included in the program and likely costs for subscription.

Eternal Blue – Behind the Hack [Video Guide]

What would you do if a hacker had access to all of your sensitive documents and data through a machine that they had exploited, with access to control your webcam as well as monitor the screen and keyboard? It’s not something out of action movie, what we’re describing...

Your Browser Knows More Than You Think

Your browser doesn’t just see the websites you visit. It sees patterns, habits, and clues about your business. Most people never check what’s being shared behind the scenes. That’s a risk worth paying attention to.

Business IT Security – Using 2FA

Business IT security is often about doing the basics really well, like securing your accounts using 2FA. In this post find out why 2FA helps to keep your business cyber secure

Beware the Next Generation of Phishing Attacks

Phishing scams are no longer crude or easy to spot. New, smarter attacks are changing the rules — and businesses need to rethink how they stay protected.

Can your business cope with winter disruption?

Thanks to the unseasonably mild weather we’ve enjoyed this autumn, it’s easy to forget that winter, and all the potential havoc it can wreak, is soon to follow. It’s hard not to feel that our weather has become more unpredictable and freak storms just aren’t, well,...

Windows 10 Extended Security Update

Windows 10 End of Life is in October 2025 but Microsoft is now allowing the purchase of an Extended Security Update. With different options for businesses and individuals this article looks at what is included in the program and likely costs for subscription.

Is Your Data Security Keeping Pace With Your Business?

Most professional service firms believe their data security is under control — but confidence and compliance readiness are not the same thing. As cloud platforms, legacy systems and AI tools increase complexity beneath the surface, the gap between perceived security and actual governance grows. This post examines the questions every regulated firm should be asking about where data lives, who has access, and whether the answers would satisfy an auditor.

Why AI is the wrong tool for Passwords

Are the passwords protecting your business as strong as you think they are? AI may seem like a smart shortcut, but when it comes to security, it could be creating hidden weaknesses you can’t afford to ignore.

Old Passwords Are Still Unlocking Systems

Old passwords your team hasn’t used in years could still unlock your systems — and attackers know it. A recent cyber incident revealed how forgotten credentials put professional service firms at serious risk, and why enforcing MFA has never been more important.

Ransomware – Behind the Hack [Video Guide]

How would your business react if you were locked out of every single file stored on any PC or cloud platform in your network, with the only way to free your data being to pay vast sums of money to a hacker? Well, ransomware does just that. Despite how crippling this...