You are currently viewing Setting a Tripwire for Hackers – Hackers Can Break Your SEO – Just in Time for Christmas

Setting a Tripwire for Hackers – Hackers Can Break Your SEO – Just in Time for Christmas

changedetectionThe Christmas period must have been highlighted on web site hackers’ calendars. I have never seen so many attacks in such a short period. Hacking from Romania, Brazil, Korea, Syria – attacks from all over the world. See this post about the Chinese Hacking Army.

My theory is that the hackers target that period because web site owners are often away for holidays and will not notice that their web site has been compromised. The hackers install malware that seeks to harvest unsuspecting visitors’ bank and other service details. Or they are trying to get free links from high authority web sites. The longer the hacked web site stays live, the better for the hacker.

The problem is that hosting companies usually only carry one weekly backup which means that if your site gets hacked on the 24th December and you don’t notice until the 27th of January, the backup will also be infected. You better have another backup somewhere else.

Another problem is that after a few days, Google notices the problem and flags the web site as being dangerous to visit. I’m sure you have seen such messages.

Chances are the web site owner had no idea. Having a hacked web site is not good for SEO and it’s not good for the web site owner’s reputation.

So what can you do to identify problems with your web site?

One useful web site is called changedetection.com

As the name implies, if pages on your web site changes you will be notified via email. Just enter your web page addresses and you email and the tripwire is set. You will get an email if changedetection.com notices any changes, usually within 6 hours or so.

And if you have a Wordpres site and want to reduce the risk of brute-force attacks, I can highly recommend a plugin called 
WPS Hide Login

This free plugin hides the standard Worpress login address (domainname.com/wp-admin. You can set it to whatever you want (eg. domainname.com/dropdeadhacker I now use it on all my, and my clients’, web sites with excellent results.

It is a bit like reducing the chance of a home break-in by hiding all the doors and windows:)

This plugin is easy to install and configure, but if you need a hand, please contact me.