<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Web Strategy Workshop &#187; wordpress maintenance</title>
	<atom:link href="http://webstrategyworkshop.com/tag/wordpress-maintenance/feed/" rel="self" type="application/rss+xml" />
	<link>http://webstrategyworkshop.com</link>
	<description>Web Strategies To Help You Master Your Domain</description>
	<lastBuildDate>Mon, 26 Apr 2010 15:11:56 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0.1</generator>
		<item>
		<title>How To Take Care Of WordPress</title>
		<link>http://webstrategyworkshop.com/wordpress-maintenance-guide/</link>
		<comments>http://webstrategyworkshop.com/wordpress-maintenance-guide/#comments</comments>
		<pubDate>Tue, 13 Oct 2009 02:51:05 +0000</pubDate>
		<dc:creator>Andy Brudtkuhl</dc:creator>
				<category><![CDATA[Featured]]></category>
		<category><![CDATA[Technology]]></category>
		<category><![CDATA[amazon s3]]></category>
		<category><![CDATA[backup wordpress]]></category>
		<category><![CDATA[WordPress]]></category>
		<category><![CDATA[wordpress maintenance]]></category>

		<guid isPermaLink="false">http://webstrategyworkshop.com/?p=2398</guid>
		<description><![CDATA[Learn how to properly take care of your WordPress site - from backups to plugins. Keep your site up to date and clean it up regularly to keep it running smooth. WordPress security is a serious issue if you are using it for business.


Related posts:<ol><li><a href='http://webstrategyworkshop.com/google-website-optimizer-plugin-for-wordpress/' rel='bookmark' title='Permanent Link: Google Website Optimizer Plugin for WordPress'>Google Website Optimizer Plugin for WordPress</a></li>
<li><a href='http://webstrategyworkshop.com/google-wave-in-screenshots/' rel='bookmark' title='Permanent Link: Google Wave In Screenshots'>Google Wave In Screenshots</a></li>
</ol>]]></description>
			<content:encoded><![CDATA[<p><img class="alignleft" src="http://48web.s3.amazonaws.com/Assets/Icons/wordpresslogo280blue.png" alt="" width="100" />A number of our WordPress sites got hacked recently. The same thing happened to <a href="http://scobleizer.com/2009/09/05/i-dont-feel-safe-with-wordpress-hackers-broke-in-and-took-things/" target="_blank">Robert Scoble</a> and <a href="http://www.centernetworks.com/wordpress-exploited-284-release" target="_blank">Allen Stern</a> &#8211; A-List bloggers. This has become a widespread problem and will inevitably get worse. Don&#8217;t worry, <a href="http://WordPress.org/download" target="_blank">the latest version of WordPress</a> fixes this problem &#8211; but the threat exists. As with other popular software and services &#8211; Windows and Twitter come to mind &#8211; that have enormous critical mass, WordPress has succumbed to being a target of hackers.</p>
<p>If you had visited this site recently <em>(or <a href="http://48WebConsulting.com" target="_blank">our company website</a>, <a href="http://getanewbrowser.com" target="_blank">tech blog</a>, and i<a href="http://managingtheedge.com" target="_blank">nternet business podcast site</a>)</em> , you may have seen something like this&#8230;</p>
<p><img class="aligncenter size-full wp-image-2401" title="WordPressGotHacked" src="http://webstrategyworkshop.com/wp-content/uploads/2009/10/WordPressGotHacked.png" alt="WordPressGotHacked" width="600" /></p>
<p>Some of you may see similar warnings now. <strong>This sucks</strong>.</p>
<p>Our sites are being &#8220;reconsidered&#8221; by the powers that be &#8211; which is a process we&#8217;ll cover in a separate blog post. We&#8217;ve taken many steps to ensure that this disturbance in our business is not felt again. We want to share this with you &#8211; so you to can avoid having your WordPress site compromised. This is business afterall &#8211; and <a href="http://getanewbrowser.com/2009/05/cloud-disastery-recovery-plan-rough-draft/" target="_blank">we need disaster plans</a>.</p>
<p>Here is our plan for keeping our WordPress sites humming like a well oiled Honda.</p>
<h3>Keep WordPress Up To Date</h3>
<p>This is huge &#8211; and also the reason we got hacked. You see, we were too busy to update our WordPress sites when WordPress 2.8.4 came out &#8211; <a href="http://wordpress.org/development/2009/08/2-8-4-security-release/" target="_blank">which happened to include major security fixes</a>. Lesson learned.</p>
<ol>
<li>Subscribe to <a href="feed://wordpress.org/development/category/releases/feed/" target="_blank">this RSS feed</a> to stay in the loop on new WordPress releases</li>
<li>Subscribe to the email newsletter on <a href="http://wordpress.org/download/" target="_blank">this page</a></li>
<li>When you are notified of a new release, upgrade immediately &#8211; <a href="http://codex.wordpress.org/Upgrading_WordPress" target="_blank">it is easy</a></li>
</ol>
<p>Had we been doing this previously we would have avoided this outcome. You see &#8211; we should have known and taken action when the <a title="WordPress Security" href="http://wordpress.org/development/2009/09/keep-wordpress-secure/" target="_blank">founder of WordPress alerts</a> both aforementioned lists that&#8230;</p>
<blockquote><p>&#8220;A stitch in time saves nine. I couldn’t sew my way out of a bag, but it’s true advice for bloggers as well — a little bit of work on an <a style="text-decoration: none; color: #4ca6cf; font-weight: normal; border-bottom-width: 1px; border-bottom-style: solid; border-bottom-color: #dfdfdf;" href="http://codex.wordpress.org/Upgrading_WordPress">upgrade now</a> saves a lot of work fixing something later.&#8221;</p></blockquote>
<p>Again, lesson learned.</p>
<p>UPDATE: <a href="http://wordpress.org/development/2009/10/wordpress-2-8-5-hardening-release" target="_blank">WordPress 2.8.5 Released</a></p>
<h3>Always Have A Backup</h3>
<p>We had been backing up WordPress when it got hacked &#8211; but only the database using <a href="http://wordpress.org/extend/plugins/wp-db-backup/" target="_blank">WP-DB-Backup</a> <em>(an excellent plugin but only has database backups)</em>. The problem is this security vulnerability had something to do with the filesystem and the files were targeted, not the database. Specifically, your theme files were targeted and malicious code was placed inside of the footer.php file in every case we had.</p>
<p>So we developed a <a href="http://CloudBacks.com/wordpress-backup-plugin/" target="_blank">WordPress Backup Plugin</a> that met our needs. This plugin backs up both the WordPress database and files &#8211; including themes and uploads &#8211; to <a href="http://getanewbrowser.com/2009/01/why-your-business-needs-amazon-s3/" target="_blank">Amazon S3</a>. This literally costs us pennies per month across a network of WordPress blogs. Our backups run daily and it&#8217;s a great relief knowing that if this happens again we can fix it immediately and don&#8217;t have to worry about storage.</p>
<p>While we charge for the plugin, there are many free alternatives. You can very easily <a href="http://codex.wordpress.org/WordPress_Backups" target="_blank">manually backup WordPress</a> to your hard drive, Dropbox, or Amazon S3. You could also use plugins like WP-DB-Backup in combination with another plugin like <a href="http://wordpress.org/extend/plugins/wordpress-backup/" target="_blank">WordPress Backup</a> to run automated WordPress backups.</p>
<p>It doesn&#8217;t matter how you backup your WordPress site &#8211; it just matters that you do it. So go do it. <em>Now</em>.</p>
<p>We&#8217;ll be here when you are done =)</p>
<h3>Keep It Clean</h3>
<p>How many of those plugins are you using? Do you really need <em>that</em> one? How about all those themes that you never used? That&#8217;s right &#8211; get them out of there. Delete them or, if you want to keep them for some reason, put them in Dropbox or on Amazon S3. The less clutter you have, especially in unused or inactive plugins, the better your site will run.</p>
<p>Keep the spam problem under control. Delete spam comments on a regular basis or use a comment system like <a href="http://www.intensedebate.com/" target="_blank">Intense Debate</a> or <a href="http://disqus.com" target="_blank">Disqus</a>. Always <a href="http://akismet.com/" target="_blank">use Akismat</a> to help out &#8211; it&#8217;s by WordPress for WordPress to control spam comments. It has blocked hundreds of thousands of spam comments for us. An out of control spam problem will affect performance and create tons of busy work for you when you want to clean it up.</p>
<h3>Use The Right Tools</h3>
<p>We found out our sites got hacked via a notification from the extremely useful <a href="https://www.google.com/webmasters/tools/" target="_blank">Google Webmaster Tools</a>. If you don&#8217;t have an account get one immediately. <a title="Google Webmaster Tools" href="http://webstrategyworkshop.com/google-webmaster-tools-matt-cutts/">There are several reasons you should</a> &#8211; among them you get malware notifications telling you about your problem.</p>
<p>Use the <a href="http://wordpress.org/extend/plugins/wp-super-cache/" target="_blank">WP Super Cache</a> plugin. This plugin makes your site run much more efficiently and helps it to load faster. Another plugin we recommend &#8211; aside from a WordPress backup plugin &#8211; is <a href="http://wordpress.org/extend/plugins/wp-security-scan/" target="_blank">WP Security Scan</a>. This excellent plugin scans your WordPress site for security vulnerabilities and tells you how to correct them. Do this once a month.</p>
<p>UPDATE: Check out the <a href="http://wordpress.org/extend/plugins/exploit-scanner/" target="_blank">WordPress Exploit Scanner</a> to see if this has happened to you!</p>
<h3>Summary</h3>
<ol>
<li>Stay Up To Date</li>
<li>Always Have A Backup</li>
<li>Keep It Clean</li>
<li>Use The Right Tools</li>
</ol>
<hr /><strong>Do you have a question or comment? Let us know below or jump into the forums!</strong></p>
<p><em>Also &#8211; we want to thank those of you who dropped us a note to tell us about the issues on some of our sites. It is great to know there&#8217;s a community out there looking out for you! Thank You!</em></p>


<p>Related posts:<ol><li><a href='http://webstrategyworkshop.com/google-website-optimizer-plugin-for-wordpress/' rel='bookmark' title='Permanent Link: Google Website Optimizer Plugin for WordPress'>Google Website Optimizer Plugin for WordPress</a></li>
<li><a href='http://webstrategyworkshop.com/google-wave-in-screenshots/' rel='bookmark' title='Permanent Link: Google Wave In Screenshots'>Google Wave In Screenshots</a></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://webstrategyworkshop.com/wordpress-maintenance-guide/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
	</channel>
</rss>
