John's book which will show you how to secure your blog against intruders.
Read some of John's WordPress security tips.
What others are saying about WordPress Defender from around the Web.
About John Hoff and this site.

Keeping a Secure WP Blog Using the BBQ Plugin

By John Hoff
Author of the WordPress Defender eBook

Jeff Starr of the blog Perishable Press and author of the book, Digging Into WordPress has developed a really cool plugin called, Block Bad Queries... or BBQ for short.

In his article, Protect WordPress Against Malicious URL Requests, he tells us:

This script checks for excessively long request strings (i.e., greater than 255 characters), as well as the presence of either “eval(” or “base64” in the request URI. These sorts of nefarious requests were implicated in the September 2009 WordPress attacks.


Why This Plugin is Important

One of the many ways a WordPress cracker will try to hack their way into your blog is through what is called, SQL injection.

There are a few things you can do to help secure WP against these kinds of attacks, one of them is by installing this plugin. Another great way is to make sure you stay up to date with your blog's upgrades.

SQL Injection usually involves a hacker going up to their web browser's address bar and adding a bunch of, what would seem to be random, strings of characters after your web address.

So for example, they might enter this into their web browser's address bar:

http://yourblog.com/index.php?cat=999+UNION+SELECT+null,
CONCAT(666,CHAR(58),user_pass,CHAR(58),666,CHAR(58))
,null,null,null+FROM+wp_users+where...

There are different "things" or "code" someone can try to crack into your blog, and what this plugin helps thwart are those with excessively long characters.

So if you're looking for a good plugin to work quietly in the background and help secure WP, I definitely recommend the block bad queries plugin.

WordPress Defender

Keep a Secure WP Blog
My Personal WordPress Security Guide
Plus 16 Videos



Get your free

Secure WordPress
Mini Course Here

Videos Included

Get immediate access to our email video mini-course, "Secure WordPress," and watch as we lock down your blog against intruders. Simply enter your name and email address below to get access.

Mini Course Books







Interesting Articles
WordPress Security - So You Think Your Blog Is Safe?
Protect WordPress Blog from Intruders
Blog Lockdown - It's a Well-Rounded System
5 Reasons Why WordPress Blog Security is So Important
Keeping a Secure WP Blog Using the BBQ Plugin

© 2011 John Hoff, All Rights Reserved


Home | About Us | Sitemap | Disclaimer | Privacy Policy | Secure WP Articles | Affiliate Program
Get the WordPress Defender eBook | Contact Us