Course Overview

WordPress is the most extended content management system (CMS) on the Internet, in 2020 it accounted for more than 90% of the total websites infected. Even if it is a nice and intuitive platform to create websites, we must understand that the main goal of WordPress is not security. Nevertheless, WordPress platforms keep being updated and patched to avoid most of the security vulnerabilities that have been discovered we should learn how the sites can be attacked in order to protect them better.

In this course, you will learn why WordPress should be secure and which are the main vulnerabilities that can be found on a WordPress website. The WordPress CMS is composed of different components, a PHP server, a SQL server, and other overlying components. Each server or service should be secured individually to ensure the highest degree of security. 

This course is focused on WordPress security in current and future deployments. You will learn about WordPress security best practices and enhancements that focus on improving security. Further, you will understand how an attacker can take advantage of the WordPress configuration and other server variables.

This course is focused on helping you fully appreciate the need for securing any default WordPress installation and best practices and standards to meet the goal of the most secure, most protected WordPress site possible.

What You Will Learn

  • Understand the importance of securing and protecting WordPress deployments
  • Familiarize with the biggest threats to WordPress installations
  • Learn about components of WordPress Installation
  • Familiarize with the most common vulnerabilities and why they are dangerous
  • Understand the practical steps necessary to protect your deployments

Program Curriculum

  • High-Level Overview
  • Motivation to Secure Your WordPress
  • $7 Million Cybersecurity Scholarship by EC-Council
  • Chapter 1 Quiz

  • Overview of WordPress Architecture
  • Potential Vulnerabilities and Risks
  • Set Up Default WordPress
  • Chapter 2 Quiz

  • What is Web Pentesting
  • SQL Injection
  • XSS Attack
  • Brute Force Attack
  • Other Attacks
  • Chapter 3 Lab
  • Chapter 3 Quiz

  • Server Configuration
  • PHP Configuration
  • SQL Configuration
  • Chapter 4 Lab
  • Chapter 4 Quiz

  • Admin Accounts
  • WordPress Configuration
  • Avoiding Spam
  • Chapter 5 Lab
  • Chapter 5 Quiz

  • Best Practices to Secure Our Deployment
  • WordPress Practices
  • Additional Plugins to Improve Security
  • Chapter 6 Quiz

  • How to Perform a WordPress Assessment?
  • How to Document Findings?
  • Disclosure and Presentation of Findings
  • Lab
  • Chapter 7 Lab
  • Chapter 7 Quiz

  • Overview of Key Takeaways from Course
  • Thank You and Contact Information
Load more modules

Instructor

Salvador Beltrán Obiol

Salvador Beltrán Obiol worked for the largest telecommunication infrastructure provider in Spain and is now working in the cybersecurity department of a Fortune 500 company in the US. His experience extensive experience in research and work environments gives him a unique perspective on systems. His knowledge of telecommunications and networks (wired and wireless) allows for a well-rounded view of infrastructures. Salvador has managed deployments involving thousands of network equipment and endpoints. Allowing the opportunity to see, prevent, and help recover from several security incidents in different infrastructures in several sectors, including critical resources and infrastructure.

Join over 1 Million professionals from the most renowned Companies in the world!

certificate

Empower Your Learning with Our Flexible Plans

Invest in your future with our flexible subscription plans. Whether you're just starting out or looking to enhance your expertise, there's a plan tailored to meet your needs. Gain access to in-demand skills and courses for your continuous learning needs.

Monthly Plans
Annual Plans
Save 20% with our annual plans!

Pro

Ideal for continuous learning, offering extensive resources with 600+ courses and diverse Learning Paths to enhance your skills.

$ 499.00
Billed annually or $59.00 billed monthly

What is included

  • 700+ Premium Short Courses
  • 50+ Structured Learning Paths
  • Validation of Completion with all courses and learning paths
  • New Courses added every month
Early Access Offer

Pro +

Experience immersive learning with Practice Labs, CTF Challenges, and exclusive EC-Council certifications for comprehensive skill-building.

$ 599.00
Billed annually or $69.00 billed monthly

Everything in Pro and

  • 800+ Practice Lab exercises with guided instructions
  • 150+ CTF Challenges with detailed walkthroughs
  • New Practice Labs and Challenges added every month
  • 3 Official EC-Council Essentials Certifications¹ (retails at $897!)
    Exclusive Bonus with Annual Plans

¹This plan includes Digital Forensics Essentials (DFE), Ethical Hacking Essentials (EHE), and Network Defense Essentials (NDE) certifications. No other EC-Council certifications are included.

Related Courses

1 of 8