Equifax is the latest victim of hackers,  having had 143 million records stolen in  a cyber security breach, according to BBC.

Amongst wider concerns and some scaremongering about the General Data Protection Regulation (GDPR) many of us are concerned about security.

For all the talk, many miss the obvious. So, website owners, especially Wordpress website owners, here is one thing which you can do in less than 5 minutes which could completely remove one of the main attack vectors against your website.

  1. Log in to your CMS
  2. Find the list of users
  3. Locate and remove the default account

Sounds obvious doesn’t it?

Surprisingly often, the default account and password are left in place. It’s a gift for hackers. Really, you should only use an account or accounts created specifically for your user(s). Get rid of anything that came with the software – it’s effectively public knowledge.

Although this method probably wouldn’t have helped Equifax, it’s simple, easy and often overlooked.

