Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

You can make the the code read-only (from the web-server's perspective) and have auto update if you use a tool like WP-CLI and a cron job.

I've had a few customer's sites on WP for decades without any hacks. But I also carefully restrict their plug-ins, and disable PHP in any of the upload directories.



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: