WordPress Security
- Change default admin username
- Use strong passwords
- Keep WordPress, themes, and plugins updated
- Install Wordfence or Sucuri security plugin
- Disable file editing in wp-config.php
- Limit login attempts
- Use SSL/HTTPS
- Regular backups with UpdraftPlus
- Hide WordPress version