Strategy

Why Your WordPress Site Is Never Really Secure

Update: On Monday, December 18, 2017, there was a massive distributed brute force attack targeting WordPress sites. The attack used a large number of attacking IPs where each IP generated a huge number of these attacks. It is the largest, most aggressive breach to date, with over 14.1 million brute force attempts per hour.


WordPress security solutions are mere bandaids, subject to more attacks in the future.

Attacks like these are why your Wordpress is never really secure. With more than 87 million sites worldwide, WordPress is the leading CMS of the internet. But being a leader in your space doesn't come without its pitfalls. WordPress's massive site structure has opened them up to many security threats since the software's 2003 launch.

Another severe hacking event shocked WP users in February 2017, when attackers penetrated 1.5 million sites thanks to a loophole within the WordPress REST API. The REST API was touted as a connector to enhance communication with other web programs, revolutionizing WP's own outdated API . A vulnerability in the REST API allowed hackers to infiltrate nearly 2 million sites — compromising up to 350,000 sites in one campaign alone.

The only way WordPress core developers can patch significant vulnerabilities within their software is to deploy patches in the form of product updates. WP has deployed 238 releases over the past 14 years, and many of them have been to fix security problems .

Still, many site developers disable the automatic update feature because it could impact their site's design and function. About 5% of WordPress sites are not updated with the latest, most secure version.

Securing your WordPress site is costly, too. Simply purchasing a WordPress site isn't enough to protect your data. Users have to buy WordPress security plugins and installs from third-party companies to not only protect their site, but stay updated on new vulnerabilities.

One of the primary reasons WordPress is open to security threats is because it operates as a decentralized CMS. That means each site — all 87M+ of them — has to be updated individually. So every time there is a security threat or a big fix, those updates are not completed on a set timeline. The time it takes for your site to be updated could be catastrophic.

RebelMouse is a centralized CMS, which means all of our updates are quickly deployed at once to every site we power. We often deploy multiple updates every day. Our proprietary technology is protected internally, making it nearly impossible for a hacker to crack.

Site security is one of the many reasons RebelMouse is the best CMS. Join us and reach a larger audience — safely.

What Is RebelMouse?
Request a Proposal

Where
Websites Are Built

The Fastest Sites in the World Run on RebelMouse

Let’s Chat

new!

RebelMouse Performance Monitoring

Real-Time Core Web Vitals

Get Started
DISCOVER MORE

Our Core Features

Our platform is a complete digital publishing toolbox that's built for modern-day content creators, and includes game-changing features such as our:

Why RebelMouse?

Unprecedented Scale

RebelMouse sites reach more than 120M people a month, with an always-modern solution that combines cutting-edge technology with decades of media savvy. And due to our massive scale, 1 in 3 Americans have visited a website powered by RebelMouse.

120M+ Users
550M+ Pageviews
17+ Avg. Minutes per User
6+ Avg. Pages per User

Today's Top Websites Use RebelMouse

Thanks to the tremendous scale of our network, we are able to analyze a wealth of traffic data that informs our strategies and allows us to be a true strategic partner instead of just a vendor.

What Clients Say

We’re here to help you weigh and understand every tech and strategic decision that affects your digital presence. Spend less time managing everything yourself, and more time focused on creating the quality content your users deserve.

Case Studies

A Team Built Like No Other

RebelMouse employs a unique, diverse, and decentralized team that consists of 70+ digital traffic experts across more than 25 different countries. We have no central office, and we cover every time zone to ensure that we’re able to deliver amazing results and enterprise-grade support around the clock.

Our team is well-versed in all things product, content, traffic, and revenue, and we strategically deploy ourselves to help with each element across all of our clients. We thrive on solving the complex.

Let's Chat