Your WP theme has a security hole

8
11
442 followers

If you are using Wordpress for your site, chance is you are using a good-looking theme for your site.

Do you know that these themes usually has a security hole that allow hackers to insert bad codes into your site?

Yes, even those theme that you downloaded from trusted theme design companies might be vunlerable.

Just scroll down for a 2-minutes DIY fix for this security issue, otherwise here's the story cut short: most of themes today uses a piece of code called TimThumb and there is a HUGE problem when the theme-maker uses an outdated version of TimThumb.. it allow hackers to insert codes to your site.


This free plugin will scan your website and check for outdated TimThumb file.
It will then update it, so bad codes cannot find their way to your site.

1. Login to your website's dashboard.
2. Click Plugins. Click add new.
3. Search for "Timthumb Vulnerability Scanner". The plugin is by Peter Butler
4. Install it and activate.
5. Go to Tools> TimThumb Scanner.
6. Click scan!
7. Select the files that are vulnerable (in red) and click fix/update.
8. Done!


I recommend you to scan all your wordpress sites with this, to improve the security.

Regards

Paci

8
11

Join FREE & Launch Your Business!

Exclusive Bonus - Offer Ends at Midnight Today

00

Hours

:

00

Minutes

:

00

Seconds

2,000 AI Credits Worth $10 USD

Build a Logo + Website That Attracts Customers

400 Credits

Discover Hot Niches with AI Market Research

100 Credits

Create SEO Content That Ranks & Converts

800 Credits

Find Affiliate Offers Up to $500/Sale

10 Credits

Access a Community of 2.9M+ Members

By continuing, you agree to our Terms of Service and Privacy Policy
No credit card required

Recent Comments

11

thank you for the info my site has been hacked 4 times this month so far. I will give this a try. Thank you for posting.

Thank you for this great helpful addition.

Great stuff cheers

Thanks for the help and the heads up.

Wordpress sites are hacked all the time, of course the hackers like to destroy or infiltrate the ones with lots of traffic first for obvious reasons. Some basic steps will stop over 95% of all hacking attempts... the hole mentioned above is one of the favorites.

I button down all my sites in this manner... http://klrrider.com/security/is-a-wordpress-security-check-in-order-for-you-part-2/71/

There is nothing worse than having your site destroyed when you could have prevented it easily.

Hi klrrider, really good sharing! thanks!

Thank you so much. Just scanned mine and so far I'm ok. Will add to each site I create.

Added and thanks!

Thanks guys!

Paci, I want to thank you for this wonderful post. We had one of our sites hacked and did not know how it was done. This is great! I am now adding this plugin to all my Wordpress sites. This is another good reason to be a member of WA.

Paci, Thanks for taking the time to do this for us, much appreciated,
Hudson

See more comments

Join FREE & Launch Your Business!

Exclusive Bonus - Offer Ends at Midnight Today

00

Hours

:

00

Minutes

:

00

Seconds

2,000 AI Credits Worth $10 USD

Build a Logo + Website That Attracts Customers

400 Credits

Discover Hot Niches with AI Market Research

100 Credits

Create SEO Content That Ranks & Converts

800 Credits

Find Affiliate Offers Up to $500/Sale

10 Credits

Access a Community of 2.9M+ Members

By continuing, you agree to our Terms of Service and Privacy Policy
No credit card required

2.9M+

Members

190+

Countries Served

20+

Years Online

50K+

Success Stories

The world's most successful affiliate marketing training platform. Join 2.9M+ entrepreneurs building their online business with expert training, tools, and support.

© 2005-2025 Wealthy Affiliate
All rights reserved worldwide.

🔒 Trusted by Millions Worldwide

Since 2005, Wealthy Affiliate has been the go-to platform for entrepreneurs looking to build successful online businesses. With industry-leading security, 99.9% uptime, and a proven track record of success, you're in safe hands.