[ Two Passwords = Two Bad ]
Image courtesy of eChunks.com
Here is a quick security tip for people using popular apps on the Web. That is, apps like WordPress that may be widely used and targeted by bad actors and/or automated scripts. It’s all about adding another layer of security by hardening admin-level usernames..

Every now and then, I get an email letting me know that someone has requested a password reset for one of my admin-level WordPress accounts. The email notification was sent from WordPress and looked similar to the following:

Someone has requested a password reset for the following account:

https://example.com/

Username: myusername

If this was a mistake, just ignore this email and nothing will happen.

Besides this just being annoying, random people/scripts should not be able to guess your admin username, let alone request to change it.

Another layer of security

Even if it’s virtually impossible to change somebody else’s password without access to their email account, keeping admin-level usernames random and difficult to guess adds another layer of protection to your site. So that’s the basic idea:

Never use the default “admin” or similar username. Always change it to something that is random and/or difficult to guess.

Why? One good reason is the very common brute-force type of attack, where scumbags run scripts trying different password/username combinations to gain access to your site. This is significantly more time-consuming and difficult to accomplish when having to guess not just the password, but the username as well.

It’s a simple yet effective way to add another layer of security to your site.

Using a difficult to guess username is like having two passwords for your account. I think this is a good way to add more protection, especially for admin-level accounts.

Keep it secret

It’s important to understand that some CMS/apps may display the admin username on the front-end of your site. For example, depending on your theme and plugins, WordPress may do this on various types of page views (e.g., Author Archives). So if possible, change the settings or template code to prevent this.

For example, in WordPress you can change which version of your name is displayed by visiting your User Profile settings. There you can change the Display Name to something other than the actual admin username. So even if you are using the default username, “admin”, or something else that is easy to guess, you can “hide” it from evil-doers by simply setting the Display Name setting to something else.



No Comments
Comments to: Use Strong Usernames for Better Security

Recent Articles

Good Reads

Introduction to CNA    CNA or Certified Nursing Assistant helps permanently or temporarily disable patients to provide them regular care. The duties of these professionals vary according to the condition of patients and their care-related requirements. These include measuring temperatures, managing the hygiene of patients, and many more.    Requisites to Become a CNA from […]

Worlwide

Overview VipsPM – Project Management Suite is a Powerful web-based Application. VipsPM is a perfect tool to fulfill all your project management needs like managing Projects, Tasks, Defects, Incidents, Timesheets, Meetings, Appointments, Files, Documents, Users, Clients, Departments, ToDos, Project Planning, Holidays and Reports. It has simple yet efficient layout will make managing projects easier than […]
Introduction to CNA    CNA or Certified Nursing Assistant helps permanently or temporarily disable patients to provide them regular care. The duties of these professionals vary according to the condition of patients and their care-related requirements. These include measuring temperatures, managing the hygiene of patients, and many more.    Requisites to Become a CNA from […]

Trending

Singapore is recognised globally as a prime destination for foreign investors. Its business structure is well-developed, and its tax system is favourable to business owners. The government has a strong support system for entrepreneurs and provides legal protection for intellectual property rights. All of these conditions create an environment that is ideal for Singapore company […]
2020 has been a year that represents aggressive and sustained volatility with a confluence of unexpected situations, including economic shifts and market disturbance confluence. The COVID-19 pandemic forces businesses to adjust their methods of operations to ensure survival. These adjustments become the trajectory and guidance of what 2021 should look like and what companies should […]
COVID-19 pandemic has affected Thailand’s economy and labor market. World Bank’s Thailand Economic Monitor predicted that it would take Thailand over two years to return to its pre-COVID-19 growth and domestic product output levels. Although the country has successfully curbed the pandemic tide over the last few months, the economy remains severely hit. Nevertheless, heavily […]

Login

Welcome to VipsPatel.com

Brief and amiable onboarding is the first thing
Join VipsPatel.com

18 − 9 =