I use rockettheme templates for many years now. And I am quite happy with them. But I have one question about them: Why is it possible that my sites are so many times hacked? I use no extra modules or extra scripts. I use strong passwords.
I took the site offline because my host provider told me the site was possibly hacked. I will have to wait to see if my mail domain is still used to send spam.
Am I the only one or are there other web masters with the same problem? And what can we do about it?
With all the CMS's it's the DataBase that's the entry point for hackers. You allow them to enter code to subscribe or provide their email and instead they enter code to get access to your DB.
Your best weapon is KNOWLEDGE to keep the "script kiddies" (Google if you don't know what this means) at bay.
I'm a web designer. We built many wordpress sites.
The only site that was hacked was your Rocket Theme template.
The site was down, and the function.php was injected with crazy codes.
We also don't have any extensions other than a backup module.
I believe it's the lack of security built in the template.
Now, we have to either choose to "renewal subscription" to get the updated version so we can have "better security" so we can update to WP 3.+
or
We have to choose to go somewhere else for template that provide "free update" for security reasons.