ROCKETTHEME IS CLOSING ON JUNE 30, 2025. As a thank-you to our community, enjoy 50% off all themes with the promo code THANKYOU before we shut down.
Read our Farewell Blog Post for more details.
I have picked up a few failed attempts from a hacker trying to access my admin section using a login and password that I changed a few weeks ago, is there a way of preventing someone from scanning posted form variables for logins?
it's a tiny joomla! plug-in that adds ?WoRDxXx to the end of your admin path.
joomla/administrator/index.php?WoRDxXx
for example - if you don't enter the exact path it kicks you back to say - home page of site.
Make sure you read the documentation before enabling it so you don't lock yourself out. (and if you do, you can change the path-word via phpmyadmin mysql edit.
I also install SSL and use https for admins accessing the ACP.
Thanks, I have RS Firewall, but what concerned me was that they managed to get a user and password that i only changed not long ago. I think i will invest in ssl thanks