ðã第4åããå®ã¯æ»æãããŠããïŒïŒWordPressã®ã»ãã¥ãªãã£å¯Ÿçã

ð¢ ãå人ã®ããã°ã ãã倧äžå€«ïŒãâ ããã倧ééãã§ãïŒ
ããæ¥ãWordPressã®ç®¡çç»é¢ïŒSiteGuardïŒã§ãã°ã€ã³å±¥æŽãèŠãŠã¿ããâŠ
ð äžå¯©ãªãã°ã€ã³è©Šè¡ã®å±¥æŽããºã©ãªïŒ
ð æµ·å€ã®IPã¢ãã¬ã¹ããäœåºŠããã°ã€ã³ã詊ã¿ãŠãã
ð XML-RPCãçã£ãæ»æãçºçããŠãã
ããã£âŠãããªæ®éã®ããã°ã§ãæ»æãããã®ïŒããšæããŸãããã WordPressãµã€ã㯠ã©ããªèŠæš¡ã§ãæ»æå¯Ÿè±¡ã«ãªãããã§ãïŒ
ããã§ããæäœéããã¹ãã»ãã¥ãªãã£å¯Ÿçã ã宿œããŸããïŒ
ð WordPressãæ»æãããçç±ãšã¯ïŒ
â
WordPressã¯äžçã§æã䜿ãããŠããCMSïŒã·ã§ã¢ãé«ã â æ»æè
ãå€ãïŒ
â
ããã©ã«ãèšå®ã®ãŸãŸã ãšãç°¡åã«çããã
â
ç¡å·®å¥æ»æïŒç·åœããæ»æïŒãæ¥åžžçã«è¡ãããŠãã
â
è匱ãªãã©ã°ã€ã³ãããŒããçãããããšã
ð ã€ãŸããäœã察çããŠããªããšãã«ã¢ãã«ãããå¯èœæ§ãé«ãïŒ
ð¡ïž WordPressã®æäœéããã¹ãã»ãã¥ãªãã£å¯Ÿç
1ïžâ£ XML-RPCãç¡å¹åããïŒSiteGuard WP PluginïŒ ð«
â
XML-RPCã¯å€éšãããªã¢ãŒãã§æäœã§ããæ©èœ â æ»æã®æšçã«ãªããããïŒ
â
SiteGuardã®ãXML-RPCç¡å¹åããONã«ããã ãã§OKïŒ
â
ããã§XML-RPCã䜿ã£ãç·åœããæ»æïŒãã«ãŒããã©ãŒã¹ïŒãé²ããïŒ
ð ãèªåã®ãµã€ããæ»æãããŠããããïŒããšæã£ãããSiteGuardã®ãã°ã€ã³å±¥æŽããã§ãã¯ïŒ
2ïžâ£ ãã°ã€ã³URLã倿ŽããïŒwp-adminã®é èœïŒ ð
â
WordPressã®ããã©ã«ãã®ãã°ã€ã³URLïŒwp-adminïŒã¯çããããã
â
ãWPS Hide Loginããªã©ã®ãã©ã°ã€ã³ã䜿ã£ãŠURLã倿ŽïŒ
â
äžç¹å®å€æ°ã®æ»æããããã¯ã§ããïŒ
ð ç§ã¯ãã§ã«å€æŽæžã¿ã ã£ãããèšå®ããŠããªã人ã¯ä»ããããã¹ãïŒ
3ïžâ£ ãã°ã€ã³è©Šè¡åæ°ãå¶éããïŒSiteGuardã®ããã°ã€ã³ããã¯ãæ©èœïŒ ð
â
ã3åééãããäžå®æéãã°ã€ã³äžå¯ãã«ããèšå®ãONïŒ
â
ããã§ç·åœããæ»æãé²ããïŒ
â
ãã°ã€ã³å±¥æŽããã§ãã¯ããŠãäžå¯©ãªIPããªããã確èªïŒ
ð èšå®æ¹æ³ïŒãSiteGuardãâããã°ã€ã³ããã¯ãâ 3å倱æã§ããã¯ïŒæšå¥šïŒ
4ïžâ£ ã»ãã¥ãªãã£ãã©ã°ã€ã³ãå°å ¥ãã ð¡ïž
â
SiteGuard WP Plugin â äžæ£ãã°ã€ã³é²æ¢ã»WAFèšå®
â
Wordfence Security â æªæã®ããã¢ã¯ã»ã¹ããããã¯
â
Sucuri Security â ãã«ãŠã§ã¢ã¹ãã£ã³ã»ãµã€ãç£èŠ
ð æäœã§ããSiteGuard WP Pluginãã¯å ¥ããŠãããšå®å¿ïŒ
5ïžâ£ 匷åãªãã¹ã¯ãŒããèšå®ããïŒè±æ°åïŒèšå·ãæ··ããïŒ ð
â
çããŠç°¡åãªãã¹ã¯ãŒãã¯å±éºïŒ
â
12æå以äžïŒå€§æåã»å°æåã»æ°åã»èšå·ãçµã¿åããã
â
ãã¹ã¯ãŒã管çããŒã«ïŒ1PasswordãBitwardenïŒã掻çšããã®ããããã
ð ãadminããªã©ã®ã·ã³ãã«ãªãŠãŒã¶ãŒåã¯é¿ããïŒ
ð ã»ãã¥ãªãã£å¯Ÿçãã§ãã¯ãªã¹ã
â
XML-RPCãç¡å¹åïŒSiteGuardïŒ
â
ãã°ã€ã³URLã倿ŽïŒwp-adminãé ãïŒ
â
ãã°ã€ã³è©Šè¡åæ°ãå¶éïŒSiteGuardïŒ
â
ã»ãã¥ãªãã£ãã©ã°ã€ã³ã®å°å
¥
â
匷åãªãã¹ã¯ãŒããèšå®
ð¡ ããã ãã§ãã»ãšãã©ã®æ»æãé²ãããšãã§ããŸãïŒ
ð¥ ãŸãšãïŒãå人ãµã€ãã§ãçãããïŒå¯Ÿçã¯å¿ é ïŒã
ãèªåã®ãµã€ãã¯å€§äžå€«ã ããããšæã£ãŠããããç¥ããªãéã«æ»æãããŠããŸããã
ã§ããæäœéã®å¯Ÿçãããã ãã§ãããããæ»æã¯ããçšåºŠé²ããŸãïŒ
ð ãWordPressã䜿ã£ãŠãããªããä»ããã»ãã¥ãªãã£ãèŠçŽããŠã¿ããïŒã
ãµã€ãã®å®å šãå®ãããã«ãã§ããããšããå§ããŠã¿ãŠãã ããïŒð¥