Added wp hardening tips link
@@ -81,3 +81,5 @@ Attackers may use search engines to find potential vulnerable victims. By removi
|
||||
21. Enable X-Frame-Options for unauthenticated users.
|
||||
|
||||
WordPress in recent versions uses the 'X-Frame-Options' HTTP header for privileged users to tell the browser where HTML frames are allowed to be loaded from. This isn't however set for unauthenticated users, allowing for potential [ClickJacking](https://www.owasp.org/index.php/Clickjacking) attacks.
|
||||
|
||||
For further WordPress hardening tips see: [http://codex.wordpress.org/Hardening_WordPress](http://codex.wordpress.org/Hardening_WordPress)
|
||||
Reference in New Issue
Block a user