Roburritos, a popular restaurant in York and Lancaster, Pennsylvania, faced a significant challenge when its website was compromised by a cyberattack. The attack resulted in fake pages leading to scam sites, posing a serious threat to the business's reputation.
In response to this issue, I undertook the task of creating a new, secure website for Roburritos. Recognizing the need for a robust and modern solution, I designed and developed a brand-new site from the ground up using a custom WordPress theme and absolutely minimal plugins.
This approach not only provided a fresh and visually appealing design but also ensured enhanced security and functionality tailored to the needs of Roburritos. To fortify the new website against future attacks, I implemented several advanced security measures.
These include:
- Captchas: Integrated into forms and login pages to prevent automated bots from exploiting vulnerabilities or launching brute force attacks.
- Wordfence: Installed as a comprehensive security plugin to offer real-time threat detection, firewall protection, and detailed monitoring of potential security issues.
- Cloudflare: Configured to provide an additional layer of security through its web application firewall, DDoS protection, and performance optimization features.
- HTTPS: Implemented to encrypt data transmitted between the website and its visitors, ensuring secure communication and safeguarding sensitive information.
- User Removal: Removed old and seemingly unused SSH accounts from hosting provider and reset all passwords, as well as enabled 2FA on the hosting provider.
By incorporating these modern standards and security protocols, the new Roburritos website is better protected against threats and offers a more reliable and user-friendly experience for visitors. This upgrade not only addresses the issues from the previous attack but also establishes a strong foundation for the site's future growth and security.