CMS Recommendation

Out of context: Reply #1

  • Started
  • Last post
  • 7 Responses
  • monNom1

    Most security issues result from neglect. Security is a process, not a deliverable.
    You can harden wordpress, but it requires somebody to be on top of things, monitoring, keeping updated, etc. That's an ongoing labour cost, which is very different from a static website that you can set and forget.

    Open-source software tends to be vulnerable simply because it's easy to see poor code practices in the source-code, and because it's free and anyone with a youtube tutorial can install wordpress, so you have a lot novice installations that might not consider security.

    Any CMS you choose is going to be somewhat insecure. Reduce your surface area by limiting plugins and keep on top of updates. If you want to be really secure, make it a static website.

View thread