• Hello, I use a plugin to send website en database backups to Amazon S3. I am not backing up the wordpress core files, so the wp-config file is not in my backups.

    So the database username/password (in wp-config) is also not in my backups.

    Do I still need to encrypt my database backup? Is there any thing a hacker can do with a database file without having the username/password?

    Thanks ??

Viewing 1 replies (of 1 total)
  • Moderator Yui

    (@fierevere)

    永子

    Your db contains all the text content of your site, its settings, user accounts (with password hashes),
    in case you’re using some plugins – its settings can be very sensitive, customer data, payment gateway data, SMTP plugin email account data

    If you can encrypt that – its fine. But it should be done in a secure way, symmetric encryption shouldnt be considered secure, PGP would be fine, if you can.

Viewing 1 replies (of 1 total)
  • The topic ‘Encrypt database for backups?’ is closed to new replies.