Skip to content
View in the app

A better way to browse. Learn more.

Web Designer Forum

A full-screen app on your home screen with push notifications, badges and more.

To install this app on iOS and iPadOS
  1. Tap the Share icon in Safari
  2. Scroll the menu and tap Add to Home Screen.
  3. Tap Add in the top-right corner.
To install this app on Android
  1. Tap the 3-dot menu (⋮) in the top-right corner of the browser.
  2. Tap Add to Home screen or Install app.
  3. Confirm by tapping Install.

Is WordPress better than a custom CMS?

Featured Replies

I don't have anything to comment on the design; its a bit non descript and plain.

Would I eat there? Based on the site, nope.

 

I have no idea why so many people use word press for websites; the simplest hackers in the world could break a site like this as easy as a-b-c. Thats why we use our custom cms.

  • Replies 85
  • Views 12.5k
  • Created
  • Last Reply

Top Posters In This Topic

Most Popular Posts

  • Renaissance-Design
    Renaissance-Design

    1. Open source means more and better developers, problems are found and fixed quickly   2. That doesn't make sense - MySQL injection is an attack vector, not a technique you'd be using   4. Anyth

  • Renaissance-Design
    Renaissance-Design

    You're welcome to attack my site if you feel you can prove WordPress is insecure. It's not illegal if I've invited you to. One condition: if you succeed you document how you managed to do so, and shar

  • RyanSMcFadyen
    RyanSMcFadyen

    I'm sorry but it really grinds my gears when people make this argument. It doesn't validate the point you are trying to make. 47 million of those results could be making the exact opposite point you a

I have no idea why so many people use word press for websites; the simplest hackers in the world could break a site like this as easy as a-b-c. Thats why we use our custom cms.

 

Could you expand upon that? I'm often hearing about WP sites being hacked into. Although I have used my own CMS up till now, I'm about to embark on a couple of WP ones. Why is it easily hackable?

Could you expand upon that? I'm often hearing about WP sites being hacked into. Although I have used my own CMS up till now, I'm about to embark on a couple of WP ones. Why is it easily hackable?

 

Never had problems yet myself fortunately - but if it's a concern get in touch with Renaissance as he offered a custom htaccess file to prevent this a while ago.

Could you expand upon that? I'm often hearing about WP sites being hacked into. Although I have used my own CMS up till now, I'm about to embark on a couple of WP ones. Why is it easily hackable?

 

It's not, it's one of the most secure CMS out there. Like all software these days it's had security flaws but they're quickly fixed in patches and updates. Nearly all of the hacks for it are based around bad configurations, incorrect file/folder permissions or security issues on the server WP is installed on not the actual software.

It's not, it's one of the most secure CMS out there. Like all software these days it's had security flaws but they're quickly fixed in patches and updates. Nearly all of the hacks for it are based around bad configurations, incorrect file/folder permissions or security issues on the server WP is installed on not the actual software.

 

Ah cool.

WordPress has become one of the best and most flexible CMS out there.

If you have a look of the Admin Panel of this site you'd be surprised of how much control the client has over the website.

There are other software out there that would allow to build a site as manageable as this in just 2 days.

 

Cheers for the comments above

I have no idea why so many people use word press for websites; the simplest hackers in the world could break a site like this as easy as a-b-c. Thats why we use our custom cms.

 

I'm pretty sure that if a hacker can get into a Wordpress site, any site powered by your CMS is not likely to be difficult to get into either.

 

As for the site, I think the colour scheme, simple aesthetics are all spot on. It's uncomplicated and reflects the image of the café well.

 

I do think more attention should be brought to the booking. Why not have a Book Now CTA over the slider? Give it absolute attention.

 

I also dislike the menus page. Rather than create properly nice pages for the menus (hell, with WP you could have even used custom fields to make them editable from the CMS) you've just got tabs and pictures. The menus as a result are ugly, ill-fitting with the rest of the site and very hard to read.

 

Overall, I feel this is a bit of a missed opportunity. You have a booking system and the menus, both things we don't usually get to work with on other sites, and you had a chance here to do something really nice with both - but they're actually the weakest parts of the site.

 

On top of my comments, I echo what Glowbridge says.

  • Author

Wordpress is a blogging tool, its not a CMS.

 

And there have been attempts to hack our CMS and they failed.

 

Any good hacker can hack wordpress and any of those open source softwares.

Wordpress is a blogging tool, its not a CMS.

 

It is stricly speaking a CMS. Although it is specialised towards blogging. Just as OpenCart is a CMS specialised towards ecommerce. I would agree though that for anything past a certain point, it is better to use a more heavyweight system or a custom system.

 

Any good hacker can hack wordpress and any of those open source softwares.

 

Yeah what I was asking you was more "Why" rather than "If". For example off the top of my head.... Does it not encrypt it's passwords? Does it not use secure login classes? etc. etc. - why is it that you think WP is easily hackable? What's wrong with it under the hood?

I have to admit I can't see anything desperately wrong with it so far... adn I've seen CMS's in the past which for example don't encrypt their passwords which is obviously a gaping security hole, haven't noticed anything like that with WP though.

 

It would be useful to know for future projects.

Wordpress is a blogging tool, its not a CMS.

 

And there have been attempts to hack our CMS and they failed.

 

Any good hacker can hack wordpress and any of those open source softwares.

 

I would probably agree with you if you were saying that a couple of years ago

Smooth, perhaps rather than just making the sweeping statement that your CMS is more secure than the biggest CMS in the world, would you care to actually enlighten us and tell us what exactly about Wordpress is not secure and what exactly about yours is?

  • Author

I'll get some facts together for you and post tomorrow.

 

Right now I'm a bit busy with my kids.

Wordpress is more than just a piece of blogging tool!!

 

A saw and a hammer is a recipe for disaster in my hands but give that to a master carpenter and he can build house.

  • Author

Smooth?

 

 

1. Our cms is not open source, was rewritten from another cms with permission and he has been able to adopt it for security- also with open source hackers can download latest versions and find weak areas.

 

2.Also we don't use mysql injections - all code written properly.

 

3. Only the latest version of wordpress has all the fixes etc how many people regularly update their software? making it vunerable.

 

4. we don't use plug in's, we custom code elements we need so we know they are secure. If using 3rd parties how do we know how safe, secure, good they are?

 

5. If you google ways to hack Wordpress there are about 47,100,000 results....

 

 

Hope that is enough

char

1. Open source means more and better developers, problems are found and fixed quickly

 

2. That doesn't make sense - MySQL injection is an attack vector, not a technique you'd be using

 

4. Anything you code is only as secure as you know how to make it. If you're using a 3rd party piece of code to save time over writing it yourself, you should still check it over to make sure of its quality and security.

 

5. I make it about 173 results with the search string in quotes and about 6,530,000 results without - I only went through the first page, but 6/10 were using the word "hack" in the proper sense (a quick, inelegant but effective piece of code) rather than the Hollywood sense you're using. None actually demonstrated a way to compromise a WordPress site, and of the four using "hack" in the Hollywood sense there was no indication that WordPress was actually the first point of compromise.

 

I can't comment on your CMS because I've not seen the source, but if you're making claims about it relative to WordPress it's up to you to substantiate those claims with evidence, see below:

 

Flowchart-to-determine-if-youre-having-a-rational-discussion-e1300206446831-634x882.jpg

Edited by Renaissance-Design

I'm staying well out of that debate..

 

On a side point:-

 

Renaissance, that's the chart I have been looking for all my life, and you had it all along!

 

+1

5. If you google ways to hack Wordpress there are about 47,100,000 results....

 

I'm sorry but it really grinds my gears when people make this argument. It doesn't validate the point you are trying to make. 47 million of those results could be making the exact opposite point you are. Or could have nothing to do with it and Google just happens to have picked up those particular keywords.

 

There are 67.8Million results for 'Unicorns exist'. They don't though.

Edited by Glowbridge

  • Author

No offense guys but I'm entitled to my opinion.

 

You need to bare that in mind.

 

I know our CMS is better, end of story. I don't need to prove it, I merely tried to answer the argument, the best way to prove my point is to hack a word press site but that's illegal.

 

So really, I could never win

char

Well that's a cop out.

 

1.) Of course you are. We are also entitled to call you out on it. Being an opinion doesn't grant you immunity from questioning.

2.) You were the one who made the claim your CMS is better. The onus is on you back up that claim. Until you do so it is perfectly logical for us to dismiss your claim as a fabrication.

3.) It's a little weird you won't back up your claim on a product you sell to clients under that claim. If I was to purchase this CMS from you and I wondered what made it better would I get It just is? I doubt that. You must have reasons lined up. Lines you use to market it. Give us those.

1. Our cms is not open source, was rewritten from another cms with permission and he has been able to adopt it for security- also with open source hackers can download latest versions and find weak areas.

 

2.Also we don't use mysql injections - all code written properly.

 

3. Only the latest version of wordpress has all the fixes etc how many people regularly update their software? making it vunerable.

 

4. we don't use plug in's, we custom code elements we need so we know they are secure. If using 3rd parties how do we know how safe, secure, good they are?

 

5. If you google ways to hack Wordpress there are about 47,100,000 results....

 

 

Hope that is enough

char

 

These are 'facts' based on the way that you choose to do things, there is nothing substantial here that could be credited in an argument as to the insecurity of WordPress, also there is nothing that backs up your original claim that WordPress is not a viable coice for a CMS.

 

As mentioned above your tinfoil hat attitude towards WordPress would have been perfectly acceptable a couple of years ago but it's all changed now, especially if you take a few simple steps to really really lock down your installation. The majority of 'hack' cases are because people have used 'One click install' methods from their host leaving the db prefix as wp_XXX and left their user name as admin with a ridiculous password ('fido123' etc etc) then end up on the official forums complaining about how bad WP is when the real problem lays with them and not the software.

 

The internet is always this way, Those who can, DO. Those who can't, make a noise on forums hoping someone will do it for them.

  • Author

I don't sit on a forum making noise, I have a business to run.

 

I can't really be bothered with a personal attack, SO I won't bother with this thread anymore.

At no point was that meant to be a personal attack, I'm just pointing out that one of the reasons you found so many results on WordPress hacking is the influx of people that don't bother to even try and secure their systems then turn to forums after being hacked to complain about it. People only tend to speak out about things if they go wrong and your results are full of these situations, rendering them pretty useless for your argument since the comparison between these peoples WP installs and your all singing all dancing super custom CMS aren't in the same league.

 

Another point to make is that if you googled 'how to hack WordPress' a huge amount of those links are irrelevant to what you're looking for due to them being about modifying WordPress to suit another purpose and not to inject naughty scripts into a site/blog.

 

I won't take anymore time on this since you seemingly won't read it. However if you do please stack some facts for the next time rather than wading in guns blazing with 'My dad's bigger than your dad'.

Edited by robfrancis

Wordpress IS a CMS.

The amount of people putting hard work in to WP, keeping it stable, secure and up to date , is one huge reason why so many people are using it.

It's not just novice users wiho need a quick blog, there are many many substantial well known tech sites who shifted to WP and I hate to cast doubts over your CMS smooth, and obviously I don't have access to your CMS to chek it out, but I very much doubt a sole project can reach the levels of security that Wordpress sits at.

 

Any decent developer can lock down WordPress to Alcatraz levels!

No offense guys but I'm entitled to my opinion.

 

You need to bare that in mind.

 

I know our CMS is better, end of story. I don't need to prove it, I merely tried to answer the argument, the best way to prove my point is to hack a word press site but that's illegal.

 

So really, I could never win

char

 

You're welcome to attack my site if you feel you can prove WordPress is insecure. It's not illegal if I've invited you to. One condition: if you succeed you document how you managed to do so, and share it with the forum. You're also welcome to set up an install of your CMS specifically for forum members to have a go at cracking; I don't expect you to put your live site on the line.

 

I don't sit on a forum making noise, I have a business to run.

 

I can't really be bothered with a personal attack, SO I won't bother with this thread anymore.

 

Robfrancis' comment about "making noise" was directed at the people he was talking about, who do nothing to secure their sites then complain on the WP forums when they're compromised, but if the shoe fits...

 

You (on the other hand) have made a load of completely inaccurate noise here about the most popular CMS on the planet, and when pressed for facts or evidence to back up your assertions you've failed to provide it. We all have businesses to run, some of them revolve around our expertise with the software you're bad-mouthing.

 

Secondly, you've not been personally attacked. If you had I, or Mike, or any other mod reading this thread would have stepped in. Irrespective of your personal opinions and whether they agree with ours, that's what we're here for.

Edited by Renaissance-Design

Wordpress IS a CMS.

The amount of people putting hard work in to WP, keeping it stable, secure and up to date , is one huge reason why so many people are using it.

Yes, wordpress is a cms. Any simple php code which will allow you to edit site content will be named as CMS :)

Haha nice avatar digiNeiker.

 

Sorry smooth, I got you into this by asking the original question, so er.... whoops. Seems like the screws are tightening on this one, not helped by the fact that I agree with the rest of the lads. I'm estimating you're passing on information provided by your developer? Why not stick him/her online here to argue the case directly? Or whoever it was that developed the cms you use.

I can drink more than Oliver Reed.

 

It's a shame the guy is no longer around. I would have liked to have seen that contest.

It's a shame the guy is no longer around. I would have liked to have seen that contest.

 

His capacity has diminished greatly since May '99. I'm confident I could drink him under the table.

 

Edit: Sorry for the derailment, Pedro. Partly my fault.

Edited by Renaissance-Design

You're welcome to attack my site if you feel you can prove WordPress is insecure. It's not illegal if I've invited you to. One condition: if you succeed you document how you managed to do so, and share it with the forum. You're also welcome to set up an install of your CMS specifically for forum members to have a go at cracking; I don't expect you to put your live site on the line.

 

That's exactly what you've just done. You've made a load of completely inaccurate noise about the most popular CMS on the planet, and when pressed for facts or evidence to back up your assertions you've failed to provide it. We all have businesses to run, some of them revolve around our expertise with the software you're bad-mouthing.

 

First of all I would like to tell that I said to Charlotte that Wordpress CMS can be easily hacked. So now will try to explain why i said this and why I think so... :)

 

Yes I agree that always updated wordpress cms will be secured on 99%, because wordpress developers team always work on it.

 

If you or your client forgot to update Wordpress cms then the risk what your site will be hacked increases.

 

Another big '-' Many web designers don't know php and other web security things so good to protect their sites well. Why I think so? Web designers use free(Open source plugins) in their projects and on their clients websites too. I dont know really how many but i know remember some of the famous plugins for wordpress which are vulnerable.

 

Here is link where we can see how many plugins have vulnerabilities and this is just know issues :)

 

Of course if you can check all plugins(code) what you use on own or on clients websites and you know how to rewrite or fix them it is very good, so you can be sure in that your site will not be in hacked websites list :)

 

Right what i want to tell in the end: any website can be hacked! ANY! And it is doesn't matter which CMS you use own or open source, wordpress or joomla...

 

Sorry for my English.

And also why open source is easy to hack? Because it is open source and any one can read the code. But when system source is not open it is not easy to hack :)

 

Hackers always looking for ways how to hack any site, and im sure they can find the way how to hack website if they need this to be done.

Edited by digiNeiker

Anyone know why anyone else would want to hack a cafe website? Oh look a database with "cheese on toast" written in it....we've hit the jackpot, lads. Either we're rich or we've brought society to a standstill with our "cheese on toast" varchar database entry. Power to the people!

 

Or is it "auto" hacking by bots?

 

I think we're possibly talking about "cracking" not hacking as well.... but I digress.

Anyone know why anyone else would want to hack a cafe website? Oh look a database with "cheese on toast" written in it....we've hit the jackpot, lads. Either we're rich or we've brought society to a standstill with our "cheese on toast" varchar database entry. Power to the people!

 

Or is it "auto" hacking by bots?

 

I think we're possibly talking about "cracking" not hacking as well.... but I digress.

 

Ha! Made me chuckle *starts trying to hack every cafe website*

Anyone know why anyone else would want to hack a cafe website? Oh look a database with "cheese on toast" written in it....we've hit the jackpot, lads. Either we're rich or we've brought society to a standstill with our "cheese on toast" varchar database entry. Power to the people!

 

Or is it "auto" hacking by bots?

 

I think we're possibly talking about "cracking" not hacking as well.... but I digress.

 

Yes why hackers need to hack or crack 500 cafe or 5k any other websites on wordpress or joomla? :D Sometimes just for fun, but in most cases they hack, crack websites for their own selfish purposes.

 

Also how we know wordpress is well optimized for google :) so hackers use this to find their victims too :)

Edited by digiNeiker

I know our CMS is better, end of story. I don't need to prove it

 

 

I know I can run faster than Usain Bold, I don't need to prove it.

 

But that quote is still rubbish, isn't it?

 

I'm sorry but you either make bold claims you can back up with substantial evidence, not speculation, or you don't make the claims at all.

 

Nobody attacked you, we just asked you to explain your claims and to be honest so far in this thread I've not seen one single shred of evidence that points to your CMS being more secure than Wordpress.

 

I can only go on the facts that I see. There are no facts for your CMS. Conclusion: I don't believe you.

Create an account or sign in to comment

Account

Navigation

Search

Search

Configure browser push notifications

Chrome (Android)
  1. Tap the lock icon next to the address bar.
  2. Tap Permissions → Notifications.
  3. Adjust your preference.
Chrome (Desktop)
  1. Click the padlock icon in the address bar.
  2. Select Site settings.
  3. Find Notifications and adjust your preference.