Joomla Security

Joomla Security Tips and Tricks.

Joomla Website Backups

Despite your best endeavors and skill level, regular website backups are essential. Below we outline a simple method for taking regular backups of you Joomla Website.


Joomla is a dynamic content management system, and as such uses a MYSQL database to store the actual 'data' of your website. As well as your database, various files are also critical to the operation of your site. A sound backup strategy takes this into account. It's no good only taking a backup of you files, but not bothering with your database.

So, when would it be imperative to take a website backup? Under some of the following situations:

  • You are about to install a new Extension for Joomla
  • You are about to patch/upgrade Joomla
  • Your regular daily, weekly or monthly backup strategy
  • Various other times

So, how do you do it.. easily? We've found the best success using the free tool AkeebaBackup
The component is simple to use as well as install. However, a few VERY important points. While this component makes taking a backup simple, it's fairly useless if you do not download the backup that is created to another location, like you own computer. So, be sure to take special note of that.

Serverside/hosting backups are also a must when it comes to a backup strategy. What about your own local backups? Please see an article we wrote on this here: Backups are for sissies, right?

Again, we cannot stress how important regular backups are. AkeebaBackup is a purpose built component designed to assist you in this regard. Make it one of your must have components as well. JoomlaPack backups can also be used to assist you in migrating/moving your Joomla website. You can read more on that in our section: Moving Your Joomla Site.

Joomla Hosting

This is one of my most passionate subjects when it comes to Joomla Security. Why?

Well, working for the company that provides the official Joomla Hosting to the Joomla project we've learn't a few things over the years about Joomla Hosting and Security. We've also watched hosts come and go as they fail to provide a secure hosting environment or service to their users. We regularly keep up to date with issues that users are facing by our participation in the Security section of the Joomla Community Forum

Too many times people's website security suffers due to failure on their hosts behalf. So without boring you with all the negative points of far too many hosts out there, here is what we recommend:


We recommend Joomla Hosting from XYZulu.

XYZulu Hosting:
Why? XYZulu provide the best hosting environment for your Joomla website. Through our experience managing the hosting the Official Joomla Websites we gained much experience. XYZulu servers are setup in such a way that permission problems, that often result in Joomla Extension installation headaches are a thing of the past. All server security and updated are taken care of by our qualified experienced staff. XYZulu are also well placed and experienced to take you hosting from an entry level plan, and the way up to a Managed Cloud Server
Another vital Joomla Hosting tip is ensuring you keep Joomla and all components up to date. XYZulu Hosting can do this for you for free. Read more here: Free Joomla updating service now available
Some other reasons to choose XYZulu Hosting are explained in the following posts:

The most important Joomla security tip

Keep your Joomla site updated!

The Joomla Development team are amazing when it comes to responding to security issue regarding Joomla. To fully benefit you need to ensure you are as well. Always keep your Joomla site up to date, and be sure to subscribe to the Joomla Security News Feed: You can even subscribe via email.

Next, ensure you patch your installation when security patches are released. The official way to do this is outlined here:

Now, on to the next VERY important subject, hosting, please read on here: Joomla Hosting



There are plenty of other Joomla security tips available, but it really comes down to two main things:

  1. Joomla Hosting
  2. Joomla and Joomla Extensions Security 

Joomla Hosting is discussed in another article, so be sure to read that as well. It's here: Joomla Hosting

We've explained the subject of Joomla Security above and the need to always keep your installation secure in this way. However, DO NOT assume that that is all you need to do. An insecure and out of date component can also open your site up to security vulnerabilities. Don't be afraid though, most good 3rd party developers have excellent security records and just like the Joomla Development team, have ways of notifying you of updates and secuirty patches. Be aware of this, and your 99% of the way there.

So, you've read this far already.. have you subscribed here yet: ?


XYZulu Hosting Blog

26 September 2020