Add ability to remove/replace/rename default "admin" account
|Reported by:||doug.daulton||Owned by:|
|Severity:||Keywords:||security, hackers reporter-feedback|
Wondering why we cannot delete "admin" account and replace with an account with a non-standard name (i.e. userfred). There was a security issue in standard WP a while back that saw hackers attacking installs with "admin" as the default account. This prompted removal of default "admin" account on many WP installs.
I tried to hack this in the DB but it looks like BP some how requires "admin" as the username because, while I can login with the renamed account, I do not see the plugins dropdown or other Admin fucntions from the dashboard.
I deleted all cookies to be sure that was not the issue. The non-admin dashboard still appears.
Change History (13)
- Component set to Core
- Resolution invalid deleted
- Status changed from closed to reopened