Is it really possible to download my premium WordPress plugins or themes without having my FTP Details?
Yes it is!
What will you do ?
Well… I’ll just Google it!
I’m not kidding, you can almost get everything from Google if you know how to do it properly.
Let the Hacking begin….
Today I’m gonna show you how someone can download your premium wordpress plugins and theme in few minutes.
To do it just Google the following phase.
wp-content/uploads : ThemeOrPluginName.zip
Just go to any website and download it for FREE!
Lemme explain you with simple example suppose if you want to download Genesis framework. Just go to Google.com and search using the following phase in Google
wp-content/uploads : genesis.zip
Click on any result and Download it.
Do you recommend this trick ?
Of course I won’t. It’s not a good practice. The main purpose of this article is to show how others can steal your premium plugins and themes and how to prevent it.
How to prevent someone from stealing my plugins & themes ?
You might have paid so many $$$ for using some premium plugins and themes but you know someone can get it from your blog for FREE! I know you’ll have some strange feeling that’s why today I’m gonna show you how to kick someone who tries to steal try to steal you plugins.
You can pretty easily do it less than 5 minutes. Just do the following steps
- Create an empty file called “index.php” on the following directories
wp-content/uploads
wp-content/uploads/plugins
wp-content/uploads/themes
- Block search engines from indexing it by adding the following lines on your robots.txt (It’ll be on the root directory of your blog)
User-agent: *
Disallow: /wp-content/
Do you like this article?
How you prevent someone from stealing your files ?
That was really awesome. We can get very neat WP Premium Templates by following the trick. Going to try now. Thanks mate 🙂
Thanks for such nice words 🙂
You can also turn off Indexes in .htaccess file. That will turn off content listing of directory.
Absolutely… I thought to write another post about it, that’s why I didn’t cover that topic here 🙂
sir ita awesome, maza aa gya
Excellent Post Ashik. I would like to use it on my personal website to plugins myself from others 🙂
Thank you for the
comment!
It’s really amazing. I never thought of that. Now we can purchase themes and cant let the others steal them. Thanks for sharing that’s really a nice information.
Thanks for the comments buddy 🙂
Excellent post. I will try this on my website.
Anyways, thank-you so much for sharing this much needed information.
nice tutorial, keep writing
this is very informative and inspired 😉
Hi Ashik,
You really describe an awesome idea to me because premium themes are too costly so here i just find the way to get them. Also thanks for sharing your ideas to protect them.
awesome method. i payed almost 100$ for premium themes and plugins. i waste my money… anyway thanks for this cool method
You are a genius. Thank you for the blog post filled with all the information. If you are smart enough, you can use it wisely without installing malicious in your own website. It’s like taking candy from a baby!!! hahaha
The only issue is how to you know the actual name of the zip file? For instance if the plugin is called “Code Shop” the zip might have a special name like “code_shop.zip” or “cswp.zip”. is there a way to find out a plugin or theme actual zip name?
That’s the problem
We can’t guess all names 🙁
Yes, there is a way to get the actual name of a plugin or theme. Simply go to the webiste that uses the plugin or theme u wish to download, then right click on anywhere in the webpage, scroll down to ‘view page source’ with that read closely, u will find the exact name of every single theme or plugin the user must have uploaded to the site.
Then u can add .zip to download or try modifying some issues.
http://www.twitter.com/stannaso if u want more assistance
So you’re encouraging people to exploit poor security practices of people who have PAID for these premium themes and plugins, and to STEAL THEM OUTRIGHT?
To anyone considering doing what this post suggests, just remember that your IP address is being logged by the servers containing the WordPress installations you’re stealing from, and there’s a very STRONG possibility that you’ll end up having to answer some questions that you don’t really want to answer!
Bottom line: Do you REALLY want to risk THOUSANDS of dollars in fines and possible CONFISCATION OF YOUR COMPUTER, just to save a couple of dollars on a plugin?
Not ME!
Thanks for your valuable comment, Don
Like I said in the disclaimer I don’t encourage others to steal plugin/themes.
I just want to let everyone know about “How others can steal our plugins” and how to protect ourself 🙂
Not interested in download for now but you’ve really show something which we should care about. People might be stealing from our site’s wp-content folders. Good that we can just delete those links from google.
Hi Avi,
Yeah.. We should delete unwanted files in our wp-content directory so that no one can steal our plugins or themes
BTW… Thanks a lot for stopping by and leaving a comment.
nice guide. but it only showing index on my blog. when i tried this trick with other they were showing blank page not index directory..
its amazing article. thanks for sharing. you rock
Awesome article , I found some error when i wanted to try copy this theme buyrealmarketing()com but i was failed to copy that theme so can u help me how can i do it pls?
Thanks ! you’re the best 😀