No, but DDOSing does require an open listener - the most common and easiest is a web server. If whoever is trying to use some old Wordpress hacks is smart, however likely that is, he/she would not have a ton of ports open.

You can also drop requests if per-IP if you are setup on a web provider that has a hardware firewall, but I do not know your setup, so my recommendation was one that would work anywhere.

