WordPress.org

Ready to get started?Download WordPress

Forums

Stealth Login Page
great solution to april 2013 botnet attacks (5 posts)

5 stars
  1. helloari
    Member
    Posted 1 year ago #

    After much hunting for a plugin-based solution I finally found this. It will easily let you obscure your login page so these attacks won’t have a chance to slow your server down. I suppose the server has a small overhead when dealing with the redirect for requests for the default login URL but that must be much lower than having to serve the login page and bounce incorrect logins (and track IPs of incorrect logins). It allows you to redirect all requests to the default login page while preserving requests that add a short configurable code to the login URL.

  2. Jesse Petersen
    Member
    Plugin Author

    Posted 1 year ago #

    Thanks for the review!

    I do recommend still using Limit Login Attempts along with it because there is a way to bypass the login page entirely and I have yet to find a plugin that closes that hole, but I am ACTIVELY looking for a way to do just that.

  3. helloari
    Member
    Posted 1 year ago #

    i use "better wordpress security" and that includes login limits.

    do you have any idea if this current attack bypasses the login page? i think it doesn't but of course it could morph anytime.

    since it's essentially a DDoS attack it's hard to really fix the problem in terms of a core update.

  4. Jesse Petersen
    Member
    Plugin Author

    Posted 1 year ago #

    It might not be this attack that bypasses it, but I have a few that still get caught by Limit Login Attempts, so that means they are attempting to log in without being able to find my login form URL.

    I'm hesitant to say how they are doing it, but I'm aware and testing different solutions, but haven't found one yet.

  5. helloari
    Member
    Posted 1 year ago #

    well, if you figure it out then I sure hope you get your solution into core.

    be careful, it's a jungle out there.

Topic Closed

This topic has been closed to new replies.

About this Plugin

About this Topic

Tags

No tags yet.