• Resolved krisker

    (@krisker)


    Hi. My Country blocker is configured to block all countries except Poland in backend and block Canada in frontend. I have Wordfence Security plugin installed too, and i’m getting increased attack rate warnings (cross-site-scripting). Attacks are carried out from Canada IP (192.99.38.186).

    Is ip2location-country-blocker plugin working on different (higher?) level than Wordfence Security? I thought that this kind of attack would be blocked by country-blocker first, not Wordfence.

    Sample logs from Wordfence:
    192.99.38.186 (Canada) Blocked for XSS: Cross Site Scripting in POST body: wp-piwik=<script type=text/javascript language=javascript>var c = 0;var _ims5xvxml=String.fromCharCode(104…
    192.99.38.186 (Canada) Blocked for XSS: Cross Site Scripting in POST body: rcsp_description=<script type=text/javascript language=javascript>var c = 0;var _z3bsafd7h7q=String.fromCharCode(104…
    192.99.38.186 (Canada) Blocked for XSS: Cross Site Scripting in POST body: rcsp_headline=<script type=text/javascript language=javascript>var c = 0;var _gstmgrzakn=String.fromCharCode(104/…
    192.99.38.186 (Canada) Blocked for WP Live Chat Support <= 8.0.28 – Unauthenticated Stored Cross-Site Scripting
    192.99.38.186 (Canada) Blocked for WP Live Chat Support <= 8.0.28 – Unauthenticated Stored Cross-Site Scripting

Viewing 1 replies (of 1 total)
  • Plugin Author ip2location

    (@ip2location)

    Hi,

    Both plugins may be using the same WordPress hook. Try to open the IP2Location plugin and save changes. This will trigger a plugin hook sequence change.

Viewing 1 replies (of 1 total)
  • The topic ‘Blocking attacks’ is closed to new replies.