WP Cerber

By : Gioni

Limit the number of login attempts through the login form, XML-RPC requests or using auth cookies. Restrict access with Black Access List and White Access List. Track user and intruder activity.

=How does WP Cerber protect sites?=

By default WordPress allows unlimited login attempts either through the login form or by sending special cookies. This allows passwords to be cracked with relative ease via brute force attack.

WP Cerber blocks intruders by IP or subnet from making further attempts after a specified limit on retries is reached, making brute force attacks or distributed brute force attacks from botnet impossible.

You will be able to create a Black Access List or White Access List to block or allow logins from particular IP.

Moreover, you can create your custom login page and forget about automatic attacks to the default wp-login.php, which takes your attention and consumes a lot of server resources. If an attacker tries to access wp-login.php they will get a 404 Error response.

WP Cerber tracks time, IP addresses and usernames for successful and failed login attempts, logins, logouts, password changes, blocked IP and actions taken by itself.

You can hide WordPress dashboard (/wp-admin/) when a user isn't logged in. If a user isn't logged in and they attempt to access the dashboard by requesting /wp-admin/, WP Cerber will return a 404 Error.

Massive botnet brute force attack? That's no longer a problem. Citadel mode will automatically be activated for awhile and prevent your site from making further attempts to log in with any username.

Features you'll love

  • Limit login attempts when logging in by IP address or subnet Class C.
  • Monitors logins made by login forms, XML-RPC requests or auth cookies.
  • Permit or restrict logins by White Access list and Black Access List with IP or subnet.
  • Log all activities related to the logging in/out process.
  • Hide wp-login.php from possible attacks and return 404 HTTP Error.
  • Hide wp-admin (dashboard) and return 404 HTTP Error when a user isn't logged in.
  • Make custom URL for logging in (rename wp-login.php).
  • Disable automatic redirecting to login page.
  • Proactively block IP subnet class C for intruder's IP.
  • Immediately block IP or subnet when attempting to log in with non-existent username.
  • Citadel mode for massive/slow brute force attack.
  • View and filter out activities list by IP, username or particular event.
  • Handles site/server behind reverse proxy.
  • Optional admin notification by email.
  • Ready for fail2ban HTTP headers.
  • WP Cerber doesn't rely on any external service (unlike other similar plugins) and doesn't send any data outside to work.

Translations

  • English
  • German, thanks to mario
  • French, thanks to hardesfred
  • Russian

I am passionate about building a great solutions so, please, write your review or even give a five-star rating here.

Have a question? Get help here!

Do you have a suggestion? Help us improve WP Cerber!

There are semi-similar security plugins: Login LockDown, Login Security Solution, BruteProtect, Ajax Login & Register, Lockdown WP Admin, BulletProof Security, SiteGuard WP Plugin, All In One WP Security & Firewall

P.S. Check out my new Google Translate Widget

Login Dongle

Login Dongle protects your login by means of a security question (AKA challenge/response) as an extra security layer. A bookmark is your login dongle....

Similar: 35%

Trusted Only

Just add usernames of those who are allowed to read your site, then no other person will be able to view it....

Similar: 32%

Limit Attempts Booster

Limit Attempts Booster was designed to manage the access to users website and provide bullet proof security to your website. With Limit Attempts Booster, you can limit users attempts to log in to your website and consequently, block the user for a certain period of time. Apart from that, Limit Att.........

Similar: 22%

WP Limit Login Attempts

Brute Force Attack aims at being the simplest kind of method to gain access to a site: it tries usernames and passwords, over and over again, until it gets in. This plugin limit rate of login attempts and block ip temporarily. It is detecting bots by captcha verification. Go to Settings > WP Lim.........

Similar: 15%

Htaccess by BestWebSoft

The plugin Htaccess allows to controll access to your website. Access can be controlled based on the client's hostname, IP address, or other characteristics of the client's request. It is very simple and has just two the directives like Allow and Deny. Htaccess by BestWebSoft Video instruction .........

Similar: 13%

AS login

Create your own custom login page use this Plugin. Customize your login page as you choice. Plugin Features !!!!! 1.Easy to use. 2.Plugin on/off. 3.Change Logo Link. 4.Change Logo Width. 5.Unlimited custom logo. 6.Unlimited color. 7.Change Login box width. 8.Change text color and many more....

Similar: 8%

As Nice Scroll

As nice scroll is a jquery plugin for WordPress site. This plugin will create a nice scrollbar for your site. After installing and Activating the plugin, go to WordPress Admin Dahsbord and then go to Appearance > As option Here you can customize default settings. So customize settings as you choi.........

Similar: 8%

As woocomerce with owl carousel

As woocommerce with owl carousel is a jquery plugin for WordPress site. This plugin will create a nice carousel for your site. After installing and Activating the plugin, go to WordPress Admin Dahsbord and then go to Appearance > As option Here you can create Shortcode and publish a carousel .........

Similar: 8%

BulletProof Security

BulletProof Security Feature Highlights One-Click Setup Wizard jQuery UI Dialog Form Uninstall Options: BPS Pro upgrade uninstallation or complete BPS plugin uninstallation .htaccess Website Security Protection (Firewalls) Login Security & Monitoring Idle Session Logout (ISL) Auth Cookie Expir.........

Similar: 7%

WPVKP Custom Login Page

This easy to use plugin gives you the power to convert the boring wordpress login page with much more attractive and personalized login page. This plugin helps to improve your brand authority and also helps to improve user experince. Now can customize the logo, the background, the login button and v.........

Similar: 3%