Forum Replies Created
-
AuthorPosts
-
The thing is, I had at least 30 login attempts since I installed the plugin last night. And, that by itself, is alarm that there is something wrong. This is brand new WP installation, so I am running out of ideas what could cause them to go by your plugin and try to login.
Yes, I have setup the plugin, and hided the login and admin. I set the secret keyword, and the email with information from your plugin came to me. So, basically all checks. But yet, I get these notifications, which is kind of frustrating, don’t you think?
Unfortunately, Sucuri does not say from which page the login attempt came.
I get the messages from Sucuri Security – Auditing, Malware Scanner and Security Hardening plugin.
Subject: Failed Login
Login Info:
Time: October 20, 2016 12:57 pmWebsite Info:
Site: http://xxxxxxxxxxxx.com
IP Address: 222.231.70.144Notification:
User authentication failed: tntfactoryExplanation: Someone failed to login to your site. If you are getting too many of these messages, it is likely your site is under a password guessing brute-force attack [1]. You can disable the failed login alerts from here [2]. Alternatively, you can consider to install a firewall between your website and your visitors to filter out these and other attacks, take a look at Sucuri CloudProxy [3].
-
AuthorPosts