
內容簡介
Luketom Compromise Review 外掛旨在檢測已知的安全事件檔案及可疑的重定向模式,提供全面的安全掃描與監控,確保 WordPress 網站的安全性。
【主要功能】
• 全手動安全掃描,檢查 50,000 個檔案
• 每日快速掃描,支援電子郵件提醒
• 輕量級監控 .htaccess 和 wp-config.php 變更
• 受保護的 .htaccess 備份與恢復功能
• 確認後的證據保留隔離
• 可逆移除不活躍佈景主題
外掛標籤
開發者團隊
原文外掛簡介
Luketom Compromise Review detects the known August 2026 incident filenames and the contact-page gambling redirect pattern, plus PHP in uploads, multi-signal webshell code, gambling content in posts and administrators outside an explicit allowlist.
Features:
One clearly labelled full manual security scan with safe 50,000-file continuation batches until every eligible file has been checked.
Daily scheduled quick scan with optional, administrator-enabled email alerts.
Lightweight four-hour monitoring for changes to .htaccess, wp-config.php and key WordPress bootstrap files.
Protected, fingerprinted recovery copy of the last explicitly approved .htaccess, with a verified pre-restore rollback copy.
Evidence-preserving quarantine only after independent confirmation and a fresh matching fingerprint.
One-click verified restore for current and legacy quarantine records, with overwrite protection.
Targeted .htaccess repair with a verified restorable backup and protection against overwriting newer rules.
Reversible removal of individually selected or bulk-selected inactive themes after a fresh eligibility check.
Administrator allowlist and WordPress file-editor capability blocking.
Configurable same-site URL/path for the page where a known injection was observed and must be verified after cleanup.
No automatic administrator deletion and no automatic removal of ambiguous files. A protected, manually confirmed action is available for suspicious administrators.
This plugin cannot protect against a compromised hosting control panel, SFTP account or server-level attacker. Rotate credentials and use hosting-level monitoring as well.
Privacy
Compromise Review does not send telemetry or contact Luketom. Important-file monitoring and malware scans run locally. Live-page verification requests only the same-site URL selected by the administrator. Email alerts are disabled on a fresh installation until an administrator enables them and controls the recipient list.
