[WordPress] 外掛分享: Luketom Compromise Review

首頁外掛目錄 › Luketom Compromise Review
WordPress 外掛 Luketom Compromise Review 的封面圖片
10+
安裝啟用
尚無評分
10 天前
最後更新
問題解決
WordPress 6.0+ PHP 7.4+ v1.19.2 上架:2026-08-27

內容簡介

Luketom Compromise Review 外掛旨在檢測已知的安全事件檔案及可疑的重定向模式,提供全面的安全掃描與監控,確保 WordPress 網站的安全性。

【主要功能】
• 全手動安全掃描,檢查 50,000 個檔案
• 每日快速掃描,支援電子郵件提醒
• 輕量級監控 .htaccess 和 wp-config.php 變更
• 受保護的 .htaccess 備份與恢復功能
• 確認後的證據保留隔離
• 可逆移除不活躍佈景主題

外掛標籤

開發者團隊

⬇ 下載最新版 (v1.19.2) 或搜尋安裝

① 下載 ZIP → 後台「外掛 › 安裝外掛 › 上傳外掛」
② 後台搜尋「Luketom Compromise Review」→ 直接安裝(推薦)
📦 歷史版本下載

原文外掛簡介

Luketom Compromise Review detects the known August 2026 incident filenames and the contact-page gambling redirect pattern, plus PHP in uploads, multi-signal webshell code, gambling content in posts and administrators outside an explicit allowlist.
Features:

One clearly labelled full manual security scan with safe 50,000-file continuation batches until every eligible file has been checked.
Daily scheduled quick scan with optional, administrator-enabled email alerts.
Lightweight four-hour monitoring for changes to .htaccess, wp-config.php and key WordPress bootstrap files.
Protected, fingerprinted recovery copy of the last explicitly approved .htaccess, with a verified pre-restore rollback copy.
Evidence-preserving quarantine only after independent confirmation and a fresh matching fingerprint.
One-click verified restore for current and legacy quarantine records, with overwrite protection.
Targeted .htaccess repair with a verified restorable backup and protection against overwriting newer rules.
Reversible removal of individually selected or bulk-selected inactive themes after a fresh eligibility check.
Administrator allowlist and WordPress file-editor capability blocking.
Configurable same-site URL/path for the page where a known injection was observed and must be verified after cleanup.
No automatic administrator deletion and no automatic removal of ambiguous files. A protected, manually confirmed action is available for suspicious administrators.

This plugin cannot protect against a compromised hosting control panel, SFTP account or server-level attacker. Rotate credentials and use hosting-level monitoring as well.
Privacy
Compromise Review does not send telemetry or contact Luketom. Important-file monitoring and malware scans run locally. Live-page verification requests only the same-site URL selected by the administrator. Email alerts are disabled on a fresh installation until an administrator enables them and controls the recipient list.

延伸相關外掛

文章
Filter
Mastodon