[WordPress] 外掛分享: WP Smart Security

WordPress 外掛 WP Smart Security 的封面圖片。

前言介紹

  • 這款 WordPress 外掛「WP Smart Security」是 2016-03-16 上架。
  • 目前有 30 個安裝啟用數。
  • 上一次更新是 2017-11-28,距離現在已有 2716 天。超過一年沒更新,安裝要確認版本是否可用。以及後續維護問題!
  • 外掛最低要求 WordPress 3.0.1 以上版本才可以安裝。
  • 有 1 人給過評分。
  • 還沒有人在論壇上發問,可能目前使用數不多,還沒有什麼大問題。

外掛協作開發者

bulktheme |

外掛標籤

hack | attack | exploit | password | authentication |

內容簡介

大部分 WordPress 攻擊都是由外掛程式漏洞、弱密碼和過時軟件造成的。 WP Smart Security 可以隱藏這些漏洞所在的位置,讓攻擊者無法瞭解你的網站情況,並遠離像登錄、管理等敏感區域。

在此下載 Pro 版本:WP Smart Security Pro。

WP Smart Security外掛將會結合最佳的 WordPress 安全功能和技術,並將它們結合在一個插件中,從而確保盡可能地修補安全漏洞,而不必擔心功能衝突或您的網站遺漏任何地方。它還通過檢查漏洞、實施和執行最新的 WordPress 安全實踐和技術來減少安全風險。

在此下載 Pro 版本:WP Smart Security Pro。

你可以通過一鍵激活大多數功能使你的網站基本安全。如果你是一個有經驗的用戶,還可以激活高級特性以獲得更好的安全保護。

在此下載 Pro 版本:WP Smart Security Pro。

以下是此插件提供的安全和防火牆功能的前十名列表:

WordPress 管理儀表板中的快速統計和快速操作小工具
包括開放源代碼免費 PHP CAPTCHA 库(自定義版本)的反垃圾郵件和CAPTCHA保護
在評論、註冊、忘記密碼、登錄或全部的表單上設置 CAPTCHA
允許追蹤資料和引用
刪除“生成器”標記
更改 WordPress 應用程式包括登錄、管理等在內的 URL
完全關閉在指定時間內登錄能力(離線模式)
重命名“管理員”帳戶
更改 ID 為 1 的用戶 ID
備份 WordPress 數據庫
更改 WordPress 数据表前缀
從沒有更新權限的用戶中刪除主題、插件和核心更新通知
刪除 Windows Live Write 標頭資訊
刪除 RSS 標頭資訊
更改 wp-content 路徑
刪除登錄錯誤訊息
對配置的最小角色的所有帳戶強制實行強密碼
強制實施 SSL 用於管理頁面(在支持的伺服器上)
在支持的服务器上,强制为任何页面或文章使用 SSL
关闭WordPress 管理区域内的文件编辑
显示一个随机版本号在非管理用户使用版本号的任何地方
扫描您的网站以立即告知漏洞所在并在几秒钟内修复它们
禁止问题机器人和其他主机
禁止問題使用者代理
通過禁止超過太多無效登錄嘗試的主機和使用者,防止暴力攻擊
加强服务器安全
监视文件系统以防止未经授权的更改
在可自訂時間表上创建和电邮数据库备份
更好地为用户登录提供便利,让他们获得更容易理解的 WordPress 登录和管理员 URL
检测您网站上的隐藏 404 错误,可能会影响您的 SEO,例如坏链接、缺失的图像等
检测并阻止众多攻击您的文件系统和数据库的攻击
检测机器人及其他

原文外掛簡介

In most of the time WordPress attacks are a result of plugin vulnerabilities, weak passwords, and obsolete software. WP Smart Security will hide the places those vulnerabilities live keeping an attacker from learning too much about your site and keeping them away from sensitive areas like login, admin, etc.
Download Pro version here: WP Smart Security Pro.
WP Smart Security plugin will take your website security to a whole new level with it’s best WordPress security features and techniques and combines them in a single plugin. Thereby ensuring that as many security holes as possible are patched without having to worry about conflicting features or the possibility of missing anything on your site. It reduces security risk by checking for vulnerabilities, and by implementing and enforcing the latest recommended WordPress security practices and techniques.
Download Pro version here: WP Smart Security Pro.
You can make your website basic secured by one-click activation of most features. As well as if you are experienced user, you can activate advanced features for better security to protect any site.
Download Pro version here: WP Smart Security Pro.
Below is a top list of the security and firewall features offered in this plugin:

Quick Statistics and quick action widget in WordPress admin dashboard
Anti-spam and captcha protection by Open-source free PHP CAPTCHA library by http://www.phpcaptcha.org is included (customized version)
Set CAPTCHA on the forms for comments, registration, lost password, login, or all.
Allows Trackbacks and Pingbacks.
Remove the meta “Generator” tag
Change the urls for WordPress dashboard including login, admin, and more
Completely turn off the ability to login for a given time period (away mode)
Rename “admin” account
Change the ID on the user with ID 1
Backup WordPress database
Change the WordPress database table prefix
Remove theme, plugin, and core update notifications from users who do not have permission to update them
Remove Windows Live Write header information
Remove RSD header information
Change wp-content path
Removes login error messages
Enforce strong passwords for all accounts of a configurable minimum role
Force SSL for admin pages (on supporting servers)
Force SSL for any page or post (on supporting servers)
Turn off file editing from within WordPress admin area
Display a random version number to non administrative users anywhere version is used
Scan your site to instantly tell where vulnerabilities are and fix them in seconds
Ban troublesome bots and other hosts
Ban troublesome user agents
Prevent brute force attacks by banning hosts and users with too many invalid login attempts
Strengthen server security
Monitor filesystem for unauthorized changes
Create and email database backups on a customizable schedule
Make it easier for users to log into a site by giving them login and admin URLs that make more sense to someone not accustomed to WordPress
Detect hidden 404 errors on your site that can affect your SEO such as bad links, missing images, etc.
Detect and block numerous attacks to your filesystem and database
Detect bots and other attempts to search for vulnerabilities

Download Pro version here: WP Smart Security Pro.
WP Smart Security is the number one security and firewall plugin for WordPress. Please check out all the features it has. It’s simply awesome.
Captcha in Forms
Protect your website forcing user to have an captcha option in registration form, login form, comment form and other forms.
Anti Spam Protection
This plugin enables hidden empty field honeypot trap for spam bots. Bots and other scripts can never break your system.
Admin User
Mostly hackers try on your website’s admin account, This plugin forces to change the admin username and the admin user ID.
Maintenance Mode
You can always send your website’s status as maintenance mood. You can do it for both front-end and the back-end.
Content Directory
This plugin helps you to protect your content directories, where your themes, plugins and other files stored.
Files Protection
By continuous monitoring on your websites files for any changes happen this plugin protect your website files.
Database Backup
WP Smart Security will make regular backups of your WordPress database allowing you to get back online quickly. You can also create and email database backups on a customized schedule.
Database Prefix
WP Smart Security helps protects website database by changing the WordPress database table prefix.
Login Limitation
This plugin protects your user’s accounts by forcing Login Limitation, continuous bot tries blocks the account.
Ban User
This feature allows you to ban hosts and user agents from your site completely using individual or groups of IP addresses as well as user agents without having to manage any configuration of your server.
IP Blacklist
You can block the blacklisted IP addresses by the excellent blacklist developed by Jim Walker of HackRepair.com.
Hide Back-end
The hide backend feature changes the URL from which you can access your WordPress backend thereby further obscuring your site to potential attackers.
Intrusion Detation
In every website are getting a large number of 404 errors. It assumes that a user who hits a lot of 404 errors in a short period of time is scanning for something and locks them out accordingly.
SSL Protection
Secure Socket Layers is a technology that is used to encrypt the data sent between your server or host and the visitor to your web page.
System Tweaking
Server tweaks make use of rewrite rules and, in the case of Apache or LiteSpeed, will write them to your .htaccess file.
Log File
This feature contains the logs generated by WP Smart Security, current lockouts and a way to cleanup the logs to save space on the server and reduce CPU load.
Continuous Update
We are always updating, developing and adding new features day by day. Once you purchase this plugin, you get the life time update and download with all updated features.
Unparalleled Support
We always try to make our clients happy. So we are providing continous and unparalleled supports to our customers.
Download Pro version here: WP Smart Security Pro.
Compatibility

Works on multi-site (network) and single site installations
Works with Apache, LiteSpeed or NGINX
Some features can be problematic if you don’t have enough RAM to support them. All my testing servers allocate 128MB to WordPress and usually don’t have any other plugins installed.
Works with WordPress 2.9+, WPMU, and BuddyPress (WordPress 3.6+ is highly recommended)
PHP5+ is highly recommended

Additional Features
See below some features of this plugin

Quick Statistics and quick action widget in WordPress admin dashboard
Anti-spam and captcha protection by Open-source free PHP CAPTCHA library by http://www.phpcaptcha.org is included (customized version)
Set CAPTCHA on the forms for comments, registration, lost password, login, or all.
Allows Trackbacks and Pingbacks.
Remove the meta “Generator” tag
Change the urls for WordPress dashboard including login, admin, and more
Completely turn off the ability to login for a given time period (away mode)
Rename “admin” account
Change the ID on the user with ID 1
Backup WordPress database
Change the WordPress database table prefix
Remove theme, plugin, and core update notifications from users who do not have permission to update them
Remove Windows Live Write header information
Remove RSD header information
Change wp-content path
Removes login error messages
Enforce strong passwords for all accounts of a configurable minimum role
Force SSL for admin pages (on supporting servers)
Force SSL for any page or post (on supporting servers)
Turn off file editing from within WordPress admin area
Display a random version number to non administrative users anywhere version is used
Scan your site to instantly tell where vulnerabilities are and fix them in seconds
Ban troublesome bots and other hosts
Ban troublesome user agents
Prevent brute force attacks by banning hosts and users with too many invalid login attempts
Strengthen server security
Monitor filesystem for unauthorized changes
Create and email database backups on a customizable schedule
Make it easier for users to log into a site by giving them login and admin URLs that make more sense to someone not accustomed to WordPress
Detect hidden 404 errors on your site that can affect your SEO such as bad links, missing images, etc.
Detect and block numerous attacks to your filesystem and database
Detect bots and other attempts to search for vulnerabilities

各版本下載點

  • 方法一:點下方版本號的連結下載 ZIP 檔案後,登入網站後台左側選單「外掛」的「安裝外掛」,然後選擇上方的「上傳外掛」,把下載回去的 ZIP 外掛打包檔案上傳上去安裝與啟用。
  • 方法二:透過「安裝外掛」的畫面右方搜尋功能,搜尋外掛名稱「WP Smart Security」來進行安裝。

(建議使用方法二,確保安裝的版本符合當前運作的 WordPress 環境。


最新版本

延伸相關外掛(你可能也想知道)

  • Prevent XSS Vulnerability 》這個外掛提供 反射型 XSS 和 自我 XSS 的功能。, 對於反射型 XSS,如果您啟用了 啟用阻擋 選項,並且 URL 包含任何易受攻擊的代碼,它會檢查 URL 並重新導向...。
  • xmlrpc attacks blocker 》有多種方法可以防止 XMLRPC 攻擊。, 這個外掛有以下選項:, 第一個選項:, 記錄錯誤和訪問- 用於調試外掛錯誤和訪問 XMLRPC 文件。, 保護選項:, , 禁用 XMLR...。
  • Login Security 》許多針對WordPress網站的暴力攻擊在您可能沒有察覺到的情況下進行。這些攻擊是由計算機程序執行的,其目的是嘗試每個可能的密碼,直到找到正確的密碼。如果您...。
  • Botnet Attack Blocker 》最近有全球分布式 botnet 攻擊 WordPress 安裝程式,導致伺服器癱瘓並入侵管理員帳戶,因此我想寫一個 WordPress 外掛程式以防止再次發生。, 分布式 botnet ...。
  • WP AntiDDOS 》外掛 WP AntiDDOS 通過阻擋來自一個或多個相關 IP 地址的頻繁請求,防止您的網站遭受 DDOS 攻擊。這包括 HTTP flood 和密碼破解攻擊。該插件將數據存儲在 MyS...。
  • WP Guardian 》承接本外掛!, WP Guardian已不再更新開發。如果您願意接手此外掛並繼續開發,請聯繫本外掛作者。, 關於, 使用本外掛非常簡單,因為它被設計成盡可能簡單易懂...。
  • LCS Security 》這個外掛為 WordPress 增加了全面的安全措施。只需安裝、啟用,您可以放心,您的網站現在已受到大多數常見攻擊的保護。, 我們試圖創建 WordPress 安全性的「...。
  • Advanced WordPress Security 》Advanced WordPress Security 外掛程式由 World Web Arts 開發,透過權限設置、更改 WP 網址、設定更新、檔案掃描、資料庫備份、資料夾備份、流量檢查等方式...。
  • Anti DDOS/BOT reCAPTCHA Protection 》使用我們的 Anti DDOS/BOT Protection 來保護您的網站。, 詳情 :, 僅在遭受 DDOS/BOT 攻擊時啟用此外掛。, 我們無法解決 DDOS 問題,但我們嘗試限制不良流量...。
  • SeCWurity WP Login 》你是否擔心網站的安全性?你是否認為你的電腦存在鍵盤記錄病毒?你是否認為有人偷走了你的密碼?當你使用這個外掛時,這些都不重要了🙂, SeCWrity Wp Login ...。
  • Protect Ai Login 》Protect Ai Login 將預設的 WordPress 登入網址更改為您定義的網址,阻擋暴力攻擊、垃圾登錄、自動註冊和機器人,並生成自訂品牌的登錄面板,而無需在您的網...。
  • Login Protection 》防止未授權訪問管理頁面。, 此外,您還可以通過基本身份驗證來保護管理頁面。, 通過連續阻止認證失敗的 IP 地址,使未經授權者無法訪問管理頁面。, 如果您無...。
  • Colobe Security 》這個外掛可以保護你的 WordPress 登入頁面,防止密碼被盜取。, Colobe 安全外掛讓你可以在 WordPress 登入頁面上使用 Colobe 保護服務,, 以預防暴力破解攻擊...。

文章
Filter
Apply Filters
Mastodon