Tag: firewall

  • SafeGuard Professional for WordPress – Offer protection to your Web site (Miscellaneous)

    SafeGuard Professional for WordPress – Offer protection to your Web site (Miscellaneous)

    Get in touch with us




    Live Demo

    Admin Area – User: demo – Password: demo
    Frontend

    Use the search function on the left side to test the SQL injection protection.

    For example enter: Gewora'; DROP TABLE members; --
    or use this direct link to do the same..

    SafeGuard Pro for WordPress

    SafeGuard Pro for WordPress protects your WordPress site from many tpes of threats, and allows you to review them in the admin area. You will get provided with very detailed logs.

    You can redirect blocked threats to a custom page, for example to a access denied page. SafeGuard Pro for WordPress comes with 4 ready to use error pages.

    Protection Features

    • Blocks most of the proxys and VPNs
    • Detects SQL Injections based on a complex pattern system to avoid “false positives”
    • Detects XSS Attacks based on a complex pattern system to avoid “false positives”
    • Detects known spammers

    The installation is extremely easy. Simply import the .zip file at your WordPress admin panel, activate it, and you are ready to go. The settings (even the error pages) are aleady set up. You can change them of course if you want to.

    Features

    • Proxy Detector and Blocker
    • VPN Detector and Blocker
    • SQLi Protection (SQL Injection)
    • Cross-Site Scripting Protection (XSS)
    • Spammer Protection (Spam Database)
    • DDos (Mass requests)
    • Fully featured Admin panel
    • Enable logging for the desired threats
    • Redirect blocked threats to a custom page
    • Block the IP threat’s ip address
    • Sortable Logs
    • Many details for the blocked threat
    • Enable/Disable the desired protection
    • Enable/Disable the desired logs
    • Enable/Disable the desired auto-bans
    • Ban IPs
    • Ban Countries
    • Extremely easy to install
    • Easy to understand documentation
    • Nice and clean UI
  • Sensible Safety Instruments (Utilities)

    Sensible Safety Instruments (Utilities)

    Plugin Home Page
    Support Forums
    Follow on Twitter
    Video on Youtube

    Plugin Information

    Smart Security Tools is a powerful plugin for improving security of your WordPress powered website. Plugin contains collection of tweaks and tools for extra security protection along with Security Advisor that can help you determine what needs to be done. Plugin includes integration of Sucuri Free Security Scanner (shows malware on the website and blacklisting status on major security related websites). Plugin includes database based Security Log that can log different event types you can use to detemerime problems, potential attacks and exploits, IP’s used for access, referers, user agents… You can ban IP’s from Security Log.

    Security Advisor will help you get started

    Security Advisor will help you get started
    Plugin offers tips on what you need to improve on your website. Based on the status of tips on this panel, plugin will calculate security percentage. It is important to follow all recommended tips and as much as you need optional tips.

    Collection of easy to use security tweaks

    Collection of easy to use security tweaks
    General tweaks are easy to set up, and you can solve many security issues directly with these. Some of these tweaks, if active will also log security events into database.

    List of general tweaks
    • Prevent SQL injections
    • Prevent too long URL’s
    • Simple registration honeypot
    • Remove errors from login screen
    • Restrict username length
    • Remove username from comments CSS classes
    • Remove WordPress version
    • Remove RSD link
    • Remove WLW manifest link
    • Disable XML-RPC

    Collection of powerful .htaccess enhancements

    Collection of powerful .htaccess enhancements
    Most important security features are implemented using .htaccess file in the WordPress root directory. This is available only for Apache (and LiteSpeed) based web servers.

    List of .htaccess tweaks
    • Prevent WordPress installation directory browsing
    • Disable the Server Signature on server error pages
    • Deny all comments requests with no valid referer
    • Prevent access to WordPress root system files
    • Ban access to IP’s banned in Security Log
    • Ban access to additional listed IP’s
    • Limit body size of a single request and file upload size
    • Prevent access to XML-RPC due to Pingback Vulnerability
    • Disable Trace and Track request methods
    • Blacklist Query Strings using listed rules
    • Blacklist Request Strings using listed rules
    • Blacklist User Agents using listed rules

    Security Logs to track security related events
    Security Log adds two database tables to log all sorts of security related events. For each event you will get information about user (or visitor), IP, user agent, referer and other information depending on event that can help you track sources of new security probes or attacks. You can ban IP addresses through the security log panel.

    List of events types logged by plugin
    • Login
    • Logout
    • Login Error
    • Error 404
    • Registration
    • Registration Honeypot
    • SQL Injection URL
    • Too Long URL

    Other Plugin Features Included

    • Change ‘admin’ username if exists
    • Change any username
    • Export and Import settings
    • Support for Multisite WordPress mode

    System and WordPress Requirements

    • WordPress 3.2 or newer
    • PHP 5.2.4 or newer
    • Apache Web Server (for .htaccess based tweaks and tools)
    • Access to .htaccess file (if not, you need to manually add changes to it)

    Disclaimers

    • For .htaccess based tweaks and tools plugin supports only Apache (and LiteSpeed) web servers. If you use some other web server, you can only use other plugin features.
    • Make sure you read plugin documentation and all the information provided by the plugin for each tweak and tool.
    • If you make changes to blacklist .htaccess tweaks, or list of IP’s to ban, be careful with those changes, or you can even lock yourself out of the website.
    • You are using Smart Security Tools for WordPress at your own risk.

    Changelog

    Version 1.0 / 2013.11.22.
    • First version