Tag: wordpress security

  • WordPress Password Scanner (Utilities)

    WordPress Password Scanner (Utilities)

    Thank you for checking out WordPress Password Scanner!

    This is the first and currently only plugin that scans the passwords of WordPress users for their strength!

    A large portion of all (attempted) hacks consist of various attempts to login with user credentials!

    Features

    • Scan your users for the use of weak passwords to keep your WordPress site secure!
    • Warns you if the default “admin” user exists
    • Quality Code & Lightweight plugin
    • See when users have last logged in
    • Works with Multi Sites
    • Works with all modern browsers
    • Tested until WordPress 4.4.2
    • Overridable functions and constants (for developers)

    Are you experiencing problems?

    Documentation

    All documentation can be found on our website, please visit: Documentation

    System Requirements

    • (at least) WordPress v3.5
    • (at least) PHP v5.2.0

    Changelog

    v.1.0.0 (Feb 4, 2016)

    1. Initial Release
    
  • wordpress Ghost Captcha (Kinds)

    wordpress Ghost Captcha (Kinds)

    flowchart

    Why is it called Ghost Captcha? Because like a ghost, its an invisible force, working quietly in the background, detecting and blocking spambots. Yes, WP Ghost Captcha does come with its own standard captcha tests, but these are only displayed as a last resort, after suspicious browsing activity is detected.

    But why display captcha tests only as a last resort? Because captcha tests are annoying. They treat all genuine users as suspects, who must first prove their innocence before logging in or posting anything. Many are hard to fill and inaccessible, especially for those with eye problems and other disabilities.

    How then do you keep your site secure from spambots and other malicious programs out there without always displaying captcha tests? Use WP Ghost Captcha, which works by monitoring a users behavior, separating the humans from the bots using a mix of the honeypot technique and time tracking. All this is done quietly in the background and if any suspicious activity is detected, WP Ghost Captcha then loads up a normal captcha test. Using this technique, most of your genuine users will rarely ever need to see or solve a captcha test. With WP Ghost Captcha, you no longer have to choose between blocking spammers and annoying your users.

    Features

    • Works with all standard wordpress forms: comments, login, register and lost password.
    •  Can also be easily extended to work with any custom-made WordPress forms, thanks to two new WordPress hooks which come with the plugin ( ghostcaptcha_set and ghostcaptcha_validate ).
    •  The settings for each form can be tweaked and configured individually. For example, the captcha test for the “lost admin password” form is set to always appear by default, but you can easily set it back to work only in stealth-mode. Same applies to the standard WordPress comments, login, register. You can also tweak and adjust how each form detects spambots by adjusting the plugin’s time tracker.
    •  WP Ghost Captcha not only blocks, but also logs the details of any suspected spambot. This includes the IP address, date, targetted form and reason why it’s submission was blocked. The latest logs are displayed within WP Ghost Captcha’s page in the admin area.
  • WordPress Drive SSL Safety (Add-ons)

    WordPress Drive SSL Safety (Add-ons)

    WP Force SSL

    PLEASE READ FIRST: If you are looking for a more complete, fully-featured SSL plugin the excellent WordPress HTTPS plugin is highly recommended.
    If you need a light-weight plugin to manage HTTPS re-directions (particularly with WP Full Stripe), WP Force SSL Security will work well for you. We are adding features over time so please check back later if you need a more fully-featured solution.

    WP Force SSL Security allows website administrators to easily select which pages and posts to be served via HTTPS.
    This allows extra security and peace of mind for your customers, particularly if taking payments online.
    Designed to work stand alone or integrated with our payments plugin, WP Full Stripe.
    When used with WP Full Stripe you are guaranteed easy integration and setup of a secure online payments solution with regular updates and full support.

    Features

    • Choose pages to always be served over SSL with HTTPS
    • Integrated and tested with WP Full Stripe payments plugin for secure payments
    • Lightweight and focused plugin
    • Fully supported, professionally written and regularly updated software

    Compatibility

    Built for the latest version of WordPress 3.7+. You must have an SSL certificate correctly installed on your server to access your website via HTTPS.
    Please note that if you have installed any other plugins that do page redirects there may be conflicts with this plugin. If you’re unsure, please leave a comment before purchase.

    Usage

    Just install, activate and set the page/post ID’s of the pages you wish to be HTTPS.

    Support

    As always, there is full support available at:http://mammothology.com/forums

    Interested in creating your own plugins?

    Check out creatingplugins.com to learn how to create your own plugins

    Check out our other products

    We’ve got something for everyone, always high quality, always with full support and documentation

    Follow me on CodeCanyon
    Follow me on Twitter
    Follow me on Facebook
    Follow me on YouTube

  • wordpress Safety Query (Utilities)

    wordpress Safety Query (Utilities)



    A Product by Flipper Code

    Wordpres Security Question is a wordpress plugin which enables security question feature on registration form. Plugin has zero configuration and start works on a single click. if you make use of a security question as a way of accessing an account if your user lost password, this plugin is perfect suitable for you.

    For any help, feature request or to report a bug, you may contact me anytime And please rate this item as per your experience with it.

    Why this Plugin?

    If you search on google about “hack wordpress” or “wordpress hack” or similar phrases, you find that most of time hackers reset password using sql injection. For more information, how to hack a website using sql injection, read this article written by me. So using plugin, it’s not possible to reset your password without know your security answer.

    Setup Your Questions using Backend

    A new dropdown to ask question/answer easily integrated on your wordpress registration page once you installed this plugin.

    Setup Security Question for Registration Page

    Display Security Question on Registration

    After setup questions, a new dropbox display on registration page automatically.

    Display Security Question onRegistration Page

    Ask Security Question on Forgot Password

    To retrieve lost password, user needs to answer security question they answered before.

    ask Security Question on Forgot Password Page

    You’re Done!

    Please feel free to ask if you have any question.