Big bot attack on Wordpress sites

    Approximately from August 2, there is a massive attack on sites built on Wordpress engines (according to some reports, sites on Joomla, DLE are also attacked). Attackers using a large botnet are trying to pick up passwords for admins using brute force. Some servers cannot handle the load. Hosters take various measures to filter bots. Extensive discussion is taking place on the Searchengines forum .

    Wordpress offers its own solutions: codex.wordpress.org/Brute_Force_Attacks

    In the logs on the server, it looks something like this: As an option, you should make sure that the admin password for the site is stable for selection.
    93.73.186.55 funshow.ru POST /wp-login.php HTTP/1.0
    178.223.136.215 funshow.ru POST /wp-login.php HTTP/1.0
    178.68.139.101 funshow.ru POST /wp-login.php HTTP/1.0
    99.162.150.102 funshow.ru POST /wp-login.php HTTP/1.0



    Also popular now: