Do you still block those brute force login attack/Password Guessing for users…
The purpose of the tool was to reject any user authentication attempt if the username is not in the database. More specifically, if the administrator decided to delete the “admin” account then this tool would allow them to stop the unnecessary failed login alerts for the non-existing “admin” user.
The Sucuri Firewall [1] already provides several tools to do proactive blocking, by browser behavior, network range, IP address, user-agent, country, cookie, among others… I realized that offering a small tool in the plugin doesn’t makes sense when we are providing much better tools in the other service.
[1] https://sucuri.net/website-firewall/