• I have a number of WP sites and I have the Limit Login Attempts plugin installed on them all. I have also ensured that there is no admin user in any of them. So far, so good!

    It seems to me though that this can slow sites down a bit, especially under a large attack, which I have seen frequently on one of my sites.

    Would it be possible to change the name of the wp-login.php file to something else, so that when a site is attacked a 404 page is returned?

  • The topic ‘Brute Force Attacks’ is closed to new replies.