Keep receiving the same notification email over and over (Site Lockout)
-
Hi,
I started getting login attempts from a certain IP starting at 2016-03-04 21:14:06.
The same IP made about 700 login attempts between 21:14 and 21:29 (even though I have “Enable local brute force protection” enabled and “Max Login Attempts per Host” set to 5)
At 21:14 (same time the attack started) iThemes sent out 24 emails all with identical content:
“A host, [IP that made the login attempts], has been locked out of the WordPress site at https://website.com due to too many bad login attempts.
The host has been locked out permanently”
Then at 21:41 iThemes sent another 24 emails, identical to the first set (notifying that the same IP had been locked out).
At 22:41 iThemes sent another 24 emails, then again at 23:41, 00:41, etc. etc.
The last batch was at 13:41 so that’s around 400 emails so far, all identical (same IP each time).
I disabled the plugin completely a couple of hours ago but the emails are still coming.
Any idea what’s going on?
Is it going to keep going until it’s sent an email for every single failed login attempt?
The emails are sent out via Mandrill so I’m actually paying for each one, which makes this extra worrying.
Many thanks for any help. ??
- The topic ‘Keep receiving the same notification email over and over (Site Lockout)’ is closed to new replies.