New kind of recent attacks on wordpress sites
-
Hi
This post is not directly related with issues with wordfence but it is a (big ) matter of security and i don’t know if wordfence is blocking this kind of attacks I have been noticing last week on my sites and I would like to know if the wordfence authors already are working on how to block them. What happens is the following: for 5 or 6 days I noticed on my logs hundreds of different Ip addresses coming from multiple parts of the world (apparently )including my country (Portugal) and asking for the same thing. I am pasting a sample for you to see: /wp-content/cache/autoptimize/css/https:/fonts.googleapis.com/css
In this case, they seem to be trying to explore some vulnerability on autoptimize plugin. But I found the same request directed to a large number of plugins (not wordfence!) and each IP address makes 6 (3+3) requests to the site and this process worked for days non stop. I counted thousands of requests like these on my logs. The number of IPs is so large that it is impossible to block them manually and they prevent being automatically blocked by security plugins because they make few requests on the same site. I never saw this kind of attack to my sites before. So, how to fight this menace to our sites? Thanks for any enlightenment on this matter.
- The topic ‘New kind of recent attacks on wordpress sites’ is closed to new replies.