Limit Login Attempts Plus – WordPress Limit Login Attempts By Felix

WordPress Limit Login Attempts Plus plugin for Login Protection by Felix Moira

Author:Felix Moira (profile at wordpress.org)
WordPress version required:2.8
WordPress version tested:6.1.1
Plugin version:1.1.0
Added to WordPress repository:23-09-2020
Last updated:26-01-2023
Rating, %:100
Rated by:1
Plugin URI:
Total downloads:7 887
Active installs:500+
plugin download
Click to start download

Limit the number of login attempts that possible both through the normal login as well as using the auth cookies.
WordPress by default allows unlimited login attempts either through the login page or by sending special cookies. This allows passwords (or hashes) to be cracked via brute-force relatively easily.
Limit Login Attempts Reloaded blocks an Internet address from making further attempts after a specified limit on retries has been reached, making a brute-force attack difficult or impossible.

Features:

  • Limit the number of retry attempts when logging in (per each IP). This is fully customizable.
  • Limit the number of attempts to log in using authorization cookies in the same way.
  • Informs the user about the remaining retries or lockout time on the login page.
  • Optional logging and optional email notification.
  • Handles server behind the reverse proxy.
  • It is possible to whitelist IPs using a filter. But you probably shouldn’t do this.

All your settings will be kept in tact!

Many languages are currently supported in Limit Login Attempts Reloaded plugin but we welcome any additional ones.
Help us bring Limit Login Attempts Reloaded to even more cultures.

Translations: Bulgarian, Brazilian Portuguese, Catalan, Chinese (Traditional), Czech, Dutch, Finnish, French, German, Hungarian, Norwegian, Persian, Romanian, Russian, Spanish, Swedish, Turkish

Plugin uses standard actions and filters only.


ChangeLog