Cyber Smart Defence Security & Risk Analysis

wordpress.org/plugins/cyber-smart-defence

Lightweight WordPress security firewall with login protection and threat monitoring.

0 active installs v3.1.3 PHP 7.2+ WP 5.5+ Updated Dec 24, 2025
brute-forcefirewalllogin-protectionsecuritywebsite-security
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Cyber Smart Defence Safe to Use in 2026?

Generally Safe

Score 100/100

Cyber Smart Defence has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3mo ago
Risk Assessment

The plugin 'cyber-smart-defence' v3.1.3 exhibits a strong security posture based on the provided static analysis. The absence of any identified dangerous functions, raw SQL queries, file operations, and the consistent use of prepared statements and output escaping for all identified code paths are significant strengths. The presence of capability checks suggests an awareness of authorization best practices. Furthermore, the complete lack of known vulnerabilities (CVEs) in its history indicates a history of stable and secure development, or at least a lack of publicly discovered issues.

However, the static analysis does reveal some potential areas for improvement. The absence of any identified Taint Analysis flows, while seemingly positive, could also indicate that the analysis was incomplete or that the plugin's functionality does not involve complex data flows that would trigger taint analysis. The single external HTTP request warrants scrutiny to ensure it is securely implemented and doesn't pose a risk of information disclosure or further vulnerabilities. The complete lack of AJAX handlers, REST API routes, shortcodes, and cron events, while reducing the attack surface, might also suggest limited functionality or that such features are handled externally. The absence of nonce checks on the zero AJAX handlers is a minor concern, as it's usually tied to functionality that isn't present. Overall, the plugin appears to be developed with security in mind, but a deeper dive into the external HTTP request and the reasoning behind the minimal attack surface would provide further confidence.

Key Concerns

  • External HTTP requests present
  • No taint analysis flows identified
Vulnerabilities
None known

Cyber Smart Defence Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Cyber Smart Defence Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
2 prepared
Unescaped Output
0
14 escaped
Nonce Checks
0
Capability Checks
2
File Operations
0
External Requests
1
Bundled Libraries
0

SQL Query Safety

100% prepared2 total queries

Output Escaping

100% escaped14 total outputs
Attack Surface

Cyber Smart Defence Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 7
actionadmin_enqueue_scriptscyber-smart-defence.php:49
actioninitcyber-smart-defence.php:54
actionadmin_menucyber-smart-defence.php:90
actionadmin_noticescyber-smart-defence.php:111
actioninitincludes\firewall.php:116
actionwp_login_failedincludes\login-protection.php:11
actionlogin_initincludes\login-protection.php:78
Maintenance & Trust

Cyber Smart Defence Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedDec 24, 2025
PHP min version7.2
Downloads138

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Cyber Smart Defence Developer Profile

cybersmartempire

1 plugin · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Cyber Smart Defence

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/cyber-smart-defence/assets/admin.css/wp-content/plugins/cyber-smart-defence/assets/admin.js
Script Paths
/wp-content/plugins/cyber-smart-defence/assets/admin.js
Version Parameters
cyber-smart-defence/assets/admin.css?ver=cyber-smart-defence/assets/admin.js?ver=

HTML / DOM Fingerprints

Shortcode Output
<div class="notice notice-success is-dismissible"> <p><strong>🛡 Cyber Smart Defence is active.</strong> Your website is protected in real time.</p> </div><div class="notice notice-warning"> <p><strong>⚠ Cyber Smart Defence is not fully activated.</strong> Please check the plugin setup.</p> </div>
FAQ

Frequently Asked Questions about Cyber Smart Defence