[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$f9uEh_RreiDIYH1lMfGsh4h_ohGcARyulU6cyOuNDa88":3,"$fRW_DhTx4zZS7D0IA2VFEcX5KC2dfDkerKPWSM3B3pEQ":138,"$fxf6rdNb1DwPAzAFr9fWJ95nz4_1VqSq7pFOTkinQ9HY":143},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":11,"num_ratings":11,"last_updated":13,"tested_up_to":14,"requires_at_least":15,"requires_php":16,"tags":17,"homepage":23,"download_link":24,"security_score":25,"vuln_count":11,"unpatched_count":11,"last_vuln_date":26,"fetched_at":27,"discovery_status":28,"vulnerabilities":29,"developer":30,"crawl_stats":26,"alternatives":36,"analysis":26,"fingerprints":26},"webkernelai-security","WebKernelAI Security","1.0.5","Aamir Sahil","https:\u002F\u002Fprofiles.wordpress.org\u002Faamirsahil\u002F","\u003Cp>\u003Ca href=\"https:\u002F\u002Fwebkernelai.com\" rel=\"nofollow ugc\">WebKernelAI\u003C\u002Fa> is a Technical SEO and Website Security platform. The WebKernelAI Security plugin is a \u003Cstrong>highly secure connector\u003C\u002Fstrong> that links WordPress to the WebKernelAI dashboard for centralized security policy management, malware scanning, plugin auditing, user account management, file integrity monitoring, Web Application Firewall (WAF), and advanced site controls.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>This plugin is a read\u002Fexecute connector only.\u003C\u002Fstrong> It does not store or expose sensitive credentials. All communication is cryptographically signed using HMAC-SHA256 + Ed25519 asymmetric keys. Every request must pass multi-layer signature verification before any action is executed. There is no way for any third party to hijack the site token or impersonate the dashboard.\u003C\u002Fp>\n\u003Cp>Official Website:\u003Cbr \u002F>\nhttps:\u002F\u002Fwebkernelai.com\u003C\u002Fp>\n\u003Cp>Security Plugin:\u003Cbr \u002F>\nhttps:\u002F\u002Fwebkernelai.com\u002Fplugins\u002Fsecurity\u002F\u003C\u002Fp>\n\u003Cp>Documentation:\u003Cbr \u002F>\nhttps:\u002F\u002Fwebkernelai.com\u002Fdocs\u002Fsecurity\u002F\u003C\u002Fp>\n\u003Cp>WebKernelAI helps developers, businesses, and production websites improve:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Technical SEO\u003C\u002Fli>\n\u003Cli>Website Security\u003C\u002Fli>\n\u003Cli>Web Application Firewall (WAF) rule filters\u003C\u002Fli>\n\u003Cli>Crawl Intelligence\u003C\u002Fli>\n\u003Cli>JavaScript Vulnerability Detection\u003C\u002Fli>\n\u003Cli>Website Malware Detection\u003C\u002Fli>\n\u003Cli>Security Header Analysis\u003C\u002Fli>\n\u003Cli>SEO Metadata Management\u003C\u002Fli>\n\u003Cli>Content Security Policy (CSP) Management\u003C\u002Fli>\n\u003Cli>Remote Plugin Update Management\u003C\u002Fli>\n\u003Cli>WordPress User Account Auditing\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Why This Plugin Is Highly Secure\u003C\u002Fh3>\n\u003Cp>WebKernelAI Security is engineered from the ground up with a \u003Cstrong>zero-trust security model\u003C\u002Fstrong>. Every REST API request received by this plugin must pass all of the following layers before any action is taken:\u003C\u002Fp>\n\u003Col>\n\u003Cli>\u003Cstrong>HMAC-SHA256 request signature\u003C\u002Fstrong> — Each request is signed with a shared secret derived from the site pairing token. Any tampered or unsigned request is immediately rejected with 403 Forbidden.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Ed25519 asymmetric cryptography\u003C\u002Fstrong> — Critical operations (like agent revocation) are additionally signed with Ed25519 asymmetric keys for cryptographic non-repudiation.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Nonce replay protection\u003C\u002Fstrong> — Every signed request includes a one-time nonce. Replayed or reused nonces are rejected even if the signature is valid.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Timestamp freshness validation\u003C\u002Fstrong> — Requests older than a configurable time window are rejected to prevent delayed replay attacks.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Trusted-origin enforcement\u003C\u002Fstrong> — REST API calls are validated against known dashboard origins.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Pairing token architecture\u003C\u002Fstrong> — The 64-character site pairing token is generated locally in WordPress and never leaves the site in plaintext. The WebKernelAI dashboard holds only its HMAC derivative.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Emergency revocation\u003C\u002Fstrong> — The WebKernelAI dashboard can remotely revoke or suspend the plugin agent instantly using a cryptographically signed one-time token.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Permission-level callbacks\u003C\u002Fstrong> — Every REST endpoint is individually gated by a strict \u003Ccode>permission_callback\u003C\u002Fcode> that verifies the signed token before the handler ever runs.\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Cp>\u003Cstrong>There is no possible way for any third party, attacker, or man-in-the-middle to hijack or impersonate the WebKernelAI dashboard connection without holding both the HMAC secret and a valid Ed25519 private key simultaneously.\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Ch3>Core Features\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>Secure token-authenticated REST API endpoints\u003C\u002Fli>\n\u003Cli>Signed request validation using HMAC-SHA256 and Ed25519 asymmetric cryptography\u003C\u002Fli>\n\u003Cli>WAF Rule Engine for SQL Injection (SQLi), Cross-Site Scripting (XSS), and Local File Inclusion (LFI)\u003C\u002Fli>\n\u003Cli>Dynamic security telemetry monitoring & database event logs\u003C\u002Fli>\n\u003Cli>Brute force login lockout protections with auto-reset on successful auth\u003C\u002Fli>\n\u003Cli>Custom login URL slug masking with hybrid cookie & query parameter bypass\u003C\u002Fli>\n\u003Cli>Anonymous user enumeration blocks on user REST endpoints (403 Forbidden)\u003C\u002Fli>\n\u003Cli>File integrity inventory generation with weighted overview security scoring (0–100)\u003C\u002Fli>\n\u003Cli>Codebase Security Intelligence — SHA-256 file hashing with false-positive whitelisting for trusted plugin files\u003C\u002Fli>\n\u003Cli>Remote plugin self-update trigger — WebKernelAI dashboard can push plugin updates without WordPress admin access\u003C\u002Fli>\n\u003Cli>WordPress User Account Auditor — remotely list, audit, and delete WordPress user accounts from the dashboard\u003C\u002Fli>\n\u003Cli>First-user and last-user deletion protection — primary admin and the only remaining user can never be deleted remotely\u003C\u002Fli>\n\u003Cli>Plugin Ecosystem Auditor — detects outdated, vulnerable, official, and third-party plugins with real WordPress.org transient data\u003C\u002Fli>\n\u003Cli>Centralized SEO metadata synchronization\u003C\u002Fli>\n\u003Cli>Canonical URL synchronization\u003C\u002Fli>\n\u003Cli>OpenGraph metadata synchronization\u003C\u002Fli>\n\u003Cli>Robots.txt management and subdirectory-safe dynamic XML sitemap generation\u003C\u002Fli>\n\u003Cli>llms.txt controls\u003C\u002Fli>\n\u003Cli>Advanced Content Security Policy (CSP) management\u003C\u002Fli>\n\u003Cli>Security header management\u003C\u002Fli>\n\u003Cli>Production lock profile support\u003C\u002Fli>\n\u003Cli>Security policy rollback history\u003C\u002Fli>\n\u003Cli>Read-only security overview endpoint\u003C\u002Fli>\n\u003Cli>Integration with WebKernelAI Technical SEO Audit and security analysis tools\u003C\u002Fli>\n\u003Cli>Emergency agent revocation endpoint with Ed25519 + OTP verification\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Official WebKernelAI Platform\u003C\u002Fh3>\n\u003Cp>WebKernelAI provides integrated Technical SEO and Website Security tools for WordPress websites and modern web applications.\u003C\u002Fp>\n\u003Cp>Platform capabilities include:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Technical SEO Audit\u003C\u002Fli>\n\u003Cli>Web Application Firewall (WAF)\u003C\u002Fli>\n\u003Cli>Crawl Intelligence\u003C\u002Fli>\n\u003Cli>JavaScript Vulnerability Scanner\u003C\u002Fli>\n\u003Cli>Website Malware Scanner\u003C\u002Fli>\n\u003Cli>Security Header Analysis\u003C\u002Fli>\n\u003Cli>SEO Metadata Synchronization\u003C\u002Fli>\n\u003Cli>Content Security Policy Management\u003C\u002Fli>\n\u003Cli>Website Security Monitoring\u003C\u002Fli>\n\u003Cli>Plugin Manager & Remote Updater\u003C\u002Fli>\n\u003Cli>WordPress User Account Auditing\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Official platform:\u003Cbr \u002F>\nhttps:\u002F\u002Fwebkernelai.com\u003C\u002Fp>\n\u003Ch3>Security Architecture\u003C\u002Fh3>\n\u003Cp>WebKernelAI Security includes multiple protection layers:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>HMAC-SHA256 and Ed25519 asymmetric request signature verification\u003C\u002Fli>\n\u003Cli>WAF engine with customizable security rule drops\u003C\u002Fli>\n\u003Cli>Login custom slug protection with 404 response blocks\u003C\u002Fli>\n\u003Cli>Brute force lockout thresholds\u003C\u002Fli>\n\u003Cli>REST API endpoint restrictions (anonymous user list blocks)\u003C\u002Fli>\n\u003Cli>Nonce replay protection\u003C\u002Fli>\n\u003Cli>Timestamp freshness validation\u003C\u002Fli>\n\u003Cli>Trusted-origin enforcement\u003C\u002Fli>\n\u003Cli>Endpoint-level permission controls\u003C\u002Fli>\n\u003Cli>Rate limiting protections\u003C\u002Fli>\n\u003Cli>Production lock profile\u003C\u002Fli>\n\u003Cli>Rollback-safe policy management\u003C\u002Fli>\n\u003Cli>Emergency remote revocation with cryptographic verification\u003C\u002Fli>\n\u003Cli>False-positive whitelisting in codebase integrity engine\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>The plugin is designed for secure production environments and centralized security operations.\u003C\u002Fp>\n\u003Ch3>Remote Plugin Update Security\u003C\u002Fh3>\n\u003Cp>In version 1.0.5, the plugin supports secure remote self-updates triggered from the WebKernelAI dashboard.\u003C\u002Fp>\n\u003Cp>The update process:\u003Cbr \u002F>\n1. The WebKernelAI dashboard computes the latest version from the official WordPress.org Plugins API.\u003Cbr \u002F>\n2. If an update is available, the dashboard sends a signed POST request to the plugin’s \u003Ccode>\u002Fplugin\u002Fupdate\u003C\u002Fcode> REST endpoint.\u003Cbr \u002F>\n3. The plugin verifies the full HMAC-SHA256 signature before proceeding.\u003Cbr \u002F>\n4. WordPress’s native \u003Ccode>Plugin_Upgrader\u003C\u002Fcode> is used with \u003Ccode>Automatic_Upgrader_Skin\u003C\u002Fcode> to perform the update silently.\u003Cbr \u002F>\n5. The plugin is temporarily deactivated during the file swap to prevent file lock conflicts, then automatically reactivated upon success.\u003C\u002Fp>\n\u003Cp>The download URL is passed as a signed parameter and validated with \u003Ccode>esc_url_raw()\u003C\u002Fcode> before use.\u003C\u002Fp>\n\u003Ch3>File Integrity Monitoring\u003C\u002Fh3>\n\u003Cp>The plugin supports secure integrity inventory generation for supported scan modes.\u003C\u002Fp>\n\u003Cp>Supported integrity metadata includes:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>File path\u003C\u002Fli>\n\u003Cli>SHA-256\u002FMD5 hash\u003C\u002Fli>\n\u003Cli>File size\u003C\u002Fli>\n\u003Cli>Modification timestamp\u003C\u002Fli>\n\u003Cli>Computed security score indicators (0–100)\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Own plugin files are automatically whitelisted to prevent false-positives in the malware scanner regardless of the scan directory (including \u003Ccode>wp-content\u002Fupgrade\u002F\u003C\u002Fcode> temporary update folders).\u003C\u002Fp>\n\u003Cp>Raw file contents are not transmitted during standard integrity operations.\u003C\u002Fp>\n\u003Ch3>User Account Auditing\u003C\u002Fh3>\n\u003Cp>The plugin exposes a secure \u003Ccode>\u002Fusers\u003C\u002Fcode> REST endpoint for the WebKernelAI dashboard to:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>List all registered WordPress users, including their roles and registration dates\u003C\u002Fli>\n\u003Cli>Delete a specific user account remotely\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Deletion is protected by the following safety rules:\u003Cbr \u002F>\n* The first registered user (primary site administrator\u002Fcreator) can never be deleted.\u003Cbr \u002F>\n* The last remaining user on the site can never be deleted.\u003Cbr \u002F>\n* Self-deletion of the current API context user is blocked.\u003C\u002Fp>\n\u003Cp>All deletion requests must pass the standard HMAC-SHA256 signature verification before any action is taken.\u003C\u002Fp>\n\u003Ch3>SEO & Technical Controls\u003C\u002Fh3>\n\u003Cp>The plugin supports centralized Technical SEO management from the WebKernelAI dashboard.\u003C\u002Fp>\n\u003Cp>Supported controls include:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Meta title synchronization\u003C\u002Fli>\n\u003Cli>Meta description synchronization\u003C\u002Fli>\n\u003Cli>Canonical URL synchronization\u003C\u002Fli>\n\u003Cli>OpenGraph metadata synchronization\u003C\u002Fli>\n\u003Cli>Robots directives\u003C\u002Fli>\n\u003Cli>Robots.txt management\u003C\u002Fli>\n\u003Cli>llms.txt management\u003C\u002Fli>\n\u003Cli>Dynamic XML sitemap generation\u003C\u002Fli>\n\u003Cli>Archive indexing controls\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>External Services\u003C\u002Fh3>\n\u003Cp>This plugin connects to WebKernelAI cloud services.\u003C\u002Fp>\n\u003Cp>Official platform:\u003Cbr \u002F>\nhttps:\u002F\u002Fwebkernelai.com\u003C\u002Fp>\n\u003Cp>Data may be transmitted to:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>https:\u002F\u002Fwebkernelai.com\u003C\u002Fli>\n\u003Cli>your configured WebKernelAI dashboard\u002Fbackend endpoint\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Data transmitted may include:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Authenticated API requests\u003C\u002Fli>\n\u003Cli>Integrity inventory metadata\u003C\u002Fli>\n\u003Cli>SEO synchronization payloads\u003C\u002Fli>\n\u003Cli>Security policy payloads\u003C\u002Fli>\n\u003Cli>Selected configuration settings\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Data is transmitted:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>When connecting a website to WebKernelAI\u003C\u002Fli>\n\u003Cli>When administrators trigger dashboard operations\u003C\u002Fli>\n\u003Cli>During scan, synchronization, or policy deployment operations\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Terms of Service:\u003Cbr \u002F>\nhttps:\u002F\u002Fwebkernelai.com\u002Fterms\u003C\u002Fp>\n\u003Cp>Privacy Policy:\u003Cbr \u002F>\nhttps:\u002F\u002Fwebkernelai.com\u002Fprivacy\u003C\u002Fp>\n","A secure WordPress connector to remotely manage, audit, and harden your site from the WebKernelAI dashboard with cryptographic signature verification.",0,363,"2026-07-18T13:25:00.000Z","7.1","6.2","7.4",[18,19,20,21,22],"csp","malware-scanner","security","technical-seo","wordpress-security","https:\u002F\u002Fwebkernelai.com\u002Fwordpress-security","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwebkernelai-security.1.0.5.zip",100,null,"2026-07-22T17:31:50.256Z","no_bundle",[],{"slug":31,"display_name":7,"profile_url":8,"plugin_count":32,"total_installs":11,"avg_security_score":25,"avg_patch_time_days":33,"trust_score":34,"computed_at":35},"aamirsahil",2,30,94,"2026-09-21T10:33:32.162Z",[37,59,82,103,119],{"slug":38,"name":39,"version":40,"author":41,"author_profile":42,"description":43,"short_description":44,"active_installs":45,"downloaded":46,"rating":47,"num_ratings":48,"last_updated":49,"tested_up_to":50,"requires_at_least":51,"requires_php":52,"tags":53,"homepage":57,"download_link":58,"security_score":25,"vuln_count":11,"unpatched_count":11,"last_vuln_date":26,"fetched_at":27},"malcare-security","MalCare WordPress Security Plugin – Malware Scanner, Cleaner, Security Firewall","6.48","malcare","https:\u002F\u002Fprofiles.wordpress.org\u002Fmalcare\u002F","\u003Ch3>MALCARE SECURITY SERVICES\u003C\u002Fh3>\n\u003Cp>Security Plugin For WordPress Websites\u003Cbr \u002F>\n★★★★★\u003C\u002Fp>\n\u003Cp>A WordPress security plugin ensures that your website remains completely safe and secure, always. We created \u003Ca href=\"https:\u002F\u002Fwww.malcare.com\u002F\" rel=\"nofollow ugc\">MalCare Security Plugin\u003C\u002Fa> to help website owners worry less about their site security, achieve peace of mind and focus all their energies on growing their business or website.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Why you need MalCare Security?\u003C\u002Fstrong>\u003Cbr \u002F>\n\u003Cspan class=\"embed-youtube\" style=\"text-align:center; display: block;\">\u003Ciframe loading=\"lazy\" class=\"youtube-player\" width=\"750\" height=\"422\" src=\"https:\u002F\u002Fwww.youtube.com\u002Fembed\u002Fj3h0JF0we4o?version=3&rel=1&showsearch=0&showinfo=1&iv_load_policy=1&fs=1&hl=en-US&autohide=2&wmode=transparent\" allowfullscreen=\"true\" style=\"border:0;\" sandbox=\"allow-scripts allow-same-origin allow-popups allow-presentation allow-popups-to-escape-sandbox\">\u003C\u002Fiframe>\u003C\u002Fspan>\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Difference Between MalCare Free vs Premium\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cspan class=\"embed-youtube\" style=\"text-align:center; display: block;\">\u003Ciframe loading=\"lazy\" class=\"youtube-player\" width=\"750\" height=\"422\" src=\"https:\u002F\u002Fwww.youtube.com\u002Fembed\u002F4ja5ix9WDCo?version=3&rel=1&showsearch=0&showinfo=1&iv_load_policy=1&fs=1&hl=en-US&autohide=2&wmode=transparent\" allowfullscreen=\"true\" style=\"border:0;\" sandbox=\"allow-scripts allow-same-origin allow-popups allow-presentation allow-popups-to-escape-sandbox\">\u003C\u002Fiframe>\u003C\u002Fspan>\n\u003Cp>\u003Cstrong>Why MalCare is best WordPress security plugin?\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cspan class=\"embed-youtube\" style=\"text-align:center; display: block;\">\u003Ciframe loading=\"lazy\" class=\"youtube-player\" width=\"750\" height=\"422\" src=\"https:\u002F\u002Fwww.youtube.com\u002Fembed\u002Fvt-0TrMV-TQ?version=3&rel=1&showsearch=0&showinfo=1&iv_load_policy=1&fs=1&hl=en-US&autohide=2&wmode=transparent\" allowfullscreen=\"true\" style=\"border:0;\" sandbox=\"allow-scripts allow-same-origin allow-popups allow-presentation allow-popups-to-escape-sandbox\">\u003C\u002Fiframe>\u003C\u002Fspan>\n\u003Cp>\u003Cstrong>MalCare in 1 Minute – Overview\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>\u003Cspan class=\"embed-youtube\" style=\"text-align:center; display: block;\">\u003Ciframe loading=\"lazy\" class=\"youtube-player\" width=\"750\" height=\"422\" src=\"https:\u002F\u002Fwww.youtube.com\u002Fembed\u002FH1XRntW_FeE?version=3&rel=1&showsearch=0&showinfo=1&iv_load_policy=1&fs=1&hl=en-US&autohide=2&wmode=transparent\" allowfullscreen=\"true\" style=\"border:0;\" sandbox=\"allow-scripts allow-same-origin allow-popups allow-presentation allow-popups-to-escape-sandbox\">\u003C\u002Fiframe>\u003C\u002Fspan>\u003Cbr \u002F>\n\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Important Links: \u003Ca href=\"https:\u002F\u002Fwww.malcare.com\u002Ffeatures\u002F\" rel=\"nofollow ugc\">Security Features\u003C\u002Fa> | \u003Ca href=\"https:\u002F\u002Fwww.malcare.com\u002F\" rel=\"nofollow ugc\">Why Choose MalCare?\u003C\u002Fa> | \u003Ca href=\"https:\u002F\u002Fwww.malcare.com\u002Ftop-wordpress-security-plugins-compared\u002F\" rel=\"nofollow ugc\">Comparisons\u003C\u002Fa> | \u003Ca href=\"https:\u002F\u002Fwww.malcare.com\u002Fmalcare-free-premium\u002F\" rel=\"nofollow ugc\">Free vs Paid\u003C\u002Fa>\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>MalCare is the \u003Cstrong>fastest\u003C\u002Fstrong> malware detection and removal plugin loved by thousands of developers and agencies. With an industry-first \u003Cstrong>automatic one-click malware removal\u003C\u002Fstrong>, your WordPress website is clean before Google blacklists it or your web host takes it down. MalCare has been developed from the ground up after \u003Cstrong>analyzing over 240,000 websites over 2.5+ years\u003C\u002Fstrong>.\u003C\u002Fp>\n\u003Cp>Its \u003Cstrong>intelligent scanning methodology\u003C\u002Fstrong> will \u003Cstrong>never slow down your WordPress site\u003C\u002Fstrong> and \u003Cstrong>accurately identifies\u003C\u002Fstrong> the most complex malware that typically goes undetected in other popular WordPress security plugins.\u003C\u002Fp>\n\u003Cp>The \u003Cstrong>one-click malware cleaner\u003C\u002Fstrong> offers unlimited automated cleanups while the inbuilt \u003Cstrong>powerful cloud-based firewall\u003C\u002Fstrong> ensures round-the-clock website protection against spam attacks. Moreover, you can \u003Cstrong>block countries\u003C\u002Fstrong> to mitigate hack attacks.\u003C\u002Fp>\n\u003Cp>MalCare comes integrated with a \u003Cstrong>complete website management\u003C\u002Fstrong> module that ensures better WP security and site management to your websites from a single dashboard.\u003C\u002Fp>\n\u003Cp>The WP security plugin \u003Cstrong>notifies you if the WordPress site goes down\u003C\u002Fstrong> so that you can handle the situation before you start losing visitors. Performance Check enables WordPress users to keep an eye on their \u003Cstrong>loading speed\u003C\u002Fstrong>.\u003C\u002Fp>\n\u003Cp>MalCare offers a premium \u003Cstrong>White-Label\u003C\u002Fstrong> solution that lets agencies provide better website security to their clients without risking their business. And enables users to \u003Cstrong>generate beautiful reports\u003C\u002Fstrong> for their clients.\u003C\u002Fp>\n\u003Ch3>Why Choose MalCare WordPress Security Plugin?\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\n\u003Ch4>WordPress Malware Scanner\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Cloud Based Deep malware scanner\u003C\u002Fli>\n\u003Cli>Doesn’t Slow down your WordPress site\u003C\u002Fli>\n\u003Cli>Detects malware BEFORE it’s too late\u003C\u002Fli>\n\u003Cli>NO impact on your website\u003C\u002Fli>\n\u003Cli>Finds ALL types of malware, even new & complex ones\u003C\u002Fli>\n\u003Cli>Get Alerts about Security Risks with our WordPress Vulnerability Scanner\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>\n\u003Ch4>WordPress Malware Removal\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>View hacked file details\u003C\u002Fli>\n\u003Cli>Cleans your site INSTANTLY, in less than 60 Secs\u003C\u002Fli>\n\u003Cli>Removes ALL traces of malware\u003C\u002Fli>\n\u003Cli>UNLIMITED hack cleanups\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>\n\u003Ch4>WordPress Website Protection\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Blocks hacker BOTS from attacking login page\u003C\u002Fli>\n\u003Cli>Identifies & blocks MALICIOUS traffic\u003C\u002Fli>\n\u003Cli>Enables users to HARDEN their WordPress sites\u003C\u002Fli>\n\u003Cli>Enables users to block ENTIRE countries\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>\n\u003Ch4>Easy to Use\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Set up an account in 60 secs\u003C\u002Fli>\n\u003Cli>Configure security once & never look at it again\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>\n\u003Ch4>Support\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Agile & responsive customer support\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Why Is MalCare Such a Game-Changer?\u003C\u002Fh3>\n\u003Cp>MalCare offers unparalleled security services. Some services are free and others are paid.\u003C\u002Fp>\n\u003Ch4>MalCare’s FREE Services –\u003C\u002Fh4>\n\u003Col>\n\u003Cli>\n\u003Ch4>Cloud-Based Malware Scanning (Free)\u003C\u002Fh4>\n\u003Cp>MalCare’s Cloud-based Scanning ensures no impact on your website ever. Moreover, it detects Complex Malware missed by other popular security plugins for WordPress.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Ch4>Web-Application WordPress Firewall (Free)\u003C\u002Fh4>\n\u003Cp>Get Real-Time Protection for your WordPress website against the latest security threats with MalCare’s Smart Firewall. Block hackers & bots before they harm your site.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Ch4>CAPTCHA-Based Login Page Protection (Free)\u003C\u002Fh4>\n\u003Cp>Automatically prevent brute force attacks with MalCare’s Smart Captcha-Based Login Page Protection. Round-the-clock protection against malicious traffic.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Ch4>MalCare’s PAID Services –\u003C\u002Fh4>\n\u003Col>\n\u003Cli>\n\u003Ch4>Viewing Hacked Files (Paid)\u003C\u002Fh4>\n\u003Cp>View the infected files present on your WordPress website. Learn which themes or plugins or files or folders were infected by hackers.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Ch4>Industry-First Instant Malware Removal (Paid)\u003C\u002Fh4>\n\u003Cp>Clean your hacked site instantly in less than 60 secs with MalCare’s 1-Click Cleaner. Clean your website before Google blacklists it or your web host takes it down.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Ch4>WordPress Recommended Website Hardening (Paid)\u003C\u002Fh4>\n\u003Cp>Easily configure WordPress recommended best security practices with just 1-Click from right within MalCare’s dashboard. No technical knowledge needed.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Ch4>Geo-blocking (Paid)\u003C\u002Fh4>\n\u003Cp>Restrict access to users based on their geographical location. Easily block all visitors from certain countries to mitigate the risk of being hacked.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Ch4>Uptime Monitoring (Paid)\u003C\u002Fh4>\n\u003Cp>With MalCare’s Uptime Monitoring keep a steady eye on your WordPress site. It ensures that you are not oblivious to website downtime.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Ch3>Common Hack Attacks Prevented By MalCare\u003C\u002Fh3>\n\u003Cp>MalCare protects websites against all common hack attacks which includes:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.malcare.com\u002Fblog\u002Fwordpress-brute-force\u002F\" rel=\"nofollow ugc\">Brute force attacks\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.malcare.com\u002Fblog\u002Fjapanese-keyword-hack\u002F\" rel=\"nofollow ugc\">Japanese keyword hack\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.malcare.com\u002Fblog\u002Fwordpress-hacked-redirect\u002F\" rel=\"nofollow ugc\">WordPress redirect hack\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.malcare.com\u002Fblog\u002Fwhat-is-pharma-hack-how-to-clean-it\u002F\" rel=\"nofollow ugc\">Pharma hack\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.malcare.com\u002Fblog\u002Fseo-spam\u002F\" rel=\"nofollow ugc\">SEO spam hack\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.malcare.com\u002Fblog\u002Fwordpress-theme-hacked\u002F\" rel=\"nofollow ugc\">WordPress theme hack\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.malcare.com\u002Fblog\u002Fspam-link-injection-wordpress\u002F\" rel=\"nofollow ugc\">WordPress spam link injections\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.malcare.com\u002Fblog\u002Frevslider-exploit\u002F\" rel=\"nofollow ugc\">Revslider hack\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.malcare.com\u002Fblog\u002Fwordpress-timthumb\u002F\" rel=\"nofollow ugc\">TimThumb hack\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.malcare.com\u002Fblog\u002Fadminer-php-hack\u002F\" rel=\"nofollow ugc\">Adminer.php hack\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.malcare.com\u002Fblog\u002Fcross-site-scripting-xss-attacks-what-how-prevent-them\u002F\" rel=\"nofollow ugc\">XSS or cross-site scripting hack\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.malcare.com\u002Fblog\u002Fhow-to-detect-and-remove-wp-vcd-malware-a-step-by-step-guide-and-a-bonus-plugin\u002F\" rel=\"nofollow ugc\">WP-VCD hack\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.malcare.com\u002Fblog\u002Fpreventing-sql-injections\u002F\" rel=\"nofollow ugc\">SQL injection hack\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.malcare.com\u002Fblog\u002Fwordpress-malvertising\u002F\" rel=\"nofollow ugc\">WordPress malvertising hack\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.malcare.com\u002Fblog\u002Fremove-google-blacklist-warning\u002F\" rel=\"nofollow ugc\">Google Blacklist hack\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.malcare.com\u002Fblog\u002Fgoogle-adwords-account-suspended\u002F\" rel=\"nofollow ugc\">Google Adwords hack\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.malcare.com\u002Fblog\u002Fsession-hijacking-cookie-stealing\u002F\" rel=\"nofollow ugc\">Cookie stealing & session hijacking\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.malcare.com\u002Fblog\u002Fhow-to-remove-phishing\u002F\" rel=\"nofollow ugc\">WordPress phishing hack\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.malcare.com\u002Fblog\u002Ffavicon-ico-virus-wordpress\u002F\" rel=\"nofollow ugc\">Favicon.ico virus hack\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.malcare.com\u002Fblog\u002Fremoving-wp-feed-php-malware\u002F\" rel=\"nofollow ugc\">WP-Feed.php & WP-Tmp.php\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.malcare.com\u002Fblog\u002Fhow-to-scan-malware-and-backdoors-of-your-wordpress-site\u002F\" rel=\"nofollow ugc\">Backdoor hack\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.malcare.com\u002Fblog\u002Fcoinhive-malware-wordpress\u002F\" rel=\"nofollow ugc\">Coinhive hack\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.malcare.com\u002Fblog\u002Fdeface-wordpress\u002F\" rel=\"nofollow ugc\">WordPress deface hack\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>MalCare Free vs. MalCare Premium\u003C\u002Fh3>\n\u003Col>\n\u003Cli>\n\u003Ch4>Cloud Based Malware Scanner (FREE)\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Cloud-Based Malware Scanning \u003Cstrong>(Free)\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>Deep Malware Scanning – Files & Database \u003Cstrong>(Free)\u003C\u002Fstrong>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>\n\u003Ch4>Website Firewall (FREE)\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Web Application Firewall \u003Cstrong>(Free)\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>Plugin Based Firewall \u003Cstrong>(Free)\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>Rules update every 7 days \u003Cstrong>(Free)\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>Login Page Protection \u003Cstrong>(Free)\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>Bot Protection \u003Cstrong>(Free)\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>Rules update every 5 mins \u003Cstrong>(Paid)\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>Geo-Blocking \u003Cstrong>(Paid)\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>Website Hardening \u003Cstrong>(Paid)\u003C\u002Fstrong>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>\n\u003Ch4>Instant Malware Removal (PAID)\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>View Malware Insights \u003Cstrong>(Paid)\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>Instant One-Click Clean Ups \u003Cstrong>(Paid)\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>Automatic Clean-Ups \u003Cstrong>(Paid)\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>Unlimited Clean-Ups \u003Cstrong>(Paid)\u003C\u002Fstrong>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>\n\u003Ch4>Personalized Customer Support (Paid)\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Support on WordPress forum \u003Cstrong>(Free)\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>Support via email and chat \u003Cstrong>(Paid)\u003C\u002Fstrong>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Ch3>Who Can Benefit From MalCare?\u003C\u002Fh3>\n\u003Cp>MalCare is perfect for:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Any WordPress Websites\u003C\u002Fli>\n\u003Cli>Small Business Websites\u003C\u002Fli>\n\u003Cli>Developer Websites\u003C\u002Fli>\n\u003Cli>Web Designing Websites\u003C\u002Fli>\n\u003Cli>eCommerce Stores\u003C\u002Fli>\n\u003Cli>Niche Sites\u003C\u002Fli>\n\u003Cli>Artists & Photographers Sites\u003C\u002Fli>\n\u003Cli>Amateur & Professional Bloggers\u003C\u002Fli>\n\u003Cli>Local Business Sites\u003C\u002Fli>\n\u003Cli>Website for Startups\u003C\u002Fli>\n\u003Cli>Websites Selling Courses\u003C\u002Fli>\n\u003Cli>Influencer Sites\u003C\u002Fli>\n\u003Cli>Web Hosting Companies\u003C\u002Fli>\n\u003Cli>Website Maintenance Services or Agencies\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Detailed Setup Step-by-Step Tutorials\u003C\u002Fh3>\n\u003Cp>This WordPress security plugin works in tandem with the \u003Ca href=\"https:\u002F\u002Fwww.malcare.com\" rel=\"nofollow ugc\">MalCare\u003C\u002Fa> servers. MalCare servers do all the heavy processing and will alert you if your site has any security issues.\u003C\u002Fp>\n\u003Cp>Hence a MalCare account is needed to use the plugin. This account can also be used by our other products including \u003Ca href=\"https:\u002F\u002Fblogvault.net\" rel=\"nofollow ugc\">BlogVault\u003C\u002Fa>.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fmalcare.freshdesk.com\u002Fsupport\u002Fsolutions\u002Farticles\u002F35000055512-how-do-i-set-up-a-malcare-account-\" rel=\"nofollow ugc\">How to Set Up a MalCare Account?\u003C\u002Fa> (Help Doc)\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.youtube.com\u002Fwatch?v=v8L_DZllk7k&list=\" rel=\"nofollow ugc\">How to Set Up a MalCare Account?\u003C\u002Fa> (Video)\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>MalCare Full Security Features List\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\n\u003Ch4>Cloud Based Malware Scanner\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Daily Scan Frequency\u003C\u002Fli>\n\u003Cli>On-demand Site Scans\u003C\u002Fli>\n\u003Cli>Scan Non-WP Files\u003C\u002Fli>\n\u003Cli>Does not slow down your website ever\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>\n\u003Ch4>Instant Malware Removal\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>View Hacked Files details\u003C\u002Fli>\n\u003Cli>Instant Automatic Malware Removal\u003C\u002Fli>\n\u003Cli>Removal of Unknown & New Malware\u003C\u002Fli>\n\u003Cli>Unlimited Malware Removal\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>\n\u003Ch4>Intelligent Malware Protection\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Web Application Firewall\u003C\u002Fli>\n\u003Cli>IP Whitelisting\u003C\u002Fli>\n\u003Cli>CAPTCHA-based Login Page Protection\u003C\u002Fli>\n\u003Cli>Traffic Logs\u003C\u002Fli>\n\u003Cli>Login Logs\u003C\u002Fli>\n\u003Cli>Geo-Blocking\u003C\u002Fli>\n\u003Cli>Alerts for Suspicious Logins\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>\n\u003Ch4>Website Hardening\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Block PHP Execution in Untrusted Folders\u003C\u002Fli>\n\u003Cli>Disable Files Editor\u003C\u002Fli>\n\u003Cli>Block Plugin or Theme Installation\u003C\u002Fli>\n\u003Cli>Change Security Keys\u003C\u002Fli>\n\u003Cli>Reset All Passwords\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>\n\u003Ch4>Complete Website Management\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Centralized Dashboard\u003C\u002Fli>\n\u003Cli>Plugins & Themes Management & Update\u003C\u002Fli>\n\u003Cli>User Management\u003C\u002Fli>\n\u003Cli>Team Management\u003C\u002Fli>\n\u003Cli>Client Management\u003C\u002Fli>\n\u003Cli>Generate & Schedule Reports\u003C\u002Fli>\n\u003Cli>White-Labeling Solution\u003C\u002Fli>\n\u003Cli>Uptime Monitoring\u003C\u002Fli>\n\u003Cli>Site Speed Monitoring\u003C\u002Fli>\n\u003Cli>Blacklist Alarm\u003C\u002Fli>\n\u003Cli>Slack Integration\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>\n\u003Ch4>Support\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Email\u003C\u002Fli>\n\u003Cli>Chat\u003C\u002Fli>\n\u003Cli>Social Media\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Fans Are Raving About Us\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fvisualcomposer.com\u002Fblog\u002Fmalcare-review\u002F\" rel=\"nofollow ugc\">MalCare Review on VisualComposer\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.elegantthemes.com\u002Fblog\u002Fresources\u002Fmalcare-security-and-firewall-the-right-security-plugin-for-your-site\" rel=\"nofollow ugc\">MalCare Review on ElegantThemes\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fblog.weglot.com\u002Fideal-security-solution-malcare-review\u002F\" rel=\"nofollow ugc\">MalCare Review on Weglot\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.wpwhitesecurity.com\u002Fmalcare-wordpress-site-security-service-reviewed\u002F\" rel=\"nofollow ugc\">MalCare Review on WPWhiteSecurity\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.youtube.com\u002Fwatch?v=2yNIb4Pc_ig\" rel=\"nofollow ugc\">MalCare Reviews by WordPress Influencer Adam Preiser (Plus Real Malware Removal Demo)\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Connect With Our Team of Security Experts\u003C\u002Fh3>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwww.facebook.com\u002Fgroups\u002FWordPressForWebCreators\u002F\" rel=\"nofollow ugc\">Join MalCare’s Facebook Community\u003C\u002Fa> – The purpose of the group is to enable Web Creators to gain valuable insights and help from community members which will be valuable to their business. So, if you are a WordPress user & want to keep up with the latest industry news and get help for your business, \u003Ca href=\"https:\u002F\u002Fwww.facebook.com\u002Fgroups\u002FWordPressForWebCreators\u002F\" rel=\"nofollow ugc\">join us\u003C\u002Fa>!\u003C\u002Fp>\n\u003Ch3>Don’t Know Where to Getting Started? Start From Here –\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fmalcare.freshdesk.com\u002Fsupport\u002Fsolutions\u002Farticles\u002F35000055512-how-do-i-set-up-a-malcare-account-\" rel=\"nofollow ugc\">How to Setup MalCare Account?\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.facebook.com\u002Fgroups\u002FWordPressForWebCreators\u002F\" rel=\"nofollow ugc\">Join MalCare Facebook Group MalCare\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.youtube.com\u002Fchannel\u002FUC5oQAXXvndQJuyVrWgMRWqg\" rel=\"nofollow ugc\">MalCare Tutorial Videos\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fmalcare.freshdesk.com\u002Fsupport\u002Fhome\" rel=\"nofollow ugc\">User Help Documentations\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.malcare.com\u002Ffaq\u002F\" rel=\"nofollow ugc\">Frequently Asked Questions\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fmalcare.freshdesk.com\u002Fsupport\u002Ftickets\u002Fnew\" rel=\"nofollow ugc\">Support for MalCare Users\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>MalCare vs. Others\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.codeinwp.com\u002Fblog\u002Fsucuri-vs-wordfence-vs-malcare\u002F\" rel=\"nofollow ugc\">MalCare vs Sucuri vs Wordfence by CodeinWP\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwpmayor.com\u002Fmalcare-sucuri-wordfence-sitelock-ithemes-security-comparison\u002F\" rel=\"nofollow ugc\">MalCare vs Sucuri vs Wordfence vs SiteLock vs iThemes Security by WPMayor\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n","Get Bulletproof Security for your WordPress site. WordPress security plugin packed with comprehensive Firewall, malware scanner, cleaner & more.",200000,18130852,88,536,"2026-06-06T04:58:00.000Z","7.0.2","4.0","7.0",[54,55,19,56,22],"firewall","malware-removal","vulnerabilities","https:\u002F\u002Fwww.malcare.com","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fmalcare-security.6.48.zip",{"slug":60,"name":61,"version":62,"author":63,"author_profile":64,"description":65,"short_description":66,"active_installs":67,"downloaded":68,"rating":69,"num_ratings":70,"last_updated":71,"tested_up_to":50,"requires_at_least":72,"requires_php":73,"tags":74,"homepage":77,"download_link":78,"security_score":79,"vuln_count":80,"unpatched_count":11,"last_vuln_date":81,"fetched_at":27},"quttera-web-malware-scanner","Quttera ThreatSign – Web Malware Scanner for WordPress","4.1.0.20","quttera","https:\u002F\u002Fprofiles.wordpress.org\u002Fquttera\u002F","\u003Cp>Quttera ThreatSign protects your WordPress website with multi-layered security:\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Malware Detection:\u003C\u002Fstrong> Powered by Quttera’s AI-driven heuristic engine, the scanner detects malicious PHP, obfuscated JavaScript, hidden iframes, redirects, spam, SEO malware, and credit-card skimmers targeting checkout pages. The plugin performs on-demand scans directly from your WordPress admin and checks your domain against more than 40 global security authorities, including Google, McAfee, Norton, and Yandex. Detection capabilities are continuously enhanced using insights from Quttera’s worldwide threat intelligence network.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Brute Force Protection:\u003C\u002Fstrong> Prevents unauthorized login attempts with IP locking, configurable rate limiting, and environment-aware protection policies. Supports both shared hosting (aggressive locking) and dedicated servers (progressive delays). Includes emergency bypass mechanism for critical situations.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Bot Protection:\u003C\u002Fstrong> Layered defense against automated attacks using multi-stage risk evaluation, token-bucket rate limiting, and legitimate bot recognition (Googlebot, Bingbot, etc.). Protects REST API, XML-RPC, and WooCommerce endpoints with endpoint-specific risk scoring.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Admin User Monitoring:\u003C\u002Fstrong> Real-time detection and alerting for unauthorized admin additions, removals, and role changes with database audit trail and snapshots.\u003C\u002Fp>\n\u003Cp>For complete protection—including automated malware removal, scheduled scanning, WAF, and 24\u002F7 monitoring—you can upgrade to a ThreatSign Website Security plan.\u003C\u002Fp>\n\u003Ch4>Malware Detection Features:\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>One-click on-demand scans from WP admin\u003C\u002Fli>\n\u003Cli>0-day (unknown threat) detection via heuristic & behavioral analysis\u003C\u002Fli>\n\u003Cli>Detection of malicious PHP (backdoors, shells, injections)\u003C\u002Fli>\n\u003Cli>Detection of obfuscated or polymorphic JavaScript\u003C\u002Fli>\n\u003Cli>Identification of malicious iframes, redirects & hidden links\u003C\u002Fli>\n\u003Cli>Detection of spam & SEO malware\u003C\u002Fli>\n\u003Cli>Checkout skimmer detection\u003C\u002Fli>\n\u003Cli>Inspection of WordPress core file integrity\u003C\u002Fli>\n\u003Cli>Detection of alien or unauthorized files in core directories\u003C\u002Fli>\n\u003Cli>External links and outbound reference analysis\u003C\u002Fli>\n\u003Cli>Blacklist checks across 40+ security authorities\u003C\u002Fli>\n\u003Cli>Cloud-based scanning to reduce server resource load\u003C\u002Fli>\n\u003Cli>Detailed investigation reports with severity levels\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Brute Force Protection Features:\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>IP-based locking with configurable thresholds\u003C\u002Fli>\n\u003Cli>Multi-stage failure detection with soft and hard locks\u003C\u002Fli>\n\u003Cli>Environment-aware policies for shared hosting and dedicated servers\u003C\u002Fli>\n\u003Cli>IP whitelist\u002Fblacklist with CIDR notation support\u003C\u002Fli>\n\u003Cli>Emergency bypass mechanism via constant or filter\u003C\u002Fli>\n\u003Cli>User account lockout alerts via email\u003C\u002Fli>\n\u003Cli>Combo-lock (IP + username) detection\u003C\u002Fli>\n\u003Cli>Rate limiting with progressive delays\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Bot Protection Features:\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Multi-stage risk evaluation with heuristic analysis\u003C\u002Fli>\n\u003Cli>Token-bucket rate limiting across multiple lanes (global, REST, XML-RPC, checkout, cart)\u003C\u002Fli>\n\u003Cli>Legitimate bot recognition (Googlebot, Bingbot with elevated rate limits)\u003C\u002Fli>\n\u003Cli>REST API enumeration and authentication protection\u003C\u002Fli>\n\u003Cli>WooCommerce endpoint protection (checkout & cart)\u003C\u002Fli>\n\u003Cli>Configurable operation modes (Observe, Balanced, Aggressive)\u003C\u002Fli>\n\u003Cli>Risk-based challenge mechanisms and exponential backoff\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Admin User Monitoring Features:\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Real-time detection of admin user additions and removals\u003C\u002Fli>\n\u003Cli>Admin role change tracking\u003C\u002Fli>\n\u003Cli>Database snapshot comparison for audit trail\u003C\u002Fli>\n\u003Cli>WP-Cron scheduled checks (1-minute intervals)\u003C\u002Fli>\n\u003Cli>Immediate detection via WordPress hooks\u003C\u002Fli>\n\u003Cli>Email alerts for unauthorized changes\u003C\u002Fli>\n\u003Cli>Comprehensive alarm system integration\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>If you need malware removal assistance, contact us at support@quttera.com or sign up for any\u003Cbr \u002F>\nof our ThreatSign annual plans, which include cleanup & blacklist removal:\u003Cbr \u002F>\nhttps:\u002F\u002Fquttera.com\u002Fanti-malware-website-monitoring-signup\u003C\u002Fp>\n\u003Ch3>Credits\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fquttera.com\" rel=\"nofollow ugc\">Quttera\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Plugin’s other home\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fquttera.com\u002Fwordpress-malware-scanner\" rel=\"nofollow ugc\">WordPress Malware Scanner\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n","WordPress multi-level security scanner detecting malware, 0-day threats, brute-force attacks, bot attacks, and unauthorized admin changes.",10000,4604874,78,47,"2026-07-09T00:02:00.000Z","3.3.2","7.2",[75,55,19,76,22],"card-skimmer","threat-detection","http:\u002F\u002Fquttera.com","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fquttera-web-malware-scanner.4.1.0.20.zip",98,3,"2025-08-14 00:00:00",{"slug":83,"name":84,"version":85,"author":86,"author_profile":87,"description":88,"short_description":89,"active_installs":90,"downloaded":91,"rating":92,"num_ratings":93,"last_updated":94,"tested_up_to":95,"requires_at_least":96,"requires_php":97,"tags":98,"homepage":101,"download_link":102,"security_score":25,"vuln_count":11,"unpatched_count":11,"last_vuln_date":26,"fetched_at":27},"cwis-antivirus-malware-detected","WebDefender Security – Protection & AntiSpam","5.0.2.1","CobWeb Security Ltd.","https:\u002F\u002Fprofiles.wordpress.org\u002Fcwis\u002F","\u003Ch4>A Professional Security Protection Plugin for WP\u003C\u002Fh4>\n\u003Cp>The WebDefender was developed by a team of security experts and it incorporates professional security tools for the best all around WordPress website protection and prevention of threats. Includes GDPR compline module.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>Smart Protection \u002F Website Hide Function (Prevent Hacker Attack \u002F Security) \u002F Anti-Spam Protection \u002F Brute Force Bot Attack Prevention \u002F Smart Firewall\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Detection \u002F Antivirus Scanner \u002F Database Malware \u002F Adware, Spyware, Spam Links\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Diagnostic \u002F Vulnerabilities Detection \u002F Blacklist Monitoring\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Built-in Malware Removal Tool \u002F Security Cleaning Tool\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Security Hardening \u002F Hosting Hardening Check \u002F Automatic Updating Function\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>GDPR Tools \u002F GDPR Compliance Function\u003C\u002Fstrong>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>All of these solution make the WebDefender one of the best all around security protection tools for your WordPress resource.\u003C\u002Fp>\n\u003Ch3>The WebDefender offers the following tools and protection measures\u003C\u002Fh3>\n\u003Ch4>Primary Protection Function\u003C\u002Fh4>\n\u003Cp>\u003Cstrong>Website Hide function\u003C\u002Fstrong> that hides your WP site from crawlers spiders and bots.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Hides website from bots, hides the core WP website components, plugins and themes.\u003C\u002Fli>\n\u003Cli>Fully automatic encryption of your website components.\u003C\u002Fli>\n\u003Cli>Coding website without use of the .htaccess file.\u003C\u002Fli>\n\u003Cli>One click installation.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Security Protection Functions\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Cstrong>Smart Firewall\u003C\u002Fstrong> that detects and blocks bot traffic. This is a perfect and powerful prevention tool.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Anti-Bot Protection\u003C\u002Fstrong> – Monitors web traffic, filters out, and blocks bad bot traffic to a website.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Anti-SPAM Protection\u003C\u002Fstrong> – Automatic detection of all comments insert by bots and their filtration.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Brute Force Bot Attack Prevention\u003C\u002Fstrong> – Bots detection system to prevent attempts to crack a password (login security).\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Antivirus Security Scanner\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>A professional \u003Cstrong>Antivirus Scanner\u003C\u002Fstrong> that will scan your website from external threats. Designed to detect adware and malware, backdoors, exploits, phishing code, trojans and viruses, include built-in \u003Cstrong>malware removal tool\u003C\u002Fstrong>.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Database Malware Scanning\u003C\u002Fstrong> – A unique ability of our algorithm is scanning the website’s database. This function crucial as more and more hackers use SQL injection to infect the websites with malware.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Adware, Spyware and SPAM links detection\u003C\u002Fstrong> – Protect you website from attached code attacks.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Vulnerabilities Detection\u003C\u002Fstrong> – Plugins and themes security vulnerabilities, SQL, XSS injections, vulnerable and insecure scripts.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Blacklist Monitoring\u003C\u002Fstrong> – Check your website reputation.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Security Hardening\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Cstrong>Updater\u003C\u002Fstrong> – an automatic functional tool for updating your WordPress Core versions, plugins and themes.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Hardening\u003C\u002Fstrong> – Detect the hosting configuration security parameter.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Malware Removal Tool\u003C\u002Fh4>\n\u003Cp>Built-in file viewer and editor is an easy to use security cleaning tool for the removal of infected codes or its part depending on the type of infection.\u003C\u002Fp>\n\u003Ch4>GDPR Compliance Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>GDPR Consent management\u003C\u002Fli>\n\u003Cli>Cookies and data collection privacy management\u003C\u002Fli>\n\u003Cli>User data management\u003C\u002Fli>\n\u003Cli>Privacy information should we provide to user\u003C\u002Fli>\n\u003Cli>Personal data breaches\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Companies that collect data on citizens in European Union (EU) countries will need to comply with strict new rules around protecting customer data by May 25, 2018. The General Data Protection Regulation (GDPR) is expected to set a new standard for consumer rights regarding their data, but companies will be challenged as they put systems and processes in place to comply.\u003C\u002Fp>\n\u003Cp>Compliance will cause some concerns and new expectations of security teams. For example, the GDPR takes a wide view of what constitutes personal identification information. Companies will need the same level of protection for things like an individual’s IP address or cookie data as they do for name, address and Social Security number.\u003C\u002Fp>\n\u003Cp>This plugin is meant to assist a Controller, Data Processor, and Data Protection Officer (DPO) with efforts to meet the obligations and rights enacted under the GDPR.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>NOTE:\u003C\u002Fstrong> Installing this plugin does not guarantee a full compliment with the GDPR. Please contact a GDPR consultant or a law firm to assess the necessary measures.\u003C\u002Fp>\n\u003Ch3>Technical Description\u003C\u002Fh3>\n\u003Ch4>Hide Function – Perfect Security and Protection solution\u003C\u002Fh4>\n\u003Cp>A passive security mechanism for hack protection against crawlers spiders and bots. A fullprof function – one click and your website will become hidden from bots.\u003C\u002Fp>\n\u003Cp>The Hider algorithm encrypts all layers of a website, thus hiding it from hackers by making existing vulnerabilities and other security risks invisible when searched and does not require manual configuration. Our encoding algorithm does not use the .htaccess file therefore there is no disruption to the operation of your website. This function will make your WordPress website totally invisible! A crucial step in improving your website security.\u003C\u002Fp>\n\u003Ch4>Smart Protection\u003C\u002Fh4>\n\u003Cp>A web application firewall filters, monitors, and blocks bad bot traffic to a website. It is deployed in “front” of a website and analyzes traffic – detecting and blocking anything malicious.\u003C\u002Fp>\n\u003Ch4>Anti SPAM\u003C\u002Fh4>\n\u003Cp>WebDefender includes a unique automatic algorithm for diagnosing the text entered on your website (forum, forms, comments and etc,) where made by a human or a bot. Bots won’t be allowed to enter text on your website. This is a unique algorithm, providing a unique solution to our clients.\u003Cbr \u002F>\nThe crisis is a time when almost every site is faced with a flurry of unwanted emails from reverse forms, posts and comments. Robots literally attack corporate e-mails, because of which sometimes valuable applications can be missed. But putting a captcha on the site you risk losing customer loyalty, as poorly readable images annoy 90% of users. Therefore, we offer a solution developed by WEbdefender specialists to protect the site from spam robots .\u003C\u002Fp>\n\u003Ch4>Brute Force Attack Protection\u003C\u002Fh4>\n\u003Cp>Hackers frequently use automatic bot systems to Brute force a website. Our algorithm detects those bots and prevents attempts of a password crack.\u003C\u002Fp>\n\u003Ch4>The “WebDefender” Antivirus Scanner\u003C\u002Fh4>\n\u003Cp>The builtin professional and multi-functional antivirus scanner offers top of the line security features and advanced functions for viruses and vulnerabilities detection. The scanner incorporates a user friendly malware removal tool. The diagnostic is performed by using a known database of virus signatures as well as Cobweb-Security’s Heuristic algorithm that can detected previously unknown virus signatures and zero-day vulnerabilities thus providing enterprise-level security capabilities.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>WebDefender Antivirus Features\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>Virus and malware antivirus scanner\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Database security scanning (exclusive function)\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>ZIP file scanning (exclusive function)\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Adware, Spyware and SPAM links detection\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Powerful and easy to use malware removal tool\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Security hardening analytics and recommendations\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Real-time malware signature updates (Professional or Premium)\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Scanner scheduler’s settings (Professional or Premium)\u003C\u002Fstrong>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Database Malware Scanning\u003C\u002Fh4>\n\u003Cp>An unique ability of our algorithm is scanning the website’s database. This function crucial as more and more hackers use SQL injection to infect the websites with malware.\u003C\u002Fp>\n\u003Ch4>Adware, Spyware and SPAM links detection\u003C\u002Fh4>\n\u003Cp>The WebDefender Scanner successfully detects:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>SEO & SPAM links\u003C\u002Fli>\n\u003Cli>Doorway pages (SEO)\u003C\u002Fli>\n\u003Cli>iFrame injections\u003C\u002Fli>\n\u003Cli>Black-hat SEO infections\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Vulnerabilities Detection\u003C\u002Fh4>\n\u003Cp>One of the most important parts of your website security and protection is a well-timed analysis for plugin, CMS and database vulnerabilities. These security vulnerabilities are an easy way for a hacker to crawl into your website. That’s why a well-timed diagnosis and update are vital for hardening the protection of the website.\u003C\u002Fp>\n\u003Cp>Our security scanner is able to find:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Plugins and themes vulnerabilities\u003C\u002Fli>\n\u003Cli>SQL, XSS malicious injections\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Blacklist Monitoring\u003C\u002Fh4>\n\u003Cp>The WebDefenders’ Blacklist Monitoring scanner checks IP addresses and website domains in the 10  most popular security blacklists and safe browsing databases.\u003C\u002Fp>\n\u003Cp>Real-time Blacklists or Blackhole lists – also called DNS-based Blackhole Lists – are lists of IP addresses published through DNS. Often there are listed computers or networks that may spam or consist malware in such lists. Many secure corporate mail servers are configured to reject or flag messages which have been sent from IP addresses listed in one of these security blacklists.\u003C\u002Fp>\n\u003Cp>Leading email systems like Gmail, Yahoo and Hotmail also use security blacklists to filter emails by addresses. If your network’s IP addresses end up in a blacklist, you and your customers can experience problems sending and receiving emails. It can significantly damage your business.\u003C\u002Fp>\n\u003Cp>WebDefender Blacklist Monitoring scanner will automatically alert you if your website addresses or domains become listed in any of the widely used URL blacklists.\u003C\u002Fp>\n\u003Ch4>The Updater – WP Core, plugin and theme automatic update\u003C\u002Fh4>\n\u003Cp>The importance of using the latest updated version of the WP core, plugins and themes is understandable to everyone and not only for the increase in functionality but in no small degree for the security of the website.\u003C\u002Fp>\n\u003Cp>To make it easier to keep track of update releases for WordPress Core, plugins and themes and installing them automatically, CobWeb-Security has introduced the Security Updater to the functionality of the WebDefender plugin.\u003C\u002Fp>\n\u003Cp>The Updater will enable you to keep track of:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>WordPress Core Updates\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>WordPress Plugin Updates\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>WordPress Theme Updates\u003C\u002Fstrong>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>The Updater has three separate blocks for managing themes, plugins, and WordPress core settings.\u003C\u002Fp>\n\u003Cp>You can choose to update only individual plugins or themes or you can choose to update all of the installed themes and plugins. The Updater will also mark with different colors the importance of an update ( red to green)\u003C\u002Fp>\n\u003Ch4>Security Hardening\u003C\u002Fh4>\n\u003Cp>This function detects the hosting configuration security parameters.\u003C\u002Fp>\n\u003Ch4>Malware Removal Tool, Powerful & Easy To Use\u003C\u002Fh4>\n\u003Cp>The WebDefender Security Scanner will not only help you find all of the viruses and malicious code on your website but we will also help you remove the malware easily. Our built-in file viewer and editor is an easy to use security cleaning tool for the removal of infected codes or its part depending on the type of infection. The cleaning process is fairly simple, but it requires some knowledge in coding.\u003C\u002Fp>\n\u003Ch4>Preparing you website for the General Data Protection Regulation (GDPR)\u003C\u002Fh4>\n\u003Cp>This extension for our security plugin helps the website owner or company Data Protection Officer (DPO), Controller, Data Processor employees to fit the web application with the obligations and rights enacted under the GDPR requirement.\u003C\u002Fp>\n\u003Ch4>Professional Upgrade\u003C\u002Fh4>\n\u003Cp>Enhance the security of your website with our Professional upgrade. The Professional package will provide our clients with these additional features:\u003C\u002Fp>\n\u003Col>\n\u003Cli>FireWall:\n\u003Cul>\n\u003Cli>Real-time firewall rules updates\u003C\u002Fli>\n\u003Cli>Real-time IP Blacklists\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>Hide Function:\n\u003Cul>\n\u003Cli>New mask codes for updating the Hide function online\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>Scanner:\n\u003Cul>\n\u003Cli>Real-time malware signature updates\u003C\u002Fli>\n\u003Cli>Scanner scheduler settings (Professional or Premium)\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Ch4>Premium Program\u003C\u002Fh4>\n\u003Cp>We also offer a Professional WebDefender key that will give you:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>Scanner scheduler’s settings\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Upgrade to Premium support\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Database malware scan (WebDefender exclusive function)\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Scanner report export function\u003C\u002Fstrong>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>A 100% protection – your website’s security in our hands. Our team will monitor your website online 24\u002F7, in case of a hacker attack or malware injection, we will clean and repair you website.\u003C\u002Fp>\n\u003Cp>You can \u003Ca href=\"http:\u002F\u002Fcobweb-security.com\u002Four-product\u002F\" title=\"Fix and protect your site\" rel=\"nofollow ugc\">click here to sign-up\u003C\u002Fa> for WebDefender Professional or Premium now.\u003C\u002Fp>\n\u003Ch4>Cookies set by the Plugin and WordPress\u003C\u002Fh4>\n\u003Cp>This plugin keeps track of user consent by saving them to the database. We can only do that for logged in users. For visitors, however, we track their concent by creating a cookie and storing their preferences there. The same logic applies for cookies. We set a cookie named \u003Cstrong>gdpr\u003C\u002Fstrong> that stores that information.\u003C\u002Fp>\n\u003Cp>WordPress also stores cookies on log in or commenting on a post. You can learn more about \u003Ca href=\"https:\u002F\u002Fcodex.wordpress.org\u002FWordPress_Cookies\" rel=\"nofollow ugc\">WordPress cookies here\u003C\u002Fa>\u003C\u002Fp>\n\u003Ch3>External Services\u003C\u002Fh3>\n\u003Cp>This plugin connects to several external services provided by Cobweb Security in order to deliver antivirus and malware scanning functionality.\u003C\u002Fp>\n\u003Col>\n\u003Cli>\n\u003Cp>\u003Cstrong>CWIS Version Check Service\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>Service URL:\u003C\u002Fstrong> https:\u002F\u002Fupdate.cobweb-security.com\u002Freleases\u002Fversion.json\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Purpose:\u003C\u002Fstrong> Used to check the latest plugin version and update information.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Data Sent:\u003C\u002Fstrong> Only the plugin version installed is sent.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Terms of Service & Privacy Policy:\u003C\u002Fstrong> \u003Ca href=\"https:\u002F\u002Fwww.cobweb-security.com\u002Fprivacy\" rel=\"nofollow ugc\">Cobweb Security Terms & Privacy\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>CWIS Licensing API\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>Service URL:\u003C\u002Fstrong> https:\u002F\u002Fclients.cobweb-security.com\u002Fmodules\u002Fservers\u002Fcwislicensing\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Purpose:\u003C\u002Fstrong> Validates the plugin license and ensures legitimate usage.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Data Sent:\u003C\u002Fstrong> Plugin license key and site domain.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Terms of Service & Privacy Policy:\u003C\u002Fstrong> \u003Ca href=\"https:\u002F\u002Fwww.cobweb-security.com\u002Fprivacy\" rel=\"nofollow ugc\">Cobweb Security Terms & Privacy\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>CWIS Host Check Service\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>Service URL:\u003C\u002Fstrong> https:\u002F\u002Fcheck.cobweb-security.com\u002F\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Purpose:\u003C\u002Fstrong> Performs security checks and retrieves signature updates.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Data Sent:\u003C\u002Fstrong> Site domain and plugin environment info.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Terms of Service & Privacy Policy:\u003C\u002Fstrong> \u003Ca href=\"https:\u002F\u002Fwww.cobweb-security.com\u002Fprivacy\" rel=\"nofollow ugc\">Cobweb Security Terms & Privacy\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>CWIS Signature Updates\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>Service URL:\u003C\u002Fstrong> https:\u002F\u002Fupdate.cobweb-security.com\u002Freleases\u002Fcwis-signatures.json\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Purpose:\u003C\u002Fstrong> Retrieves malware signature updates for scanning.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Data Sent:\u003C\u002Fstrong> No personal data is sent; only plugin requests for the latest signatures.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Terms of Service & Privacy Policy:\u003C\u002Fstrong> \u003Ca href=\"https:\u002F\u002Fwww.cobweb-security.com\u002Fprivacy\" rel=\"nofollow ugc\">Cobweb Security Terms & Privacy\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Cp>These services are necessary for the proper operation of the plugin. No sensitive user data is sent without consent, and all external connections are limited to the above services.\u003C\u002Fp>\n\u003Ch4>Requirements\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fdownload\u002F\" title=\"Download WordPress\" rel=\"ugc\">WordPress\u003C\u002Fa> version \u003Cstrong>2.8\u003C\u002Fstrong> or higher\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fsecure.php.net\u002F\" title=\"PHP scripting language\" rel=\"nofollow ugc\">PHP\u003C\u002Fa> version \u003Cstrong>4.1.0\u003C\u002Fstrong> or higher\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Final Notes\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>We’re greatly appreciate for any references in the social networks, forums or blogs to our security scanner \u003Ca href=\"https:\u002F\u002Fcobweb-security.com\u002Fpages\u002Ffree-website-antivirus\u002F\" title=\"CobWeb Security Ltd.\" rel=\"nofollow ugc\">https:\u002F\u002Fcobweb-security.com\u002Fpages\u002Ffree-website-antivirus\u002F\u002F\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>If you have any suggestions, ideas, or comments, or if you found a bug, write us \u003Ca href=\"mailto:cwis@cobweb-security.com\" title=\"Email us\" rel=\"nofollow ugc\">cwis@cobweb-security.com\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n","PRO Security – Antivirus Scanner, 2-Layer Protection Hide Security, Brute Force Security  & Antispam, Security Website and Security Hardening.",1000,276142,80,18,"2026-01-20T06:00:00.000Z","6.9.5","2.8","",[19,99,20,100,22],"protection","security-plugin","https:\u002F\u002Fcobweb-security.com\u002Fpages\u002Ffree-website-antivirus\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcwis-antivirus-malware-detected.zip",{"slug":104,"name":105,"version":106,"author":107,"author_profile":108,"description":109,"short_description":110,"active_installs":111,"downloaded":112,"rating":25,"num_ratings":113,"last_updated":114,"tested_up_to":50,"requires_at_least":115,"requires_php":16,"tags":116,"homepage":117,"download_link":118,"security_score":25,"vuln_count":11,"unpatched_count":11,"last_vuln_date":26,"fetched_at":27},"folder-auditor","Site Lockdown Security","9.2","WP Fix It - WordPress Experts","https:\u002F\u002Fprofiles.wordpress.org\u002Fwpfixit\u002F","\u003Cp>\u003Ca href=\"https:\u002F\u002Fplugin.wpsitelockdown.com\u002F\" rel=\"nofollow ugc\">View full plugin documentation – CLICK HERE\u003C\u002Fa>\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Site Lockdown Security\u003C\u002Fstrong> gives WordPress administrators, agencies, developers, and support teams a full security command center without hiding the best tools behind a paid upgrade.\u003C\u002Fp>\n\u003Cp>Most WordPress security plugins reserve their strongest features for premium plans: firewalls, file change monitoring, malware scanning, scheduled reports, branded client dashboards, email alerts, login protection, cleanup tools, Cloudflare controls, and advanced hardening. Site Lockdown Security includes those kinds of features in one plugin, and they are not treated as upsells.\u003C\u002Fp>\n\u003Cp>Use Site Lockdown Security to audit files, lock down important folders, monitor file changes, verify WordPress core integrity, scan for suspicious code, review abandoned folders, enforce password resets, check public file exposure, monitor redirects, protect logins, review risky software, receive branded email alerts, and run a WordPress-aware firewall with Cloudflare and WooCommerce compatibility controls.\u003C\u002Fp>\n\u003Ch4>Premium Features Without Premium Upgrade Fees\u003C\u002Fh4>\n\u003Cp>Site Lockdown Security is built around a simple promise: powerful WordPress security features should not require surprise upgrade fees.\u003C\u002Fp>\n\u003Cp>Features that are commonly sold as premium add-ons in other WordPress security plugins are included here, including white label branding, firewall controls, file change monitoring, scheduled security reports, infection scanning, cleanup tools, email notification previews, Cloudflare edge actions, login security, and client-ready branded alerts.\u003C\u002Fp>\n\u003Cp>We will never charge for plugin upgrades or future features. When Site Lockdown Security improves, your security tools improve with it.\u003C\u002Fp>\n\u003Ch4>Key Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Cstrong>Firewall Security\u003C\u002Fstrong> with Smart Block, Monitor Only, WooCommerce Safe, and Emergency Shield protection modes\u003C\u002Fli>\n\u003Cli>\u003Cstrong>WooCommerce-aware firewall handling\u003C\u002Fstrong> for checkout, cart, Store API, REST API, AJAX, and payment gateway flows\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Cloudflare integration\u003C\u002Fstrong> with visitor IP detection, API credential testing, edge actions, managed challenges, access rule syncing, and automatic rule cleanup\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Firewall Event Timeline\u003C\u002Fstrong> with searchable and filterable events, severity details, manual IP actions, pagination, and daily summary alerts\u003C\u002Fli>\n\u003Cli>\u003Cstrong>IP allowlist and blocklist controls\u003C\u002Fstrong> for trusted IPs, CIDR ranges, immediate blocks, and manual firewall response management\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Custom blocked request page\u003C\u002Fstrong> with editable title, subtitle, message, button, footer note, and live preview\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Site Lock\u003C\u002Fstrong> to make important WordPress files and folders read-only after a site is clean and stable\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Watch Dog File Change Monitor\u003C\u002Fstrong> with trusted baselines, new\u002Fmodified\u002Fdeleted file detection, review actions, scheduled scans, and alerts\u003C\u002Fli>\n\u003Cli>\u003Cstrong>WordPress Core Check\u003C\u002Fstrong> using official WordPress.org checksums to detect modified, missing, unreadable, or unexpected core files\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Infection Scanner\u003C\u002Fstrong> for suspicious patterns, malware indicators, obfuscated code, backdoors, spam injections, and unwanted scripts\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Scheduled infection scans, security reports, update checks, and digest emails\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Email notification previews\u003C\u002Fstrong> for individual alert types before notifications are sent\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Branded security emails\u003C\u002Fstrong> for plugin updates, file changes, core changes, reports, infection scans, risk reviews, software health, digests, and firewall summaries\u003C\u002Fli>\n\u003Cli>\u003Cstrong>White Label Branding\u003C\u002Fstrong> for agencies, developers, maintenance providers, and support teams\u003C\u002Fli>\n\u003Cli>\u003Cstrong>White Label import and export\u003C\u002Fstrong> to move branding settings between client sites\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Custom branding controls\u003C\u002Fstrong> for plugin text, colors, icons, dark icons, banners, email imagery, and dashboard presentation\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Folder and file auditing\u003C\u002Fstrong> for root files, wp-content, plugins, themes, uploads, .htaccess files, abandoned folders, and suspicious items\u003C\u002Fli>\n\u003Cli>\u003Cstrong>File preview, download, approve, ignore, delete, include, and bulk actions\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Cleanup tools\u003C\u002Fstrong> for old backups, temporary files, logs, cache files, abandoned folders, and other clutter\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Plugin Refresher and Theme Refresher\u003C\u002Fstrong> to reinstall clean WordPress.org copies of plugins and themes\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Permissions Check\u003C\u002Fstrong> for important WordPress files and folders, including Site Lock-aware status\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Software Health\u003C\u002Fstrong> to identify outdated, abandoned, or potentially risky plugins and themes\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Risk Review\u003C\u002Fstrong> for common local security issues, severity sorting, ignore\u002Finclude controls, scheduled checks, and alerts\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Redirect Monitor\u003C\u002Fstrong> to test public visitor behavior and alert when visitors may be redirected to an unauthorized website\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Update Monitor\u003C\u002Fstrong> for pending WordPress core, plugin, and theme updates with alerts only when updates are available\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Password Reset Enforcement\u003C\u002Fstrong> by user role, including immediate session logout and secure reset guidance\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Public File Exposure Check\u003C\u002Fstrong> for sensitive backup, log, configuration, database, and metadata files\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Login Security\u003C\u002Fstrong> with protected login URL controls, login limits, activity tracking, session controls, and role-based expiration\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Security Tools\u003C\u002Fstrong> for XML-RPC exposure, author scans, debug exposure, SSL information, blacklist status, file finding, and hardening reviews\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Setup Guide\u003C\u002Fstrong> with progress tracking for recommended protection steps\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Responsive AJAX admin interface\u003C\u002Fstrong> designed for fast navigation and practical daily use\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Built For Agencies And Client Support Teams\u003C\u002Fh4>\n\u003Cp>Site Lockdown Security includes White Label Branding because security work is often delivered as a professional service.\u003C\u002Fp>\n\u003Cp>You can brand the admin experience, email imagery, colors, icons, banners, and plugin presentation around your business or client support program. Branding settings can be exported and imported between sites so the same client-ready experience can be reused across multiple installations.\u003C\u002Fp>\n\u003Cp>These are the kinds of client-facing tools that are often locked behind agency or premium licenses elsewhere. In Site Lockdown Security, they are included.\u003C\u002Fp>\n\u003Ch4>Firewall Security\u003C\u002Fh4>\n\u003Cp>Firewall Security helps protect WordPress from suspicious requests, exploit payloads, scanner signatures, bot signatures, dangerous methods, XML-RPC abuse, REST API exposure, suspicious query strings, and excessive request rates.\u003C\u002Fp>\n\u003Cp>Protection modes include Smart Block for high-confidence malicious traffic, Monitor Only for tuning without blocking, WooCommerce Safe for checkout and payment compatibility, and Emergency Shield for active attack situations where public traffic needs to be restricted while administrators retain access.\u003C\u002Fp>\n\u003Cp>Firewall Security also includes event logging, severity tracking, searchable timelines, IP allow\u002Fblock actions, Cloudflare-aware IP detection, Cloudflare edge actions, notification settings, email summaries, and a customizable blocked request page.\u003C\u002Fp>\n\u003Ch4>Site Lock\u003C\u002Fh4>\n\u003Cp>Site Lock helps prevent unwanted file additions, injected scripts, unauthorized edits, and accidental deletions by making selected WordPress files and folders read-only.\u003C\u002Fp>\n\u003Cp>You can unlock the site when legitimate updates or maintenance are needed, then apply Site Lock again when finished.\u003C\u002Fp>\n\u003Cp>Site Lock is useful after a site has been cleaned, audited, updated, or stabilized and you want to reduce the chance of future unexpected file changes.\u003C\u002Fp>\n\u003Ch4>Watch Dog\u003C\u002Fh4>\n\u003Cp>Watch Dog creates a trusted baseline of your site files and compares future scans against that baseline.\u003C\u002Fp>\n\u003Cp>It reports new, modified, and deleted files so administrators can quickly review changes after updates, maintenance, cleanup work, or suspicious activity.\u003C\u002Fp>\n\u003Cp>Watch Dog includes file change monitoring, baseline rebuilding, review actions, scheduled scans, protected baseline storage, and email alerts when changes are detected.\u003C\u002Fp>\n\u003Ch4>Watch Dog Baseline Storage\u003C\u002Fh4>\n\u003Cp>Watch Dog stores protected baseline data under:\u003C\u002Fp>\n\u003Cp>wp-content\u002Fuploads\u002Fsite-lock\u002Fwatch-dog\u002F\u003C\u002Fp>\n\u003Cp>This keeps baseline data outside the plugin folder so it is not removed during plugin updates.\u003C\u002Fp>\n\u003Cp>Sites updating from older versions automatically migrate Watch Dog baseline storage from the previous location:\u003C\u002Fp>\n\u003Cp>wp-content\u002Fuploads\u002Fguard-dog\u002Fwatch-dog\u002F\u003C\u002Fp>\n\u003Cp>After a successful migration, the old storage folder is safely removed and the new Watch Dog storage path remains excluded from Site Lock so baseline files can continue to be updated when needed.\u003C\u002Fp>\n\u003Ch4>Redirect Monitor\u003C\u002Fh4>\n\u003Cp>Redirect Monitor tests public site behavior as different visitor types and alerts when visitors may be redirected to an unauthorized website.\u003C\u002Fp>\n\u003Cp>It can test the homepage, login page, custom paths, and same-site navigation menu URLs using a focused scan strategy designed to avoid oversized scan jobs.\u003C\u002Fp>\n\u003Ch4>Core Check\u003C\u002Fh4>\n\u003Cp>Core Check compares installed WordPress core files against the official WordPress.org checksum API.\u003C\u002Fp>\n\u003Cp>It reports modified, missing, unreadable, or unexpected files in WordPress core areas so administrators can review potential core file integrity problems.\u003C\u002Fp>\n\u003Ch4>Update Monitor\u003C\u002Fh4>\n\u003Cp>Update Monitor checks pending WordPress core, plugin, and theme updates and sends email alerts only when updates are available.\u003C\u002Fp>\n\u003Ch4>Infection Scanner\u003C\u002Fh4>\n\u003Cp>The infection scanner reviews site files for suspicious patterns commonly associated with malware, backdoors, obfuscated scripts, spam injections, and unwanted code.\u003C\u002Fp>\n\u003Cp>Scans can be run manually or scheduled, and results can be included in reports and notifications.\u003C\u002Fp>\n\u003Ch4>Email Notifications\u003C\u002Fh4>\n\u003Cp>Site Lockdown Security includes configurable email alerts for important security events and scheduled checks.\u003C\u002Fp>\n\u003Cp>Supported notification types include:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Plugin Update Notification\u003C\u002Fli>\n\u003Cli>Security Snapshot Digest\u003C\u002Fli>\n\u003Cli>Scheduled Infection Scan\u003C\u002Fli>\n\u003Cli>Automated Security Report\u003C\u002Fli>\n\u003Cli>File Change Notification\u003C\u002Fli>\n\u003Cli>Core Change Notification\u003C\u002Fli>\n\u003Cli>Software Health Alert\u003C\u002Fli>\n\u003Cli>Risk Review Alert\u003C\u002Fli>\n\u003Cli>Firewall Realtime Alerts\u003C\u002Fli>\n\u003Cli>Firewall Summary Notifications\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Each individual alert includes a preview option so administrators can review the email layout before using it.\u003C\u002Fp>\n\u003Cp>The global email notification settings form allows administrators to set the default frequency and recipient email for alerts in one place.\u003C\u002Fp>\n\u003Ch4>White Label Branding\u003C\u002Fh4>\n\u003Cp>White Label Branding is one of the standout features of Site Lockdown Security because it lets agencies and service providers present security work under their own brand.\u003C\u002Fp>\n\u003Cp>Administrators can customize branding text, colors, icons, dark icons, banners, email imagery, and dashboard presentation.\u003C\u002Fp>\n\u003Cp>White Label settings can be exported to a JSON file and imported on another site, making it easier to reuse the same branding across multiple installations.\u003C\u002Fp>\n\u003Cp>The Reset Settings option restores the default Site Lockdown theme and brings back the default support contact button when branding is returned to its original values.\u003C\u002Fp>\n\u003Ch4>Plugin Refresher\u003C\u002Fh4>\n\u003Cp>Plugin Refresher helps reinstall fresh copies of WordPress.org plugins.\u003C\u002Fp>\n\u003Cp>This can be useful when a plugin may have been modified, corrupted, or affected by suspicious files.\u003C\u002Fp>\n\u003Cp>Site Lockdown Security uses native WordPress upgrade handling for safer refresh workflows and supports both individual and bulk plugin refreshes.\u003C\u002Fp>\n\u003Ch4>Theme Refresher\u003C\u002Fh4>\n\u003Cp>Theme Refresher helps reinstall fresh copies of WordPress.org themes.\u003C\u002Fp>\n\u003Cp>It includes version information, update status, WordPress.org availability detection, and support for individual or bulk theme refresh workflows.\u003C\u002Fp>\n\u003Ch4>Password Reset Enforcement\u003C\u002Fh4>\n\u003Cp>Require selected user roles to change their password. Active sessions for those users are logged out immediately, and their next valid login attempt shows a clear password-change message with a secure reset link.\u003C\u002Fp>\n\u003Ch4>Public File Exposure Check\u003C\u002Fh4>\n\u003Cp>Test whether sensitive backup, log, configuration, database, and metadata files can be accessed publicly from the website URL.\u003C\u002Fp>\n\u003Ch4>File Finder and Removal Tool\u003C\u002Fh4>\n\u003Cp>Quickly scan for specific files or identify extensionless files that may require review or removal. No shell commands or complex server tasks are required.\u003C\u002Fp>\n\u003Ch4>Login Security\u003C\u002Fh4>\n\u003Cp>Login Security helps protect the WordPress login area with protected login URL controls, login attempt limits, activity tracking, session controls, and role-based expiration options.\u003C\u002Fp>\n\u003Ch4>Permissions Check\u003C\u002Fh4>\n\u003Cp>Permissions Check reviews important WordPress files and folders and compares current permissions against recommended values.\u003C\u002Fp>\n\u003Cp>It helps identify writable files, risky permissions, and items that may need attention.\u003C\u002Fp>\n\u003Cp>When Site Lock protects a file or folder, permissions results account for that protected status.\u003C\u002Fp>\n\u003Ch4>Software Health\u003C\u002Fh4>\n\u003Cp>Software Health checks installed plugins and themes for maintenance signals that may indicate abandoned or outdated software.\u003C\u002Fp>\n\u003Cp>It helps administrators identify items that may need updates, replacement, removal, or closer review.\u003C\u002Fp>\n\u003Ch4>Risk Review\u003C\u002Fh4>\n\u003Cp>Risk Review checks local site risk signals and common security configuration concerns.\u003C\u002Fp>\n\u003Cp>It includes severity sorting, ignore\u002Finclude controls, scheduled checks, and optional email alerts.\u003C\u002Fp>\n\u003Ch4>Setup Guide\u003C\u002Fh4>\n\u003Cp>The Setup Guide helps administrators complete recommended Site Lockdown Security settings.\u003C\u002Fp>\n\u003Cp>Setup items include Site Lock, scheduled infection scans, automated reports, file change baselines, file change notifications, core change notifications, software health alerts, risk review alerts, firewall settings, login protection, and branded email notifications.\u003C\u002Fp>\n\u003Cp>Progress tracking helps administrators see which recommended protection steps are complete.\u003C\u002Fp>\n","Audit, protect, monitor, firewall, and secure WordPress with premium tools at no cost.",400,12859,5,"2026-07-20T19:26:00.000Z","5.0",[54,19,22],"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Ffolder-auditor\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Ffolder-auditor.9.2.zip",{"slug":120,"name":121,"version":122,"author":123,"author_profile":124,"description":125,"short_description":126,"active_installs":11,"downloaded":127,"rating":25,"num_ratings":128,"last_updated":129,"tested_up_to":130,"requires_at_least":131,"requires_php":16,"tags":132,"homepage":135,"download_link":136,"security_score":25,"vuln_count":11,"unpatched_count":11,"last_vuln_date":26,"fetched_at":137},"maroon-horizon-smart-firewall","Maroon Horizon Smart Firewall – Malware Scanner & IP Blocking","1.8.2","Vladimir Marusic","https:\u002F\u002Fprofiles.wordpress.org\u002Fmhlabs\u002F","\u003Cp>Maroon Horizon Smart Firewall is built for practical WordPress protection: block bad traffic, scan for malware, quarantine suspicious files, and reduce attack surface — without sending your site files off-server.\u003C\u002Fp>\n\u003Cp>Advanced Security Check (Quick Scan) gives you an easy-to-understand Overall Security Rating, plus clear details and explanations for each check so you can quickly see what to improve and raise your security level.\u003C\u002Fp>\n\u003Cp>This WordPress.org (FREE) build is fully functional for the FREE feature set and is designed to run locally for those features. Advanced capabilities are provided by a separate commercial PRO plugin (not included in this WordPress.org build).\u003C\u002Fp>\n\u003Cp>Outbound network requests (if any) are disclosed under “External Services” and “Privacy”.\u003C\u002Fp>\n\u003Ch4>What you get in the FREE plugin (local-only)\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Advanced Security Check (Quick Scan) with an Overall Security Rating and easy-to-follow explanations so you can improve your security level step by step.\u003C\u002Fli>\n\u003Cli>Manual IP blocking and IP management.\u003C\u002Fli>\n\u003Cli>Security patch toggles for common hardening actions.\u003C\u002Fli>\n\u003Cli>Malware scanning of uploads and theme directories using local pattern detection (no external signatures).\u003C\u002Fli>\n\u003Cli>Quarantine management (restore \u002F delete quarantined files).\u003C\u002Fli>\n\u003Cli>Quick file integrity checks (where supported in the FREE workflow).\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Local-first design (privacy & control)\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Malware scans run on your server.\u003C\u002Fli>\n\u003Cli>Scanned file contents are not uploaded by the plugin.\u003C\u002Fli>\n\u003Cli>External requests (if any) are limited and disclosed below.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Who it’s for\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Site owners who want simple, practical protection without complex configuration.\u003C\u002Fli>\n\u003Cli>Agencies and developers who need a clean hardening + scanning toolkit.\u003C\u002Fli>\n\u003Cli>Anyone who wants a transparent FREE build, with an optional PRO upgrade path.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>PRO features (separate commercial plugin, optional)\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>AI-Powered Threat Feed (encrypted subnet feed) and automatic sync.\u003C\u002Fli>\n\u003Cli>Real-Time AI Threat Detection (AI model signatures).\u003C\u002Fli>\n\u003Cli>AI-Powered Deep Scan and scheduled email reports.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Commercial PRO plugin\u003C\u002Fh4>\n\u003Cp>The PRO edition is a separate commercial plugin (not included in this WordPress.org build).\u003Cbr \u002F>\nLearn more: \u003Ca href=\"https:\u002F\u002Fmh.ie\u002Fmaroon-horizon-smart-firewall\u002F\" rel=\"nofollow ugc\">https:\u002F\u002Fmh.ie\u002Fmaroon-horizon-smart-firewall\u002F\u003C\u002Fa>\u003C\u002Fp>\n\u003Ch3>External Services\u003C\u002Fh3>\n\u003Cp>This plugin may perform outbound network requests in the following cases:\u003C\u002Fp>\n\u003Cp>1) WordPress.org Core Checksums API (FREE: Core Integrity Scan)\u003Cbr \u002F>\n* Service provider: WordPress.org\u003Cbr \u002F>\n* Endpoint: https:\u002F\u002Fapi.wordpress.org\u002Fcore\u002Fchecksums\u002F1.0\u002F\u003Cbr \u002F>\n* When: Only when you manually run the Core Integrity Scan from Maroon Horizon -> Scanner.\u003Cbr \u002F>\n* Data sent: WordPress version and locale via URL query parameters. Your server IP address is inherently shared as part of the HTTPS request.\u003Cbr \u002F>\n* Data received: Official JSON containing WordPress core file checksums, used to verify your local core files. No site files or content are uploaded.\u003Cbr \u002F>\n* Privacy: https:\u002F\u002Fwordpress.org\u002Fabout\u002Fprivacy\u002F\u003C\u002Fp>\n\u003Cp>2) Freemius (optional: licensing, updates, opt-in telemetry)\u003Cbr \u002F>\n* Service provider: Freemius (freemius.com)\u003Cbr \u002F>\n* When: Only if you opt in to Freemius (for example, to manage licensing and receive updates).\u003Cbr \u002F>\n* Data sent: Technical information required for licensing and updates (and, if you opt in, diagnostic\u002Fusage metadata), as described by Freemius.\u003Cbr \u002F>\n* Data received: License status and update metadata needed to deliver plugin updates.\u003Cbr \u002F>\n* Terms: https:\u002F\u002Ffreemius.com\u002Fterms\u002F\u003Cbr \u002F>\n* Privacy: https:\u002F\u002Ffreemius.com\u002Fprivacy\u002F\u003C\u002Fp>\n\u003Cp>3) Maroon Horizon service (mh.ie) (PRO only: encrypted threat-feed \u002F AI signature bundles)\u003Cbr \u002F>\n* Service provider: Maroon Horizon Ltd – \u003Ca href=\"https:\u002F\u002Fmh.ie\" rel=\"nofollow ugc\">https:\u002F\u002Fmh.ie\u003C\u002Fa>\u003Cbr \u002F>\n* When: Only in the separate PRO plugin, when you use PRO features that require server-side data (e.g., Threat Feed sync \u002F AI signature updates).\u003Cbr \u002F>\n* Data sent: Site URL, install ID, product\u002Fplan identifiers, license identifiers\u002Fkeys, plugin\u002FWP\u002FPHP versions, plus standard HTTPS request metadata (including your server IP).\u003Cbr \u002F>\n* Data received: A JSON response containing metadata and a time-limited download URL, followed by encrypted bundles used by the PRO engine. No site files or content are uploaded.\u003Cbr \u002F>\n* Terms: https:\u002F\u002Fmh.ie\u002Fterms\u003Cbr \u002F>\n* Privacy: https:\u002F\u002Fmh.ie\u002Fprivacy-policy\u003C\u002Fp>\n\u003Ch3>Privacy\u003C\u002Fh3>\n\u003Cp>Maroon Horizon Smart Firewall is designed to minimize data sharing.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Most FREE features run locally and do not transmit your site content.\u003C\u002Fli>\n\u003Cli>Malware scanning runs locally on your server; scanned file contents are not uploaded by the plugin.\u003C\u002Fli>\n\u003Cli>Any outbound requests (and the data exchanged) are disclosed in the “External Services” section above.\u003C\u002Fli>\n\u003Cli>PRO-only services are not included in this WordPress.org build.\u003C\u002Fli>\n\u003C\u002Ful>\n","Firewall, malware scan & IP blocking for WordPress, with Quick Scan Overall Security Rating, hardening, quarantine and integrity checks. PRO adds AI.",321,1,"2026-03-30T10:44:00.000Z","6.9.4","6.0",[54,133,134,19,22],"hardening","ip-blocking","https:\u002F\u002Fmh.ie","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fmaroon-horizon-smart-firewall.1.8.2.zip","2026-04-16T10:56:18.058Z",{"error":139,"url":140,"statusCode":141,"statusMessage":142,"message":142},true,"http:\u002F\u002Flocalhost\u002Fapi\u002Fplugins\u002Fwebkernelai-security\u002Fbundle",404,"no bundle for this plugin yet",{"slug":4,"current_version":6,"total_versions":113,"versions":144},[145,151,158,165,172],{"version":6,"download_url":24,"svn_tag_url":146,"released_at":26,"has_diff":147,"diff_files_changed":148,"diff_lines":26,"trac_diff_url":149,"vulnerabilities":150,"is_current":139},"https:\u002F\u002Fplugins.svn.wordpress.org\u002Fwebkernelai-security\u002Ftags\u002F1.0.5\u002F",false,[],"https:\u002F\u002Fplugins.trac.wordpress.org\u002Fchangeset?old_path=%2Fwebkernelai-security%2Ftags%2F1.0.4&new_path=%2Fwebkernelai-security%2Ftags%2F1.0.5",[],{"version":152,"download_url":153,"svn_tag_url":154,"released_at":26,"has_diff":147,"diff_files_changed":155,"diff_lines":26,"trac_diff_url":156,"vulnerabilities":157,"is_current":147},"1.0.4","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwebkernelai-security.1.0.4.zip","https:\u002F\u002Fplugins.svn.wordpress.org\u002Fwebkernelai-security\u002Ftags\u002F1.0.4\u002F",[],"https:\u002F\u002Fplugins.trac.wordpress.org\u002Fchangeset?old_path=%2Fwebkernelai-security%2Ftags%2F1.0.3&new_path=%2Fwebkernelai-security%2Ftags%2F1.0.4",[],{"version":159,"download_url":160,"svn_tag_url":161,"released_at":26,"has_diff":147,"diff_files_changed":162,"diff_lines":26,"trac_diff_url":163,"vulnerabilities":164,"is_current":147},"1.0.3","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwebkernelai-security.1.0.3.zip","https:\u002F\u002Fplugins.svn.wordpress.org\u002Fwebkernelai-security\u002Ftags\u002F1.0.3\u002F",[],"https:\u002F\u002Fplugins.trac.wordpress.org\u002Fchangeset?old_path=%2Fwebkernelai-security%2Ftags%2F1.0.2&new_path=%2Fwebkernelai-security%2Ftags%2F1.0.3",[],{"version":166,"download_url":167,"svn_tag_url":168,"released_at":26,"has_diff":147,"diff_files_changed":169,"diff_lines":26,"trac_diff_url":170,"vulnerabilities":171,"is_current":147},"1.0.2","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwebkernelai-security.1.0.2.zip","https:\u002F\u002Fplugins.svn.wordpress.org\u002Fwebkernelai-security\u002Ftags\u002F1.0.2\u002F",[],"https:\u002F\u002Fplugins.trac.wordpress.org\u002Fchangeset?old_path=%2Fwebkernelai-security%2Ftags%2F1.0.1&new_path=%2Fwebkernelai-security%2Ftags%2F1.0.2",[],{"version":173,"download_url":174,"svn_tag_url":175,"released_at":26,"has_diff":147,"diff_files_changed":176,"diff_lines":26,"trac_diff_url":26,"vulnerabilities":177,"is_current":147},"1.0.1","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwebkernelai-security.1.0.1.zip","https:\u002F\u002Fplugins.svn.wordpress.org\u002Fwebkernelai-security\u002Ftags\u002F1.0.1\u002F",[],[]]