Deprecated: Function create_function() is deprecated in /home2/blogwebhostingbu/public_html/wp-content/plugins/facebook-like-box-responsive/facebook-like-box.php on line 29
{"id":2281,"date":"2013-04-10T18:44:20","date_gmt":"2013-04-10T18:44:20","guid":{"rendered":"http:\/\/www.webhostingbuzz.com\/blog\/?p=2281"},"modified":"2013-04-10T19:24:17","modified_gmt":"2013-04-10T19:24:17","slug":"increase-in-brute-force-attempts-agains-wordpress-installations","status":"publish","type":"post","link":"https:\/\/blog.webhostingbuzz.com\/2013\/04\/10\/increase-in-brute-force-attempts-agains-wordpress-installations\/","title":{"rendered":"Increase in brute force attempts agains WordPress installations"},"content":{"rendered":"

Dear Clients,<\/p>\n

We must inform you that within the last 48 hours, worldwide malicious activity targeting WordPress CMS installations has spiked considerably.<\/p>\n

WordPress is a widely popular blog CMS, which is used in a large percentage of Internet projects and presentations. Due to this, it takes considerably less effort for hackers to make use of WordPress engine vulnerabilities, insecure or outdated WordPress setups, compromised modules or similar means to compromise an existing WordPress installation. These types of attacks are common but we\u2019ve noted a huge increase in such attacks over the past 2-3 day period.<\/p>\n

In this case, a brute-force attack is taking place, in an attempt to pick WordPress admin area passwords, in the hopes of further usage of compromised accounts for malicious purpose. This issue is currently already known to many hosting providers, and is being discussed between our support teams. At the moment, several different solutions were implemented, including a number of firewall rules that are geared towards limiting the amount of possible login attempts from a single IP address to any wp-login file on a given server, with the subsequent block of the IPs that exhibit repeated malicious behavior in the server’s firewall rules.<\/p>\n

This measure, developed by our team, has had a positive effect in halting the brute-force attack, but as a negative consequence, server load has increased, and customers are currently unable to access multiple WordPress Dashboards from a single IP address.<\/p>\n

We urge all of our customers that are utilizing the WordPress CMS to upgrade to the latest stable release as soon as possible, change any WordPress admin area login credentials, and update any plugind and themes used, applying all available patches.<\/p>\n

It is also recommended to reveiw the following security tips:<\/p>\n

http:\/\/codex.wordpress.org\/Hardening_WordPress<\/a><\/p>\n

http:\/\/forum.webhostingbuzz.com\/web-hosting-reseller-hosting-support\/5522-security-issues.html<\/a><\/p>\n

Should any questions or issues arise, please contact our technical department via our helpdesk https:\/\/www.whbsupport.com<\/a><\/p>\n

 <\/p>\n","protected":false},"excerpt":{"rendered":"

Dear Clients, We must inform you that within the last 48 hours, worldwide malicious activity targeting WordPress CMS installations has spiked considerably. WordPress is a widely popular blog CMS, which is used in a large percentage of Internet projects and presentations. Due to this, it takes considerably less effort for hackers to make use of […]<\/p>\n","protected":false},"author":430,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":[],"categories":[1],"tags":[],"yoast_head":"\nIncrease in brute force attempts agains WordPress installations - WebHostingBuzz US Blog<\/title>\n<link rel=\"canonical\" href=\"https:\/\/www.webhostingbuzz.com\/blog\/2013\/04\/10\/increase-in-brute-force-attempts-agains-wordpress-installations\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Increase in brute force attempts agains WordPress installations - WebHostingBuzz US Blog\" \/>\n<meta property=\"og:description\" content=\"Dear Clients, We must inform you that within the last 48 hours, worldwide malicious activity targeting WordPress CMS installations has spiked considerably. WordPress is a widely popular blog CMS, which is used in a large percentage of Internet projects and presentations. Due to this, it takes considerably less effort for hackers to make use of […]\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.webhostingbuzz.com\/blog\/2013\/04\/10\/increase-in-brute-force-attempts-agains-wordpress-installations\/\" \/>\n<meta property=\"og:site_name\" content=\"WebHostingBuzz US Blog\" \/>\n<meta property=\"article:published_time\" content=\"2013-04-10T18:44:20+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2013-04-10T19:24:17+00:00\" \/>\n<meta name=\"twitter:label1\" content=\"Est. reading time\">\n\t<meta name=\"twitter:data1\" content=\"2 minutes\">\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebSite\",\"@id\":\"https:\/\/www.webhostingbuzz.com\/blog\/#website\",\"url\":\"https:\/\/www.webhostingbuzz.com\/blog\/\",\"name\":\"WebHostingBuzz US Blog\",\"description\":\"Hosting, hosting, more hosting and a little of everything else\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":\"https:\/\/www.webhostingbuzz.com\/blog\/?s={search_term_string}\",\"query-input\":\"required name=search_term_string\"}],\"inLanguage\":\"en-US\"},{\"@type\":\"WebPage\",\"@id\":\"https:\/\/www.webhostingbuzz.com\/blog\/2013\/04\/10\/increase-in-brute-force-attempts-agains-wordpress-installations\/#webpage\",\"url\":\"https:\/\/www.webhostingbuzz.com\/blog\/2013\/04\/10\/increase-in-brute-force-attempts-agains-wordpress-installations\/\",\"name\":\"Increase in brute force attempts agains WordPress installations - WebHostingBuzz US Blog\",\"isPartOf\":{\"@id\":\"https:\/\/www.webhostingbuzz.com\/blog\/#website\"},\"datePublished\":\"2013-04-10T18:44:20+00:00\",\"dateModified\":\"2013-04-10T19:24:17+00:00\",\"author\":{\"@id\":\"https:\/\/www.webhostingbuzz.com\/blog\/#\/schema\/person\/15c48ccc20dc0014da01ca834245c326\"},\"breadcrumb\":{\"@id\":\"https:\/\/www.webhostingbuzz.com\/blog\/2013\/04\/10\/increase-in-brute-force-attempts-agains-wordpress-installations\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/www.webhostingbuzz.com\/blog\/2013\/04\/10\/increase-in-brute-force-attempts-agains-wordpress-installations\/\"]}]},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/www.webhostingbuzz.com\/blog\/2013\/04\/10\/increase-in-brute-force-attempts-agains-wordpress-installations\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"item\":{\"@type\":\"WebPage\",\"@id\":\"https:\/\/www.webhostingbuzz.com\/blog\/2013\/04\/10\/increase-in-brute-force-attempts-agains-wordpress-installations\/\",\"url\":\"https:\/\/www.webhostingbuzz.com\/blog\/2013\/04\/10\/increase-in-brute-force-attempts-agains-wordpress-installations\/\",\"name\":\"Increase in brute force attempts agains WordPress installations\"}}]},{\"@type\":\"Person\",\"@id\":\"https:\/\/www.webhostingbuzz.com\/blog\/#\/schema\/person\/15c48ccc20dc0014da01ca834245c326\",\"name\":\"Valentin P\",\"image\":{\"@type\":\"ImageObject\",\"@id\":\"https:\/\/www.webhostingbuzz.com\/blog\/#personlogo\",\"inLanguage\":\"en-US\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/4b4269c5f71d6cab8c5a508a5d00671f?s=96&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/4b4269c5f71d6cab8c5a508a5d00671f?s=96&r=g\",\"caption\":\"Valentin P\"}}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","_links":{"self":[{"href":"https:\/\/blog.webhostingbuzz.com\/wp-json\/wp\/v2\/posts\/2281"}],"collection":[{"href":"https:\/\/blog.webhostingbuzz.com\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/blog.webhostingbuzz.com\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/blog.webhostingbuzz.com\/wp-json\/wp\/v2\/users\/430"}],"replies":[{"embeddable":true,"href":"https:\/\/blog.webhostingbuzz.com\/wp-json\/wp\/v2\/comments?post=2281"}],"version-history":[{"count":0,"href":"https:\/\/blog.webhostingbuzz.com\/wp-json\/wp\/v2\/posts\/2281\/revisions"}],"wp:attachment":[{"href":"https:\/\/blog.webhostingbuzz.com\/wp-json\/wp\/v2\/media?parent=2281"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/blog.webhostingbuzz.com\/wp-json\/wp\/v2\/categories?post=2281"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/blog.webhostingbuzz.com\/wp-json\/wp\/v2\/tags?post=2281"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}