Hourly malicious attempts to lgin
-
For the past several days, a site I help manage has seen nearly hourly attempts to login using a different IP each time and rotating through various ID names. The site is old (designed 2014) and many plugins it uses are no longer supported. The business owner doesn’t want to invest any more money into the site as his health is failing and the business is on the decline. Normally, I wouldn’t get to upset at this and just let Wordfence continue to block their attempts. However, it would seem they have some inside knowledge of the small business that has the site, as the first name of every employee has been tried as a login ID. Wordfence is set to block attempts to find userids, so I suspect they have found the names via some email address search.
Regardless, the main editor of the site has used his first and last name as his login ID, I fear it’s not long before the attackers discover this. So I’m wondering the best avenue to fix/prevent this from becoming an issue as I fear it’s not long before this site is hacked.
–jeff
- The topic ‘Hourly malicious attempts to lgin’ is closed to new replies.