• I maintain a website running on WordPress 3.8. The site does have a blog and I have an account I use for blogging purposes only. I have another account I use to do other things with the site. I DO NOT post any blog posts with this secondary, non-blog posting, account.

    Today, I noticed some brute force login attempts on the secondary account, which isn’t used for blogging. How would anyone be able to identify WordPress user accounts that aren’t in blog posts?

    Thanks!

Viewing 3 replies - 1 through 3 (of 3 total)
  • Hi
    perhaps this is related: I have a blog (mariam-ffm.de) and have had an astonishing number of users registering, with wierd mailadresse, since a few months. Today I cancelled all of them and also changed my admin-details. While doing that I noticed that there are 4 administrators listed, but really there are only 2. If I knew how to include a pic of that I would.
    Does anyone know what this means?
    Thx & rgds from ffm

    Thread Starter tomdkat

    (@tomdkat)

    On another WordPress blog I maintain, I’ve also seen the high number of subscriber accounts being registered. In the case of the site I mentioned above, there haven’t been any account registrations from visitors and there’s only one administrator account, which is the way I configured things. I just setup accounts to use for other site maintenance tasks. It’s just odd that the account I don’t use for blog posts was the account used for the attack.

    Andrew Nevins

    (@anevins)

    WCLDN 2018 Contributor | Volunteer support

    @mariam-ffm, sorry you need to create a new thread to discuss your issue: https://www.ads-software.com/support/forum/how-to-and-troubleshooting#postform

Viewing 3 replies - 1 through 3 (of 3 total)
  • The topic ‘Question about WordPress user accounts’ is closed to new replies.