My sites have been getting hit really hard as well.
I’m using Wordfence on all. And although nickzee is right, I could block out whole IP ranges, I fear at this rate I’ll have half the globe blocked out in no time.
As an extra layer of security, I’ve also been blocking these IP’s through cPanel’s “IP Deny Manager”. But I have to add to this list daily, sometimes dozens of IP’s per day, as more and more new baddies crop up. It works, but it’s very time consuming to do this for several websites.
What I find strange is one of the sites is a new domain (few weeks old), and that site hasn’t even gone live yet. It’s just got an Ultimate Coming Soon plugin page as a placeholder to the public view. How’d the attackers find it already?
Will be following this thread as I’d like an easier way to deal with this issue, too.