콘텐츠로 바로가기
WordPress.org

한국어

  • 테마
  • 플러그인
  • 소식
    • 문서
    • 포럼
  • About
    • WordPress 6.9
    • 워드프레스 6.8
    • 워드프레스와 40% 웹을 위한 여정
    • 워드프레스 번역 핸드북
  • 워드프레스 한국팀
  • 워드프레스 받기
워드프레스 받기
WordPress.org

Plugin Directory

BruteFort

  • 플러그인 제출하기
  • 내 즐겨찾기
  • 로그인
  • 플러그인 제출하기
  • 내 즐겨찾기
  • 로그인

BruteFort

작성자: Yoyal Limbu
다운로드
  • 세부사항
  • 평가
  • 설치
  • 개발
지원

설명

BruteFort is your WordPress site’s complete login security solution. Protect against brute force attacks, hide your login page with a custom URL, block countries using geo-blocking, and manage IP restrictions — all in one lightweight, performance-optimized plugin.

Whether you’re running a blog, a WooCommerce store, or a membership site, BruteFort keeps bots, hackers, and unauthorized users out while maintaining fast page speeds.

🔐 Key Features

🌐 Geo Blocking (Country-Based Restrictions)
– Block or allow login attempts by country
– Blacklist mode: Block specific countries from accessing wp-login.php
– Whitelist mode: Only allow login from selected countries
– IP geolocation detection (Cloudflare compatible)
– Perfect for region-specific sites or blocking high-risk countries

🔗 Custom Login URL (Hide wp-login.php)
– Hide default WordPress login page (wp-login.php)
– Create custom login slug (e.g., yoursite.com/secure-access)
– Automatically redirect wp-login.php to 404
– Prevent automated bot attacks targeting /wp-login.php
– Easy to remember custom URLs for authorized users

🛡️ Brute Force Protection & Rate Limiting
– Block brute force attacks with smart rate limiting
– Set maximum login attempts per IP address
– Configurable time windows and lockout durations
– Progressive lockout extensions for repeated attacks
– Custom error messages for locked users

📍 IP Whitelist & Blacklist Management
– Manage custom IP whitelists and blacklists
– Add individual IPs or CIDR ranges
– Instantly block suspicious IPs
– Whitelist your own IP to prevent lockouts
– Bulk IP management with easy interface

📊 Real-Time Monitoring & Logs
– View failed login attempts in real-time
– Track IP addresses, usernames, and timestamps
– Filter logs by status, date, or IP
– Manual unlock for accidentally locked users
– Export logs for security audits

⚡ Performance & Compatibility
– Lightweight and performance-optimized
– Works with Cloudflare, proxy servers, and CDNs
– Compatible with most security plugins
– Dark mode UI support
– No impact on page load speeds

🎯 Perfect For

  • WooCommerce stores protecting customer data and preventing unauthorized access
  • Membership sites restricting access by geographic location
  • Corporate websites blocking countries where business doesn’t operate
  • Blog owners hiding login page from automated bots and scanners
  • Agencies managing multiple client sites with different security requirements
  • High-traffic sites experiencing frequent brute force attacks
  • International sites wanting region-specific login restrictions

🚀 Why Choose BruteFort?

  • All-in-one solution: Custom login URL + Geo blocking + IP restrictions in one plugin
  • Easy to use: Simple, intuitive interface with no complex configuration
  • Performance-focused: Minimal resource usage, no site slowdown
  • SEO-friendly: Properly handles redirects and 404s
  • Privacy-conscious: No external API calls for basic features (optional geo API)
  • Regular updates: Actively maintained with new features added regularly

스크린샷

  • Dashboard Overview – Rate Limit Settings
  • Custom Login URL Settings – Hide wp-login.php
  • Geo Blocking Settings – Country-based restrictions
  • IP Whitelist/Blacklist Management
  • Real-time Login Attempt Logs

설치

  1. Upload the plugin files to the /wp-content/plugins/brutefort directory, or install the plugin through the WordPress plugin screen directly.
  2. Activate the plugin through the ‘Plugins’ screen in WordPress
  3. Go to Settings > BruteFort to configure IP restrictions, whitelist/blacklist, and login attempt limits.
  4. Navigate to Custom Login URL tab to set up a custom login slug and hide wp-login.php
  5. Use Geo Blocking tab to block or allow countries from accessing your login page

FAQ

Does this plugin slow down my site?

No. BruteFort is lightweight and optimized for performance, with minimal impact on page load times.

How does the custom login URL feature work?

BruteFort creates a custom slug (e.g., /secure-login) for your login page and automatically blocks access to /wp-login.php, returning a 404 error to unauthorized users.

What is Geo Blocking and how does it work?

Geo Blocking restricts login attempts based on the visitor’s country. You can either blacklist specific countries (block mode) or whitelist only allowed countries (allow mode). It uses IP geolocation to detect the user’s location.

Can I whitelist my own IP address?

Yes! Add your IP to the whitelist to ensure you’re never locked out, even if other restrictions are active.

What happens if I forget my custom login URL?

You can disable the custom login URL feature via FTP by deactivating the plugin, or by accessing your database to change the setting.

Does Geo Blocking work with VPNs or proxy servers?

Yes, BruteFort is compatible with Cloudflare and most proxy servers. It checks the CF-IPCountry header first, then falls back to IP-based geolocation.

Is this compatible with other security plugins?

Yes. BruteFort works alongside most WordPress security plugins like Wordfence, iThemes Security, and All In One WP Security.

Can I block entire countries from logging in?

Yes! The Geo Blocking feature lets you select specific countries to block or allow for login attempts.

후기

Does Exactly What It Should — No Bloat

Purshottam Nepal 2025년 12월 13일
Thanks to this plugin, my clients are happier than ever.This plugin does exactly what it promises and does it exceptionally well. If you’re serious about WordPress login security and want reliable brute-force protection without headaches, Brutefort is a must-have. Highly recommended!

Great plugin—simple, easy to use

Niraj Chaudhary 2025년 11월 20일
I love the new feature that hides the wp-login page, and you don’t even have to create a new page for it. It works perfectly and adds a nice extra layer of security.

My server is thanking you

lazyowner458 2025년 11월 13일 답글 1개
My server went down four times over the past month, with constant bot attacks trying to login into my admin dashboard. I tried Wordfence but it was a really confusing and also didn’t want to pay $149 for the feature I wanted. Brutefort was simple and did the job. Thanks! However you can add some features like geo-blocking / geo-throttling.
모든 3 평가 읽기

기여자 & 개발자

“BruteFort”(은)는 오픈 소스 소프트웨어입니다. 다음의 사람들이 이 플러그인에 기여하였습니다.

기여자
  • Yoyal Limbu

자국어로 “BruteFort”(을)를 번역하세요.

개발에 관심이 있으십니까?

코드 탐색하기는, SVN 저장소를 확인하시거나, 개발 기록을 RSS로 구독하세요.

변경이력

0.0.7 – 20/11/2025

  • Fix – Removed extra tags and shortened extra long short descriptions.

0.0.6 – 19/11/2025

  • Feature – Custom Login URL: Hide wp-login.php and create custom login slugs
  • Feature – Geo Blocking: Block or allow login attempts by country (blacklist/whitelist mode)
  • Feature – Complete country list (249 countries) for geo-blocking
  • Enhance – Unified card-based UI design across all settings pages
  • Enhance – Improved toggle switches and form controls
  • Enhance – Better dark mode support throughout the plugin
  • Fix – LogsService type error causing fatal errors on live sites

0.0.5 – 14/11/2025

  • Fix – Entry already exists issue on setup wizard

0.0.4 – 14/11/2025

  • Feature – Basic Setup wizard
  • Enhance – Refresh option on logs page
  • Fix – Dark mode design update on datatable and modals
  • Fix – Unlock feature for locked users

0.0.3 – 13/11/2025

  • Fix – Settings redirect from all plugins page
  • Fix – Compatibility with 7.4

0.0.2 – 12/11/2025

  • Fix – Autoload not working issue

0.0.1 – 12/11/2025

  • Initial release – login protection, IP whitelist/blacklist, brute force detection

기초

  • 버전 0.0.7
  • 최근 업데이트: 5개월 전
  • 활성화된 설치 10보다 적음
  • 워드프레스 버전 5.0 또는 그 이상
  • 다음까지 시험됨: 6.8.5
  • PHP 버전 7.4 또는 그 이상
  • 언어
    English (US)
  • 태그:
    Brute Forcecustom login urlgeo blockingIP restrictionlogin protection
  • 고급 보기

평점

별 5점 만점에 5점.
  • 3/5-별점 후기 별 5개 3
  • 0/4-별점 후기 별 4개 0
  • 0/3-별점 후기 별 3개 0
  • 0/2-별점 후기 별 2개 0
  • 0/1-별점 후기 별 1개 0

Your review

모든 리뷰 보기

기여자

  • Yoyal Limbu

지원

할 말 있으신가요? 도움이 필요하신가요?

지원 포럼 보기

  • 소개
  • 뉴스
  • 호스팅
  • 개인정보
  • 쇼케이스
  • 테마
  • 플러그인
  • 패턴
  • 배우기
  • 지원
  • 개발자 도구
  • WordPress.tv ↗
  • 참여하기
  • 이벤트
  • 기부하기 ↗
  • 미래를 위한 5가지
  • WordPress.com ↗
  • Matt ↗
  • bbPress ↗
  • BuddyPress ↗
WordPress.org
WordPress.org

한국어

  • X(이전 트위터) 계정 방문하기
  • 블루스카이 계정 방문하기
  • 마스토돈 계정 방문하기
  • 스레드 계정 방문하기
  • 페이스북 페이지 방문하기
  • 인스타그램 계정 방문하기
  • LinkedIn 계정 방문하기
  • 틱톡 계정 방문하기
  • 유튜브 채널 방문하기
  • 텀블러 계정 방문하기
코드는 詩다
The WordPress® trademark is the intellectual property of the WordPress Foundation.