WordPress OSINT, maintenance or security needs? Reach out!
TLDWP

Plugin: secupress (Used by 575 domains)

SecuPress with Simple SSL – Simple and Performant Security

πŸ‘€ SecuPress πŸ“¦ v2.6.1 πŸ”— Plugin Homepage

Test it now!

You can test SecuPress Free now.

YOU MADE IT, WE KEEP IT SAFE!

The most advanced WordPress Protection on the market. SecuPress is focused on WordPress attacks and Malwares, not just β€œusual web protections” like many.

Protect your WordPress with malware scans ; block bots & suspicious IPs. Get a complete WordPress security toolkit for free or as a pro plugin. SecuPress is GDPR compliant.

What’s the difference between free and pro version?
If you are proactive, our free WordPress security plugin is a great choice! No time to activate weekly scans? Then SecuPress pro is the way to go. Our plugin takes care of everything with automated tasks.

Here are some of our most popular features:

  • Brute Force Login Protection
  • Password Spraying Protection
  • Firewall features
  • Security alerts (1)
  • Malware Scanner (1)
  • Block country by geolocation (1)

We have included some features you won’t find in most WordPress security plugins:

  • Protection of Security Keys
  • Block visits from Bad Bots
  • Vulnerable Plugins & Themes detection (1)
  • Security Reports in PDF format (1)

You can check out Frequently Asked Questions or get in touch with our support. Want to know all about SecuPress? You can read our documentation here: docs.secupress.me.

How will you know it works?
Well, we have a dedicated security scanner that will give you a clear security grade and report for your website. This way, you’ll know exactly what to fix.

WordPress Features

Security Audit
SecuPress is the only plugin with a full scanner able to fix the issues for you. And when it requires a decision from you, it will ask you before proceeding. With this feature, you can check 35 security points in 5 minutes and let us take care of the rest.

Once done, you get a security grade that gives you a clear idea of what your security level is. You can export this analysis in PDF format to share with others (clients or colleagues) (1).

Users & Login
This feature is the easiest way to make sure your users’ data is protected and to keep their accounts from being compromised. With this feature you can limit the number of bad login attempts, ban non-existing usernames login attempts and set a non-login time slot. SecuPress also makes sure you control the sessions of your users.

SecuPress also adds a 2FA (Two Factor Authentication) because it’s almost a mandatory feature when it comes to WordPress security!

The plugin also gives you greater user and password control as you can set:

  • Password lifetimes for your users.
  • Enforce strong password use.
  • Forbid the use of vague usernames like www or admin.

Tired of bots finding your WordPress login page? Finally, don’t let bots find your login page, just move it with the famous Move Login plugin, now included in SecuPress.

Plugins and Themes
SecuPress helps you detect themes and plugins that are vulnerable or that have been tampered with to include malicious code. If you install one of these, your security module will send out an email alert and give you a warning in WordPress.

SecuPress takes security further by limiting plugin activation, deactivation, installation and removal in your production (live) website. Plugin and theme uploads via .zip files will be on lockdown as well to block off this easy hacking route.

WordPress Core
SecuPress reinforces the WordPress Core to keep it safe. The security plugin optimizes what’s under the hood to secure the config file by setting the proper parameters.

Sensitive Data
SecuPress secures content in many ways:

  • The plugin secures WordPress Endpoints and APIs by blocking bad requests for XML-RPC or REST API.
  • It blocks bad bots with its Robots Blackhole feature.
  • It provides an anti-hotlink feature to preserve your bandwidth.
  • The plugin packs 7 anti-disclose security modules to make sure no precious information is available to hackers in your PHP or WordPress itself.
  • Profile and SecuPress settings pages are password protected to keep sensitive information away from prying eyes.

Firewall

  • SecuPress is one of the most efficient WordPress bouncer you’ll ever see!
  • The plugin blocks malicious incoming requests.
  • It blocks bad User Agents (no bad crawlers allowed).
  • Bad requests methods also get the boot in a single click.
  • URLs are kept in check: no bad URL contents.
  • SQL injection scanners are kept out as well.
  • Brute force attempts are stopped in their tracks.
  • GeoIP Blocking by country gives you more control over your traffic.

Malware Scan
SecuPress has a unique malware scan developed by our security experts. It hunts down bad files and provides you with an easy step-by-step report that lets you take action. It looks into:

  • Bad files in your FTP.
  • Your uploads folder for dangerous files.
  • Potential phishing attempts via index.php loads.

Backups
We know firsthand how painful it is to pick up the pieces after an attack damages your WordPress. SecuPress preserves your data to help you avoid lost content or settings if your website comes under attack. The plugin backs up your database and files and lets you download them to guarantee you peace of mind.

Anti Spam
Did you know that 60% of the traffic on the Internet is generated by bots? Most of them happen to be spam bots. We developed our own anti-spam system that works quietly in the background. Just activate it and enjoy a spam free experience.

Alerts
Alerts are an essential tool when your website is under attack. When something important happens on your website, SecuPress will send you an alert via email. We’re working on alerts via SMS, Slack & Twitter as well.

You also receive a daily report that provides a debrief of the attempted attack and all the activities blocked by SecuPress.

Scheduled Security Tasks
SecuPress can run 3 separate scheduled tasks for you. It’s like having a security patrol on your WordPress.

Scheduled Scanner: SecuPress scans your website to detect any issues. After the scan is complete, you get a report in your inbox outlining any actions you have to take to protect your website.
Scheduled Backup: our team knows that everyone at one time or another forgets to back things up. We made it an automatic task to help ensure you always can recover from an attack with your content safe.
Scheduled Malware Scan: this security feature scans your website at regular intervals to hunt down any malware that may have gotten into your WordPress.

Logs
SecuPress will keep a log of important security activities and 404 pages triggered by users, bots or even Chuck Norris. This lets you keep an eye on what’s going on in your WordPress at any time. You can also control banned IPs from this option.

(1) Available in the Pro Version.

(SecuPress est une extension de sΓ©curitΓ© WordPress franΓ§aise)

TODO

Create a trust score for each non WP file and displays it
Create a β€œsuspicious” status for alerts
Revamp alerts
Revamp logs
Add http logs
PHP 8.O min
replace %s by ###USERNAME### in emails
.htaccess scanner
login rest disclose scanner
move EDD updater+white label into a mu to allow upgrade+rollback even with plugin deactivated
give possibility to rename logins
target=”_blank” on doc links
AI Scanner
Improve malware scanner, again

DomainExposuresHeadersLast Checked
s*i*a.fr βœ… β€” 2025-11-11 19:42:26
a*c*i*i*t*r*.fr βœ… β€” 2025-11-11 19:37:07
w*s*m*q*i*l*g*.fr βœ… β€” 2025-11-11 19:08:26
m*d*s*t*p.fr βœ… β€” 2025-11-11 18:59:26
b*o*-*u*c*.fr βœ… β€” 2025-11-11 18:18:57
v*y*g*s*e*-*r*u*e.com βœ… β€” 2025-11-11 09:34:40
v*y*g*r*a*n*e*a*t.com βœ… β€” 2025-11-11 09:34:40
v*t*e*m*g*e*l*m*e*e.com βœ… β€” 2025-11-11 09:33:00
v*m*d*c*.com βœ… β€” 2025-11-11 09:29:13
v*i*-*u*l*q*e.com βœ… β€” 2025-11-11 09:25:51
v*i*-*t*d*s*i*e*.com βœ… β€” 2025-11-11 09:25:51
v*v*n*-*h*s*o*l*g*q*e.com βœ… β€” 2025-11-11 09:16:33
v*l*e*-*r*n*e.com βœ… β€” 2025-11-11 08:38:26
v*n*s*m*r*a*e.com βœ… β€” 2025-11-11 07:53:22
v*n*s*t*o*a*e*.com βœ… β€” 2025-11-11 07:51:55
v*l*u*m*r.com βœ… β€” 2025-11-11 07:17:26
v*e*i*f*s.com βœ… β€” 2025-11-11 07:07:11
u*d*m*n*h*d*d*c*m*r*.com βœ… β€” 2025-11-11 06:01:34
u*b*u*o*d*n*l*c*i*.com βœ… β€” 2025-11-11 05:57:58
u*m*t*b*o*s.com βœ… β€” 2025-11-11 05:55:14
t*e*t*a*s*o*t.com βœ… β€” 2025-11-11 04:45:48
t*e*e*i*h*u*i*e*s.com βœ… β€” 2025-11-10 23:42:25
t*p*y*c*n*e*l*.com βœ… β€” 2025-11-10 20:40:06
s*u*i*f*n*y*u*a*n*.com βœ… β€” 2025-11-10 17:39:59
s*a*e*o*t.com βœ… β€” 2025-11-10 13:04:33
s*o*u*-*e*t*r.com βœ… β€” 2025-11-10 11:41:21
s*a*i*a*e.com βœ… β€” 2025-11-10 10:50:22
s*r*e*h*v*l*e*-*o*c*i*g.com βœ… β€” 2025-11-10 10:25:38
s*m*o*i*e.com βœ… β€” 2025-11-10 10:03:40
s*m*o*i*e.com βœ… β€” 2025-11-10 10:03:40
s*m*n*i*e*h*t*l*.com βœ… β€” 2025-11-10 10:03:17
s*l*c*a*n*a*r*.com βœ… β€” 2025-11-10 09:53:00
s*c*s*i*e.com βœ… β€” 2025-11-10 09:38:34
s*r*p*s*h*p*o*p*o.com βœ… β€” 2025-11-10 09:11:08
s*i*-*g*n*e.com βœ… β€” 2025-11-10 08:59:25
s*h*o*s*p.com βœ… β€” 2025-11-10 08:54:24
s*a*-*h*r*p*u*i*u*.com βœ… β€” 2025-11-10 08:42:35
s*n*e*n*t*r*l*e*t*u*-*i*p*e*e*t.com βœ… β€” 2025-11-10 07:58:46
s*n*l*n*s.com βœ… β€” 2025-11-10 07:44:40
s*l*h*-*a*i*.com βœ… β€” 2025-11-10 07:18:10
s*f*r*s*h*k*n*m*k*d*.com βœ… β€” 2025-11-10 06:50:44
s*b*o*i*s.com βœ… β€” 2025-11-10 06:42:34
s*b*n*b*.com βœ… β€” 2025-11-10 06:42:13
r*y*h*r*-*h*a*e*.com βœ… β€” 2025-11-10 05:52:18
r*s*z*s*e.com βœ… β€” 2025-11-10 05:42:42
r*a*-*o*p*.com βœ… β€” 2025-11-10 04:53:25
p*o*e*s*d*-*i*.com βœ… β€” 2025-11-09 22:57:09
p*e*t*d*s*g*.com βœ… β€” 2025-11-09 22:12:19
p*e*d*e*o*f*a*c*.com βœ… β€” 2025-11-09 22:07:03
p*e*i*r*b*b*.com βœ… β€” 2025-11-09 22:02:03
p*a*a*r*n*e.com βœ… β€” 2025-11-09 21:52:15
p*a*a*f*a*c*.com βœ… β€” 2025-11-09 21:51:54
p*w*r*c*d*u*h*.com βœ… β€” 2025-11-09 21:40:39
p*u*p*s*n*o*d.com βœ… β€” 2025-11-09 21:38:00
p*t*t*s*p*o*u*t*o*s.com βœ… β€” 2025-11-09 19:15:36
p*r*e*o*f.com βœ… β€” 2025-11-09 18:55:29
p*p*t*s*e*o*l*u*s.com βœ… β€” 2025-11-09 18:52:29
p*o*l*f*n*.com βœ… β€” 2025-11-09 18:51:08
p*c*e*r*d*-*e*s*t*o*s.com βœ… β€” 2025-11-09 18:36:32
p*z*n*t*t*t.com βœ… β€” 2025-11-09 18:23:29
p*u*e*t*q*i*c*i*l*r*e.com βœ… β€” 2025-11-09 18:14:22
p*u*e*n*t*a*i*.com βœ… β€” 2025-11-09 18:14:22
p*t*e*p*t*e.com βœ… β€” 2025-11-09 18:11:38
p*r*u*s*d*z*g*.com βœ… β€” 2025-11-09 17:42:18
p*i*o*e*n*.com βœ… β€” 2025-11-09 17:06:48
o*e*i*a*s*o*.com βœ… β€” 2025-11-09 16:39:03
o*i*d*-*t.com βœ… β€” 2025-11-09 16:27:42
o*o*s*a*e*a*i*n.com βœ… β€” 2025-11-09 16:16:45
o*m*z*m*r*a*e.com βœ… β€” 2025-11-09 16:16:26
o*i*n*a*i*n*e*e*n*.com βœ… β€” 2025-11-09 15:59:48
o*g*n*s*t*o*n*l.com βœ… β€” 2025-11-09 15:57:37
o*g*n*s*t*o*e*.com βœ… β€” 2025-11-09 15:57:37
o*g*n*s*t*o*-*l.com βœ… β€” 2025-11-09 15:57:37
n*c*l*s*a*e.com βœ… β€” 2025-11-09 11:45:40
n*u*o*a*u*e*.com βœ… β€” 2025-11-09 10:56:01
n*l*t*e*u*y.com βœ… β€” 2025-11-09 10:37:46
n*l*t*b*a*t*.com βœ… β€” 2025-11-09 10:37:46
n*o*h*.com βœ… β€” 2025-11-09 10:27:33
n*v*-*a*c*l*n.com βœ… β€” 2025-11-09 10:18:07
n*t*r*m*l*e.com βœ… β€” 2025-11-09 10:12:40
n*t*r*l*e*i*.com βœ… β€” 2025-11-09 10:09:49
n*t*s*e*.com βœ… β€” 2025-11-09 10:07:47
n*t*l*m.com βœ… β€” 2025-11-09 10:01:27
n*r*a*e*p*.com βœ… β€” 2025-11-09 09:55:46
n*o*u*i*s*i*t*u.com βœ… β€” 2025-11-09 09:51:19
n*g*a*s*.com βœ… β€” 2025-11-09 09:35:29
n*g*a*u*i*.com βœ… β€” 2025-11-09 09:35:29
m*k*l*-*a*i*.com βœ… β€” 2025-11-09 08:59:34
m*s*i*-*a*t*.com βœ… β€” 2025-11-09 08:28:35
m*c*a*i*r*.com βœ… β€” 2025-11-09 08:04:31
m*r*a*e*a*i*.com βœ… β€” 2025-11-09 07:11:16
m*n*q*e*e*e*c*i.com βœ… β€” 2025-11-09 06:51:14
m*n*o*t*u*o*h*u*.com βœ… β€” 2025-11-09 06:49:51
m*n*a*i*l*-*h*e*.com βœ… β€” 2025-11-09 06:43:09
m*h*i*d*m*u*i*.com βœ… β€” 2025-11-09 06:32:42
m*d*r*o*t*o*t.com βœ… β€” 2025-11-09 06:27:42
m*-*o*c*i*g*d*v.com βœ… β€” 2025-11-09 06:08:28
m*s*s*m.com βœ… β€” 2025-11-09 05:52:49
m*k*e*e*a*v*l.com βœ… β€” 2025-11-09 05:06:53
m*w*n*d*s*o*e*y.com βœ… β€” 2025-11-09 04:34:16

Top 50 Plugins

Plugin Count
elementor 3,346,694
contact-form-7 2,897,965
elementor-pro 1,853,788
woocommerce 1,587,290
revslider 1,105,702
js_composer 702,257
jetpack 517,588
wp-rocket 501,904
essential-addons-for-elementor-lite 499,296
header-footer-elementor 447,736
elementskit-lite 424,476
gutenberg-core 380,985
google-analytics-for-wordpress 369,842
instagram-feed 366,848
google-site-kit 354,591
cookie-law-info 339,420
complianz-gdpr 335,485
gravityforms 331,898
wpforms-lite 326,075
astra-sites 319,995
sitepress-multilingual-cms 286,622
litespeed-cache 283,530
bluehost-wordpress-plugin 267,424
gtranslate 218,961
coblocks 197,829
cookie-notice 197,693
the-events-calendar 166,559
premium-addons-for-elementor 165,238
gutenberg 164,420
mailchimp-for-wp 160,686
astra-addon 159,214
bb-plugin 158,593
popup-maker 155,789
LayerSlider 150,799
pro-elements 148,836
wp-smushit 148,694
creame-whatsapp-me 147,567
click-to-chat-for-whatsapp 146,663
sg-cachepress 138,354
tablepress 137,481
custom-fonts 137,270
woocommerce-gateway-stripe 130,252
royal-elementor-addons 129,955
duracelltomi-google-tag-manager 127,494
smart-slider-3 127,102
pixelyoursite 125,192
ultimate-addons-for-gutenberg 123,726
cleantalk-spam-protect 123,622
fusion-builder 118,887
megamenu 118,708

Top 50 Themes

Theme Count
hello-elementor 1,045,895
astra 915,652
Divi 847,091
pub 250,982
generatepress 196,254
flatsome 194,619
Avada 175,335
h4 168,672
oceanwp 144,036
kadence 125,835
enfold 104,257
bb-theme 103,614
twentytwentyfive 101,632
salient 101,219
blocksy 100,136
twentytwentyfour 99,471
cocoon-master 94,680
betheme 85,737
woodmart 80,455
twentyseventeen 78,904
dt-the7 68,742
neve 60,598
twentytwentyone 52,263
bridge 51,313
swell 50,610
lightning 45,097
twentytwentythree 44,634
twentytwenty 44,027
Avada-Child-Theme 41,827
gox 39,495
Impreza 35,843
bricks 35,518
Newspaper 34,068
twentytwentytwo 33,567
storefront 27,571
yith-wonder 27,434
extendable 27,275
pro 26,832
epik-redesign 26,685
uncode 26,262
themify-ultra 26,061
twentysixteen 25,484
sydney 25,004
twentyfifteen 24,561
Total 22,368
porto 21,720
hestia 20,041
go 19,688
thrive-theme 18,926
popularfx 18,730