Lunarpages Web Hosting Forum

Author Topic: WordPress Brute Force Attacks  (Read 44606 times)

Offline lee

  • Administrator
  • Jabba the Hutt
  • *****
  • Posts: 551
WordPress Brute Force Attacks
« on: April 12, 2013, 09:42:19 AM »
Since yesterday morning, Lunarpagesí internal monitoring systems reported that WordPress users were subject to an unusually high number of attacks.  Brute force attacks occur through exploited accounts at other hosting companies.  The attacks are attempts to find users that have weak passwords and outdated installations.  Once the attacker has found a WordPress account with a weak password, itís used to gain access to the administration panel.    Outdated versions of WordPress scripts are exploited and used to attack other hosting companies.  Lunarpages has implemented additional security tools and is carefully monitoring traffic.  However, the best form of protection against these attacks begins at the customer level.   A tutorial for securing your WordPress is posted at

This particular attack is focused on WordPress users.  Itís important to note that the attacks could just as easily be focused on any application.    The reports are not limited to our network.  Reports from all of the major hosting companies confirm that this is a wide spread situation.

Please feel free to contact us with any concerns or issues you might have.

Lunarpages Administration Team
« Last Edit: April 04, 2014, 09:23:49 AM by Pete »