WPThumbs
Themes Plugins By purpose By industry Best-of lists Fix it guides
Free Plugin by WPChef v1.5.2

Protection Against DDoS

Protects your login, xmlrpc and RSS feeds pages against DDoS attacks. Denies access to your site from certain countries via CloudFlare.

Protection Against DDoS

The facts

Rating
5★ from 4
Active installs
3k+
Price
Free
Last updated
29 Apr 2020
Added
Jul 2016
Requires WP
3.5.2
Tested up to
WP 5.4.21
Downloads
49,337

Our analysis

AI-assisted

Protection Against DDoS is a WordPress plugin designed to mitigate performance issues caused by brute force attacks. It works by blocking excessive HTTP requests that can overwhelm your server, particularly targeting the wp-login.php file and other vulnerable WordPress features like xmlrpc and RSS feeds.

This plugin is suitable for users looking to enhance their site's security against DDoS attacks and brute force attempts. It is particularly beneficial for those using CloudFlare, as it allows for country-specific access controls.

Best for: This plugin suits WordPress site owners who want to improve their site's security against brute force attacks.

What it does well

  • Addresses performance issues from brute force attacks
  • Blocks access to vulnerable WordPress features
  • Compatible with WordPress multisites
  • No known conflicts with other security plugins
  • Checks performed via .htaccess for server-level protection

Where it falls short

  • Limited feature information available
  • No specific details on user support or documentation

Verdict

Protection Against DDoS provides essential security features for WordPress users concerned about DDoS and brute force attacks. Its effectiveness is rooted in its ability to block malicious requests before they reach your site.

From the developer

WPChef's own description of Protection Against DDoS, lightly tidied.

This plugin resolves performance issues caused by brute force attacks described in the WordPress Codex here: https://codex.wordpress.org/Brute_Force_Attacks

From WordPress Codex:

Due to the nature of these attacks, you may find your server’s memory goes through the roof, causing performance problems. This is because the number of http requests (that is the number of times someone visits your site) is so high that servers run out of memory.

A common attack point on WordPress is to hammer the wp-login.php file over and over until they get in or the server dies. You can do some things to protect yourself.

Protection Against DDoS plugin addresses these issues very well.

It also allows to deny access to common WordPress features that get frequently attacked, like xmlrpc or RSS feeds pages.

CloudFlare users can allow or deny access for visitors from specified countries.

All checks are done via the .htaccess file so that bogus requests can’t even reach your WordPress site and get bounced at the web server level. You can also specify exactly where they can be bounced to.

Compatibility

  • Doesn’t have any known conflicts with any other security plugins.
  • Fully compatible with WordPress multisites.

Advanced users can get more technical information on the FAQ page.

Read the full description on the official page →

Tagged as

Alternatives

Other plugins for aggregating content.

WP RSS Aggregator

The #1 WordPress RSS aggregator to quickly import RSS feeds, build a news aggregator, and for easy autobloggin...

Free 40k+ installs 4.5★ (562)
RSS Aggregator by Feedzy

The most powerful WordPress RSS aggregator, helping you curate content, autoblog, import RSS & display unl...

Free 40k+ installs 4.6★ (361)
Ditty

Ditty

86

Ditty offers a range of content display options, including its signature news ticker and customizable layouts.

Free 30k+ installs 4.6★ (106)
Seriously Simple Podcasting

Podcasting the way it's meant to be. No mess, no fuss - just you and your content taking over the world.

Free 30k+ installs 4.7★ (329)
Hide Posts

Hide posts or WooCommerce products from the homepage, archives, search, RSS, REST API, sitemaps and SEO tools...

Free 20k+ installs 4.7★ (22)