Skip to content

Sorin Mustaca – Security & Technology

Cybersecurity, AI, Automotive Security, Antimalware Software, Product Management, Agile, Secure Software Development, SSDLC

  • Security
    • IT Security News English
    • IT Sicherheit News Deutsch
    • Securitate in limba Romana
    • Tipps und Ratschläge – IT Sicherheit
  • News
    • In the news
    • Quoted
  • About
    • About me
    • Contact
    • “Improve your security” free eBook
    • Scuba Diving Blog
  • Privacy Policy
  • Cyber Security Consulting
  • Work with me
  • Home
  • General
  • The importance of user names in Wordpress

The importance of user names in WordPress

November 4, 2021

I have a plugin that prevents multiple unsuccessful logins.

As can be seen, the spammers try several combinations like: admin (the default), then site name, and several others.


My company offers consulting on how to prepare for TISAX, ISO27001, NIS2, CSMS and SOC2 audits.
Get in touch with us here: https://www.endpoint-cybersecurity.com/contact/

It is critical to create a user name that is different than the obvious names, especially the default username “admin”.

Another interesting thing is that I get both IPv4 as well as IPv6 IP addresses. More and more IPv6.

Also, a spammer will continuously try to hack you, because they have automated scripts.

So, it makes sense to block them for a longer time.

 

For example, I use these settings:

 

The plugin I am using is “Limit Login Attempts Reloaded”.

I am not affiliated with them in any way.

 


© Copyright 2021 Sorin Mustaca, All rights Reserved. Written For: Sorin Mustaca - Security & Technology


Want to work with me on this topic?
Check Endpoint Cybersecurity to see the consulting services we offer.

Share this:

  • Share on LinkedIn (Opens in new window) LinkedIn
  • Share on Facebook (Opens in new window) Facebook
  • Share on Telegram (Opens in new window) Telegram
  • Share on X (Opens in new window) X
  • Share on Threads (Opens in new window) Threads
  • Share on Mastodon (Opens in new window) Mastodon
  • Share on Bluesky (Opens in new window) Bluesky
  • More
  • Share on WhatsApp (Opens in new window) WhatsApp
  • Share on Tumblr (Opens in new window) Tumblr
  • Share on Pinterest (Opens in new window) Pinterest

Like this:

Like Loading…

Related

General SecurityTagged: attempt, block, hack, login

Post navigation

BSI: Die Lage der IT-Sicherheit in Deutschland (German)
ENISA: ADVANCING SOFTWARE SECURITY IN THE EU

Related Posts

SOC 2 Type 2 mapping to Secure SDLC Requirements

We started to talk about the SOC2 Type 2 certification and I feel that we neglected it a bit. I wrote a bit about SDLC, Secure SDLC in particular, but now it is time to bring them together. My company offers consulting on how to prepare for TISAX, ISO27001, NIS2, CSMS and SOC2 audits. Get in […]

Share this:

  • Share on LinkedIn (Opens in new window) LinkedIn
  • Share on Facebook (Opens in new window) Facebook
  • Share on Telegram (Opens in new window) Telegram
  • Share on X (Opens in new window) X
  • Share on Threads (Opens in new window) Threads
  • Share on Mastodon (Opens in new window) Mastodon
  • Share on Bluesky (Opens in new window) Bluesky
  • More
  • Share on WhatsApp (Opens in new window) WhatsApp
  • Share on Tumblr (Opens in new window) Tumblr
  • Share on Pinterest (Opens in new window) Pinterest

Like this:

Like Loading…
German SMS spam or phishing or Nigerian scam ?

I am trying to sell my car and I posted it on Autoscout24.de. 90% of the telephone calls I received were from handlers, all of them not germans. About half were turks and the rest maybe russians and chechs/slovacs. However, I received also 2 emails and two SMS messages. My company offers consulting on how […]

Share this:

  • Share on LinkedIn (Opens in new window) LinkedIn
  • Share on Facebook (Opens in new window) Facebook
  • Share on Telegram (Opens in new window) Telegram
  • Share on X (Opens in new window) X
  • Share on Threads (Opens in new window) Threads
  • Share on Mastodon (Opens in new window) Mastodon
  • Share on Bluesky (Opens in new window) Bluesky
  • More
  • Share on WhatsApp (Opens in new window) WhatsApp
  • Share on Tumblr (Opens in new window) Tumblr
  • Share on Pinterest (Opens in new window) Pinterest

Like this:

Like Loading…
Apple adds two-factor authentication

Remember our series about how to activate two-factor authentication in Google, Dropbox and Facebook?   My company offers consulting on how to prepare for TISAX, ISO27001, NIS2, CSMS and SOC2 audits. Get in touch with us here: https://www.endpoint-cybersecurity.com/contact/ We are happy to inform you that Apple finally decided to join the club of companies who […]

Share this:

  • Share on LinkedIn (Opens in new window) LinkedIn
  • Share on Facebook (Opens in new window) Facebook
  • Share on Telegram (Opens in new window) Telegram
  • Share on X (Opens in new window) X
  • Share on Threads (Opens in new window) Threads
  • Share on Mastodon (Opens in new window) Mastodon
  • Share on Bluesky (Opens in new window) Bluesky
  • More
  • Share on WhatsApp (Opens in new window) WhatsApp
  • Share on Tumblr (Opens in new window) Tumblr
  • Share on Pinterest (Opens in new window) Pinterest

Like this:

Like Loading…
Sorin Mustaca on Twitter Sorin Mustaca on Facebook View Sorin Mustaca's profile on LinkedIn Sorin Mustaca on XING
Subscribe to me on Substack

Categories

Top Posts & Pages

  • Implementing ISO 27001:2022 Annex A.18 - Compliance
  • Sign files unattended in batch mode while having an eToken (no password popup!) (updated)
  • Defender Application Control or Defender SmartScreen - what can you do to not be blocked by it
  • NIS2: 1. Perform a gap analysis
  • TISAX: new Catalogue ISA v6 available
  • Understanding ISO 27001:2022 Annex A.8 - Asset Management
  • Understanding ISO 27001:2022 Annex A.14 - System Acquisition, Development, and Maintenance
  • How to implement an Information Security Management System (ISMS)
  • Implementing ISO 27001:2022 Annex A.16 - Information Security Incident Management

Work with me

Endpoint Cybersecurity

www.endpoint-cybersecurity.com

- Consulting in building your security products for Windows, MacOS, Linux, iOS, Android
- Pentests and Security tests for applications
- Cybersecurity Management Systems for Automotive(CSMS/ISO 21434, WP.29, ISO 16949)
- Support in TISAX(r) audits
- Support in ISO 27001, NIS2, CRA audits

Subscribe to Blog via Email

Enter your email address to subscribe to this blog and receive notifications of new posts by email.

Join 150 other subscribers

Pages

  • About
  • Contact
  • Cybersecurity and AI Collection
  • Download the free eBook
  • In the news
  • ISO 27001:2022 Collection
  • NIS2 Collection
  • Privacy Policy
  • Securitate in limba Romana
  • Tipps und Ratschläge – IT Sicherheit
  • Work with me
RSS IT Security News (EN)
  • DocuSign Phishing Kit Delivers RMM Tools to Windows and macOS
  • Suno – 55,282,226 breached accounts
  • Attackers pummel critical WordPress vuln to create all sorts of mischief
  • Introducing the Amazon GuardDuty investigation agent: on-demand AI-powered threat assessment
  • IT Security News Hourly Summary 2026-07-21 00h : 4 posts
  • wp2shell Aftermath: The First Critical Unauthenticated WordPress Core RCE in Nearly a Decade
  • IT Security News Daily Summary 2026-07-20
  • Hugging Face Says Autonomous AI Agent System Breached Production Infrastructure
  • Scaling Row-Level Security With ABAC on Databricks Unity Catalog
  • CVE-2026-63030 and CVE-2026-60137: Mitigating a Critical Unauthenticated RCE Chain in WordPress
RSS IT Sicherheitsnews (DE)
  • Hunderttausende Opfer: Schlag gegen Phishing-Service
  • Hunderttausende Opfe: Schlag gegen Phishing-Service
  • (g+) House & Home: How smart tech is being weaponised in the home
  • IT Sicherheitsnews taegliche Zusammenfassung 2026-07-20 18h : 1 posts
  • China-Support für Pentagon: Microsoft-Mittelsmänner vertrauten blind auf Codesicherheit
RSS Improve Your Security Ebook
  • Protecting Our Teens: A Guide to Creating Awareness About Online Dangers
  • A Guide to Teaching Online Safety and Navigating Cyber Dangers
  • How to easily secure your smartphone
  • Conclusion: The Ultimate Parent Guide for Protecting Your Child on the Internet
  • Online predators: The Ultimate Parent Guide for Protecting Your Child on the Internet

Copyright © 2001 - 2026 Sorin Mustaca – Security & Technology | Marvel Blog by Ascendoor | Powered by WordPress.

Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}

Loading Comments...

You must be logged in to post a comment.

    %d