This plugin is outdated and might not be supported anymore
SpoofProof

SpoofProof

Details
View on WordPress

SpoofProof alters the WP login screen to have a two (2) stage login with data from the server selected and or entered by the user displayed to the user to prove they are talking to your server, and not a spoofed site. (This means a hacker can’t Spoof or Phish your site).

SpoofProof hooks into the WordPress engine to filter out Javascript and SQL injection from posts to your site.

SpoofProof tracks login attampts and stops Brute Force attacks by imposing waiting periods on rapid login attempts.

SpoofProof Detects Man In the Middle (MItM) attacks in progress, records the IP address of the hacker(s) in your log, and stops the user from revealing their password to the hacker(s). (This stops a hacker from using a MItM to get around the two stage login)

Details

Plugin code:
spoofproof
Plugin version:
1.0
Outdated:
Yes
WP version:
4.3 or higher
PHP version:
or higher
Test up to WP version:
4.6.29
Total installations:
10
Last updated:
2016-09-06
Rating:
Times rated:
0
anti-injection
anti-javascript-injection
injection
security
spoofproof