Stop XML-RPC Attacks

Stop XML-RPC Attacks

Details
View on WordPress

Stop XML-RPC Attacks protects your WordPress site from XML-RPC brute force attacks, DDoS attempts, and reconnaissance probes while maintaining compatibility with essential services like Jetpack and WooCommerce.

Features:

  • Three security modes: Full Disable, Guest Disable, or Selective Blocking
  • Blocks dangerous methods: system.multicall, pingback.ping, and more
  • Compatible with Jetpack and WooCommerce
  • Optional user enumeration blocking
  • Attack logging for monitoring
  • Zero configuration required – works out of the box
  • Clean, intuitive admin interface

Details

Plugin code:
stop-xml-rpc-attacks
Plugin version:
2.0.0
Outdated:
No
WP version:
6.0 or higher
PHP version:
7.4 or higher
Test up to WP version:
6.9
Total installations:
6,000
Last updated:
2026-01-01
Rating:
Times rated:
4
brute-force
ddos
jetpack
security
xmlrpc