As of April 2026, Prevent Brute Force Login is a WordPress login plugin with 10 active installations and a 0/5 rating0. It has been downloaded 1.2K+ times in total. Requires WordPress 4.9+ and PHP 5.6.3+. Available on WordPress.org since 2018. Last updated 6 years ago — may have compatibility concerns. Top alternative: WPS Hide Login.
Limit the number of login attempts by ip address. By default, user can try brute force username and password from login page with unlimited attempts. This plugin help you by hiding login form after some failed logins in a short period of time from an ip address. The Unlock form will show up to help real users to unlock only their ip address immediately if their ip address range locked.
Features
* Limit the number of failed logins in a short period of time before the ip address range locked.
* Send email notification to the admin when a user locked out (customized)
* Show unlock form to help real user to unlock only their ip address.
* Send email notification with unlock key (customized)
| WordPress | 4.9+ requiredTested up to 5.3.21 |
| PHP | 5.6.3+ required |
1.1.0
* Fix fatal error when unlock lockdown.
* Able to lockdown localhost for testing.
* Fix some fatal errors.
1.0.1
* Fix code standard.
1.0.0
* Initial Release.
Plugin data sourced from WordPress.org. Analysis and metrics by PluginSift.