Report failed logins to centralized database and block IPs on firewall level!
As of April 2026, Failed Login Firewall reporting is a WordPress apf plugin with 50 active installations and a 5/5 rating from 2 reviews. It has been downloaded 2.5K+ times in total. Requires WordPress 3.0.1+ and PHP false+. Available on WordPress.org since 2016. Last updated 4 years ago — may have compatibility concerns.
Idea of this plugin is simple. On failed login attempt – report IP of visitor to centralized database.
If same IP fails a lot (no matter on which site) – it will be listed on blocklist.
CSF (Config Server Firewall) allows you to put URL which contains list of IPs, that should be blocked.
Set it to our address and your server will be protected from those, who abuse WordPress sites login forms.
Plugin is simple and I believe it can become an effecient tool fighting against hackers, as it would
stop bad guys at firewall level, not letting them do any harm.
| WordPress | 3.0.1+ requiredTested up to 5.9.13 |
| PHP | false+ required |
Plugin data sourced from WordPress.org. Analysis and metrics by PluginSift.