Simple Login Lockdown prevents brute force login attacks/attempts on your WordPress installation.
As of April 2026, Simple Login Lockdown is a WordPress login plugin with 4.0K+ active installations and a 4.4/5 rating from 7 reviews. It has been downloaded 61K+ times in total. Requires WordPress 3.2.0+ and PHP false+. Available on WordPress.org since 2011. Last updated 8 years ago — may have compatibility concerns. Download volume is stable this week. Top alternative: WPS Hide Login.
Simple login lock down is a way to protect your WordPress blog from brute force login attacks.
How it works:
1. An attacker attempts to login and fails
2. Simple Login Lockdown record that failed login
3. After a certain number of failed attemps (defaults to five), further attemps to access the wp-login.php page are blocked for a time (defaults to one hour).
If you happen to forget your password and make a failed login attemp yourself, the plugin will clear out the lockdown count data on successful login.
Note: This uses $_SERVER[‘REMOTE_ADDR’] directly. If you’re behind a proxy (load balancer, etc), it’s not going to work as expected. Eg. Several folks could be attempting logins at once, and all fail. As such, the plugin would pick up on all those requests comi…
lo instale en uno de mis sitios y anda excelente
I’ve installed this plugin on 3 different WordPress sites. None of them brought up a settings screen in the admin console like the screenshot suggested. Might be a good program but I cannot control it.
Short and sweet, does exactly what it says it does without clutter. Perfect!
Nice alternative to plugins that are loaded with non-essential features.
It’s simple, provides a secure lockdown against password attacks.
| WordPress | 3.2.0+ requiredTested up to 3.5.2 |
| PHP | false+ required |
Plugin data sourced from WordPress.org. Analysis and metrics by PluginSift.