Aug 162014

WordPress Security Plugins report, provides information on the following security plugins like iTheme Security, All In One WP Security & Firewall and more.

Last Updated: November 7, 2018

Latest News: I have updated the changelog.

Note: WordPress is working on the following plugin Two Factor. This plugin might be merged into the core files.

Information: Always remember to try and not have too many plugins added to your website or blog. The more plugins you add the more request and processing resources it requires to use from your server!!!

Please read the following link Help Support WordPress Plugins And Themes Developers to help support the developers.

Advanced WordPress Security Plugins



iTheme Security (formerly Better WP Security)

Helps protect your WordPress installation from attackers. Hardens standard WordPress security by hiding vital areas of your site, protecting access to important files via htaccess, preventing brute-force login attempts, detecting attack attempts, and more.

Important: This plugin has been downloaded more than 13 million times. There are more than 900 thousand active installs.

You can check my tutorial WordPress iTheme Security Tutorial. It will help you understand and configure the plugin.

Version 7.2.0 | By ithemes, Chris Wiegman, Chris Jean, Matt Danner | Last Updated: October 11, 2018 | Compatible up to 4.9.8



 BulletProof Security

Website Security Protection: BulletProof Security protects your website against XSS, RFI, CRLF, CSRF, Base64, Code Injection and SQL Injection hacking attempts. One-click .htaccess WordPress security protection. Protects wp-config.php, bb-config.php, php.ini, php5.ini, install.php and readme.html with .htaccess security protection. One-click Website Maintenance Mode (HTTP 503). Additional website security checks: DB errors off, file and folder permissions check… System Info: PHP, MySQL, OS, Server, Memory Usage, IP, SAPI, DNS, Max Upload… Built-in .htaccess file editing, uploading and downloading.

Important: This plugin has been downloaded more than 2 million times.

Version 2.9 | By Edward Alexander | Last Updated: February 1, 2018 | Compatible up to 4.9.8



All In One WP Security & Firewall

A comprehensive, user-friendly, all in one WordPress security and firewall plugin for your site.

Important: This plugin has been downloaded more than 5 million times. There are more than 700 thousand active installs.

You can check my tutorial  All In One WP Security Firewall to help you configure this plugin.

Version | By Tips and Tricks HQ, wpsolutions, Peter Petreski, Ruhul Amin, mbrsolution, Chesio | Last Updated: October 21, 2018 | Compatible up to 4.9.8



Sucuri Scanner

Sucuri Inc. is a globally recognized authority in all matters related to website security, with specialization in WordPress Security.

Important: This plugin has been downloaded more than 3 million times. There are more than 400 thousand active installs.

Version 1.8.18 | By Daniel Cid | Last Updated: July 4, 2018 | Compatible up to 4.9.8


Intermediate To Advanced WordPress Security Plugins



Wordfence Security

Wordfence Security is a free enterprise class security plugin that includes a firewall, virus scanning, real-time traffic with geolocation and more.

Important: This plugin has been downloaded more than 72 million times. There are more than 2 million active installs.

Version 7.1.17 | By Mark Maunder | Last Updated: November 7, 2018 |Compatible up to 4.9.8



Look-See Security Scanner

Verify the integrity of a WP installation by scanning for unexpected or modified files.

Version 21.2.1 | By blobfolio | Last Updated: June 2, 2018 | Compatible up to 4.9.8



Shield Security

Don’t Leave Your Site At Risk
If your site is vulnerable to attack, you’re putting your business and your reputation at serious risk. Getting hacked can mean you’re locked out of your site, client data stolen, your website defaced or offline, and Google will penalise you.

Important: This plugin has been downloaded more than 2 million times.

Version 6.10.4 | By iControlWP | Last Updated: November 7, 2018 | Compatible up to 4.9.8



Anti-Malware Security and Brute Force Firewall


  • Run a Complete Scan to automatically remove known security threats and backdoor scripts.
  • Firewall block SoakSoak and other malware from exploiting Revolution Slider and other plugins from known vulnerabilites.
  • Upgrade vulnerable versions of timthumb scripts.
  • Download Definition Updates to protect against new threats.

Important: This plugin has been downloaded more than 1 million times. There are more than 200 thousand active installs.

Version 4.17.69 | By Eli, Anti Malware Admin | Last Updated: August 9, 2018 | Compatible up to 4.9.8


Beginner To Intermediate WordPress Security Plugins



Google Apps Login

Simple secure login and user management for WordPress through your Google Apps domain (uses secure OAuth2, and MFA if enabled).

Version 3.2 | By danlester | Last Updated: May 12, 2018 | Compatible up to 4.9.8


Google Authenticator

Google Authenticator for your WordPress blog.

You can read and follow the instructions in my tutorial Google Authenticator Security WordPress

Ian Dunn has developed an additional plugin Google Authenticator Encourage User Activation that compliments this already great plugin. This plugin allows you to encourage or force users to implement Google Authenticator.

Version 0.48 | By Henrik Schack | Last Updated: April 28, 2016 Compatible up to 4.7.6


This list will change from time to time and it will grow with more plugins added. Please keep coming back to review the changes and additions.

If you have a questions please let me know


Best WordPress Plugins For Blogs List:

Manuel Ballesta Ruiz is a web developer, Blogger and WordPress Enthusiast.

 Leave a Reply

You may use these HTML tags and attributes: <a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <s> <strike> <strong>



The following GDPR rules must be read and accepted:
This form collects your name, email and content so that we can keep track of the comments placed on the website. For more info check our privacy policy where you will get more info on where, how and why we store your data.