How to Stop WordPress wp-login.php Brute Force Attack on a cPanel Server


  • what if client says it was him who was trying to login but had forgot the password and want us to enable login immediately?

    • The client should contact hosting provider to remove his IP from blocked list of CSF firewall.

      If the client is on dynamic IP, he can change his IP by restarting internet modem.
      If the client is using static IP, he should give his IP to hosting provider to add the IP in ignore list of CSF firewall.

