Limit Login Attempts Security - Login Security, 2FA, Firewall, Brute Force Prevention
WordPress login security with brute force protection, Two-factor authentication (2FA/MFA), firewall, IP/country blocking, and login monitoring
Limit Login Attempts Security ranks #33 among WordPress.org plugins with 1,000,000+ active installations, is #4 of 1,575 in the Authentication category, a 4.8/5 rating from 1,483 reviews, and was last updated Sep 10, 2026. Data from WordPress.org, refreshed twice daily — see methodology.
Next Milestone 2M
Unlock Exact Install Count
See the precise estimated active installs for this plugin, calculated from real-time ranking data.
- Exact install estimates within tiers
- Track install growth over time
- Milestone progress predictions
Rank Changes
Downloads Growth
Upgrade to Pro
Unlock 30-day, 90-day, and yearly download history charts with a Pro subscription.
Upgrade NowReviews & Ratings
Support Threads Overview
Security History
Source: WPVulnerability7 known vulnerabilities on record · 1 in the last 24 months · checked 1 week ago
-
CVE-2026-18356 · Fixed in v3.3.5
-
CVE-2023-6934 · Fixed in v2.25.27
-
CVE-2023-5525 · Fixed in v2.25.26
-
Fixed in v2.17.4
-
Fixed in v2.16.0
-
CVE-2020-35589 · Fixed in v2.17.4
-
CVE-2020-35590 · Fixed in v2.17.4
Track This Plugin
Get detailed analytics, keyword tracking, and position alerts delivered to your inbox.
Start Tracking FreePlugin Details
- Version
- 3.3.8
- Last Updated
- Sep 10, 2026
- Requires WP
- 5.0+
- Tested Up To
- 7.1
- PHP Version
- N/A
- Author
- WPChef
Support & Rating
- Rating
- ★ ★ ★ ★ ★ 4.8
- Reviews
- 1,483
- Support Threads
- 23
- Resolved
- 52%
Keywords
Upgrade to Pro
Unlock keyword rankings, search positions, and detailed analytics with a Pro subscription.
Upgrade NowSimilar Plugins
TL;DR
AI summary of the plugin's readmeThis plugin is for WordPress site owners, including WooCommerce store owners, membership sites, agencies, and multisite networks, who need to secure their login pages. It solves the problem of brute force, bot, and credential stuffing attacks by limiting failed login attempts, blocking malicious IPs, and adding two-factor authentication and firewall protection.
- Limit login attempts by IP/username
- Built-in two-factor authentication (2FA)
- Firewall and bot protection
- XML-RPC protection
- WooCommerce login protection
- IP and username safelist/denylist
- Failed login attempt logs
- Multisite support
Frequently Asked Questions
Common questions about Limit Login Attempts Security - Login Security, 2FA, Firewall, Brute Force Prevention