Disable WordPress XMLRPC.PHP - Common Brute Force Hacker Exploit | WP Learning Lab

Disable WordPress XMLRPC.PHP - Common Brute Force Hacker Exploit | WP Learning Lab

21,576 Просмотров

Ссылки и html тэги не поддерживаются


Комментарии:

@BeyondTshirts
@BeyondTshirts - 31.05.2015 00:49

Cool!  Thanks!

Ответить
@OnlinebijobberDktue
@OnlinebijobberDktue - 28.06.2015 10:38

Didn't work. The hacker does still go to the url (/xmlrpc.php) like 10 times a sec.

Ответить
@JacopoSergioCardia
@JacopoSergioCardia - 26.10.2015 19:50

Hi i find your tutorial very useful for my studies but i need more help on a php file can you help me?

Ответить
@kreaturesden4465
@kreaturesden4465 - 26.11.2015 07:59

So does this work or not? How can I test if its working correctly? I've done exactly as you've instructed in this video.. however I'm concerned others in your comment section are saying it doesn't work.

Ответить
@rodrigocaugusto
@rodrigocaugusto - 17.01.2016 13:39

Hello, when I insert the code in my .htaccess 500 error appears on my website. you can tell why? thank you

Ответить
@infoDecor101
@infoDecor101 - 06.06.2016 13:45

Have a important question :

Previosly, i have added "Wp config.php " code , into htaccess file ,
do we have to post it right below the previous codes ? or new htaccess file ?

Ответить
@MrFelipeowen
@MrFelipeowen - 18.08.2016 17:14

On WP 4.5+ this file is called xmlrpc.php. At least that's what it is on my installs.

Ответить
@MagaaloNet
@MagaaloNet - 31.08.2016 12:44

i don't need to Disable Word Press XMLRPC.PHP....i just delete XMLRPC.PHP file from word press simple

Ответить
@bharatk6790
@bharatk6790 - 23.02.2017 11:41

My site is down and it's showing this error "The server encountered an internal error or misconfiguration and was unable to complete your request."

Ответить
@amipeter6769
@amipeter6769 - 24.04.2017 12:36

You are Just awesome... You are helping so many novice WordPress user's like myself to protect their site from hacker.Thank you Sir and Respect.

Ответить
@FameFanTV
@FameFanTV - 26.06.2017 23:45

the coding dosent work man it gives an error in the server !!!

Ответить
@tangodigitalsystems
@tangodigitalsystems - 05.03.2018 20:28

it does helped me today, and I subscribed immediately and turned on the post notification, I never knew my ass was on fire since until today I saw the xml-rpc.php in my source code and tested it and it was left on, I forgot to get rid of it when I install SEO plugin.

Ответить
@adikarama4161
@adikarama4161 - 30.05.2018 12:18

should I delete the XMLRPC.PHP file?

Ответить
@michaela5586
@michaela5586 - 23.12.2018 18:53

So many Russian bot attacks me.

Ответить
@optionbinarie
@optionbinarie - 24.12.2018 21:30

Great video... I have a slightly different problem. When I access my website with www it loads fine but when I use the version without www I get an error that says : XML-RPC server accepts POST requests only.

Any idea how to fix this? I have searched for hours but I can't find a solution

Ответить
@imranhaa
@imranhaa - 06.01.2019 13:58

Hi I wanted to know if this will work for my issue.
Some people can access my website, some people can't and it comes up with the message post request message.
If I do this, will it work? I've only just launched my business and this is driving me crazy!

Ответить
@tinapetrovicz9741
@tinapetrovicz9741 - 26.03.2019 01:19

Thank you! Super easy fix. Way better than banning IP's or hosts trying to hack.

Ответить
@DanZL1
@DanZL1 - 20.04.2019 09:09

Does it make a difference in which directory the htaccess files exists? Mine is not in the root directory where your is but in local host. Should I move it?

Ответить
@richardgenck2692
@richardgenck2692 - 13.08.2019 23:47

Can I just delete the file?

Ответить
@nickaddams3139
@nickaddams3139 - 05.10.2019 23:41

i can u help me... this is my wp site darkanimes. com and this one is clone 24pinbahis. com and there are alot of clones in google.. i tried to desable xmlprc but nothing... can u help me

Ответить
@comparetrainer6526
@comparetrainer6526 - 15.10.2019 11:32

I tried this code but it stops my login to wordpress

Ответить
@mrigankabarooah4163
@mrigankabarooah4163 - 18.05.2020 21:05

How do i enable it for jetpack publicize?

Ответить
@nofood1
@nofood1 - 15.06.2020 17:24

nginx tutorial please

Ответить
@smorfnimda
@smorfnimda - 05.07.2020 15:03

I just blocked it using Wordfence

Ответить
@cgsouq3dmodels
@cgsouq3dmodels - 06.08.2020 13:26

Dear you have amazing skills and i learn alot from your videos, can you please make a video on "WP Cerber Security" thanks

Ответить
@andrewmartin8565
@andrewmartin8565 - 26.10.2020 19:44

Very good. Thank you.

Ответить
@hermesmercuriustrismegistu4841
@hermesmercuriustrismegistu4841 - 31.05.2021 08:16

I tried the method of htacess and that of including a filter in functions.php of the theme and the plug-in that disable xmlrpc nothing is working!! Every time i put website_address/xmlrpc.php I get the message “XML-RPC server accepts POST requests only” why nothing is taking effect. Even I installed wordfence.

Ответить
@Talongeek_Consult
@Talongeek_Consult - 19.08.2021 17:21

Most of the wordpress site you run this on, when scan with OWASP ZAP scanner it still show xml-rpc vulnerability. WHY?

Ответить
@iSohaibKhan
@iSohaibKhan - 08.11.2022 21:00

What if we're using nginx server? The code would still work or we have to write other line of codes according to the server selection?

Ответить
@jareda8943
@jareda8943 - 24.02.2023 18:46

just delete xmlrpc.php, problem solved

Ответить
@caglargulucan
@caglargulucan - 22.04.2023 14:17

Thank you!

Ответить