| 开发者 |
BitSlip6
LLC |
|---|---|
| 更新时间 | 2025年9月22日 07:43 |
| 捐献地址: | 去捐款 |
| PHP版本: | 7.4 及以上 |
| WordPress版本: | 6.8.2 |
| 版权: | AGPLv3 or later |
| 版权网址: | 版权信息 |
“Unlike traditional firewalls that allow everything by default and react to known threats, BitFire only allows verified traffic - stopping new and unknown attacks instantly.”
= Will this slow down my site? =\ No — BitFire is built for speed. It adds less than 2ms of overhead per request and uses optimized binary logging. = Do I need to configure anything? =\ BitFire works out of the box with default settings. Advanced users can fine-tune rules and view deep request logs. = Can I use this with a CDN or other firewall? =\ Yes — BitFire recommends running alongside CDNs like Cloudflare. It is not recommended to run multiple firewall products at the same time, but they should be compatible. Do not use always-on-mode if running with another firewall as this can create conflicts. = Is there a free version? =\ Yes! The plugin on WordPress.org includes bot protection features and traffic analysis. = How do I upgrade to Pro? =\ Visit bitfire.io/pricing to compare features and purchase a license. Pro unlocks RASP, WAF, and advanced traffic logging. BitFire free includes our real-time event log, A+ rated security headers, malware scanner, and complete bot blocking which blocks 99% of all Internet threats. PRO includes our Runtime Application Self Protection (RASP) firewall to prevent vulnerable plugins and themes from executing on your site along with our A+ rated WAF.
BitFire has a 100% track record for protecting against every critical 0-day WordPress security vulnerability since 2022 with 0 new signatures required.
Great question. Notice how much extra other plugins charge you to clean up malware and how much of their product is focused on finding malware on your system? They don't do a great job of keeping malware off your site, and then charge you extra when their security fails.
complete WAF & RASP protection is $99.00 / year.
That's an excellent question. The majority of popular security plugins create custom signatures for each WordPress plugin vulnerability as they are publicly disclosed. With over 10,000 known WordPress security vulnerabilities and less than 200 signatures, they miss blocking a lot of hacks. They are also unable to block the most common security flaws (access control errors) for anything they do not have a pre-built signature for. To make the situation more difficult, they delay these rules by up to a month for non-paying customers.
Our unique software keeps track of every 3rd party domain your web page uses (Facebook, Google, JavaScript APIS, themes, etc.). After several weeks of learning, CSP security headers are sent to visitors instructing their browsers to only use or redirect to your approved domain list.
BitFire includes outstanding XSS protection, including HTTP headers and content filtering for persistent, reflected, and DOM-based XSS attacks.
Yes. BitFire has advanced SQL parsing similar to MySQL syntax parsing and can understand SQL queries regardless of encoding, injected comments, and other evasion techniques.
If you use WordFence, you should only use the paid version. WordFence has a team monitoring emerging WordPress vulnerabilities and writing custom rules to block specific exploits. They are very good at it and run a great blog on their work. Paying customers receive these virtual patches as soon as they are available. Free customers receive the patches 30 days later. If your website is vulnerable, it is almost guaranteed to be hacked before the patch is available to free customers. Don't leave your site at risk.
Yes, BitFire RASP offers a seamless integration process tailored for WordPress. The setup is user-friendly, and our support team is always ready to assist.
BitFire RASP is the only RASP firewall available for WordPress. It's crafted to provide real-time protection by deeply inspecting your site's activity, ensuring comprehensive security without compromising performance.
BitFire's primary feature is bot blocking which is 100% functional in the free version. 99% of WordPress attacks are from automated tools scanning every domain and IP address for known vulnerabilities. BitFire verifies human web browsers with a JavaScript challenge similar to Cloudflare but over 50 times faster (1/10 second VS 6 seconds). BitFire also includes a list of over 80 search engines and SEO tools that are network verified to ensure only valid bot traffic reaches your site.
You can use the WordPress support form or visit our website to access our official documentation, which includes in-depth descriptions of security features, common solutions, and comprehensive help. Our dedicated support team is also available to assist you. You can reach out through our support channels, and we'll promptly address any questions or concerns you have.