Linux 软件免费装
Banner图

BitFire Security - Firewall, Malware Scanner, Bot Blocker, Login Protection

开发者 BitSlip6
LLC
Cory Marsh
更新时间 2026年9月25日 02:02
捐献地址: 去捐款
PHP版本: 7.4 及以上
WordPress版本: 7.1.1
版权: AGPLv3 or later
版权网址: 版权信息

标签

security firewall malware scanner bot blocker waf

下载

4.4.18 4.4.12 4.0.10 4.0.6 4.1.15 3.9.8 4.4.17 3.0.9 3.7.6 4.1.9 4.7.3 4.1.4 4.4.19 4.1.12 2.3.3 3.7.4 3.7.2 4.1.6 4.4.11 4.1.0 4.4.15 4.4.13 4.5.0 2.0.9 4.0.1 4.1.8 4.6.1 3.9.1 3.9.13 4.7.0 4.1.5 4.7.2 5.0.7 3.6.2 4.8.1 5.0.6 5.1.0 5.1.2 5.1.3 5.1.4 5.1.5 2.0.1 3.9.6 4.1.2 4.4.14 5.1.1 4.1.13 5.2.0 4.8.2 5.2.1 4.0.4 4.0.5 4.1.14 5.2.2 5.2.3 5.2.4

详情介绍:

Block malicious requests. Find suspicious files. Know what is happening. Your WordPress site can look normal while bots probe for weak passwords, exposed files, and vulnerable plugins. BitFire Free gives you a web application firewall, bot blocking, login protection, and manual malware scanning in one WordPress dashboard. See what reaches your site, review what BitFire blocks, and investigate suspicious files without switching between tools. Start with BitFire Free: install the plugin, follow the setup guide, and run your first malware scan. No credit card required. See BitFire in action in 2 minutes Take a quick tour of request filtering and the additional runtime protection available with Pro. https://youtu.be/dSnlE_xzuRg Useful protection starts with Free A web application firewall Inspect incoming requests for malicious input, including SQL-injection attempts. Review blocked requests and traffic exceptions from your dashboard. You do not need Pro to use the WAF. Bot blocking that looks beyond the browser name Set policies for crawlers, scanners, and other automated visitors. BitFire uses browser verification, network information, and bot reputation to help distinguish legitimate traffic from unwanted automation. A bot claiming to be Googlebot is not the same as a verified Google crawler. Protection for your WordPress login Help block automated login abuse and brute-force attempts. Review suspicious login traffic alongside other requests to your site. Malware scanning with evidence you can review Find suspicious code and unexpected file changes with a manual malware scan. Compare findings with known-good versions and see the evidence behind each alert, so you can decide what to allow, repair, or remove. AI assistance for suspicious findings Free includes 12 AI analysis credits for the lifetime of the domain. Use them to help assess suspicious code and understand why it was flagged. Pro includes an expanded allowance of 1,000 credits. Traffic visibility from your dashboard Search recorded requests by URL, IP address, browser, time, or response code. See allowed and blocked activity, then review the decision alongside the request details. Stay in control of what gets blocked See what BitFire blocked and why, right from your dashboard. Approve legitimate requests and manage exceptions without digging through server logs. Your traffic, your policies, your decisions - with the evidence in front of you. Get started with BitFire A site can look healthy while an attacker finds a way in An attacker does not need to change your homepage to cause damage. A vulnerable plugin can become a route to a hidden administrator account, a malicious PHP file, or code that restores an infection after cleanup. Watch: How hackers attack your site without you knowing 2 minutes See why a normal-looking website is not proof that everything behind it is safe. https://youtu.be/KxuX1rm4KUM The firewall inspects incoming requests. Pro adds protection against unauthorized file changes and administrator access, plus tools to investigate what an attacker may have left behind. Go deeper with BitFire Pro Keep the firewall and scanning tools in Free. Upgrade to put protection ahead of WordPress, block unauthorized actions inside your site, and hunt down hidden threats. Always-On Protection: put security first BitFire Pro loads before WordPress, bringing firewall inspection to PHP requests that bypass the normal plugin loading process. Your security starts earlier, giving attacks another barrier to cross. Runtime protection: stop unauthorized operations, not just suspicious requests A request can look harmless while exploiting a vulnerable plugin. Runtime Application Self-Protection (RASP) checks what that request is authorized to do inside your site. BitFire Pro can block: RASP targets the unauthorized action, not just a known attack pattern. That means a new exploit can be stopped when it attempts a protected operation, without waiting for a rule written for that specific vulnerability. Explore runtime protection Threat Hunter: find what brings malware back Deleting an infected file may not remove the mechanism that created it. Threat Hunter brings six investigation areas into one WordPress workspace: Connect suspicious findings to the mechanisms behind them, then take action from one investigation workspace. See how Threat Hunter investigates hidden persistence More scanning capacity Pro adds scheduled malware scanning and 1,000 AI malware analysis credits. Scan on a schedule, investigate more findings, and spend less time deciphering suspicious code. Choose your next step Want to see what is happening on your site? Start with BitFire Free. Complete setup, run a malware scan, and review the traffic reaching WordPress. Need Always-On Protection, RASP, or Threat Hunter? View current Pro pricing and multi-site discounts. Want help with deployment or ongoing tuning? Choose self-managed Pro or add paid Managed Protection or Priority Support for hands-on help. Find the right support option. Questions before installing? Visit the WordPress support forum or talk to the BitFire team.

安装:

  1. Install BitFire from the WordPress plugin directory, or upload the plugin files to /wp-content/plugins/bitfire/.
  2. Activate BitFire through the Plugins screen in WordPress. (this can take up to several minutes for the IP database to download)
  3. Open BitFire in your admin sidebar and follow the setup guide.
  4. Run your first malware scan and explore your traffic dashboard.
Read the setup guide and hosting requirements, including how to enable Pro Always-On Protection. Need a hand? Talk to the BitFire team.

屏幕截图:

  • Control bot access: review crawler policies and decide which automated visitors should reach your site.
  • Investigate suspicious files: compare scan findings with known-good files before deciding what to allow, repair, or remove.
  • Find the request that matters: filter traffic by time, browser, URL, IP address, or response code.
  • Review suspicious links: inspect database scan findings in posts and comments.
  • Keep up with security activity: review daily and weekly status emails.
  • Manage protection settings: review available controls from the WordPress dashboard.

升级注意事项:

5.0.0 Major release with AI-powered malware analysis, reduced Pro pricing, and improved scanner performance. Recommended for all users.

常见问题:

Is the web application firewall included in Free?

Yes. BitFire Free includes the web application firewall, bot blocking, login protection, manual malware scanning, traffic monitoring, and 12 AI analysis credits for the lifetime of the domain. Pro adds Always-On Protection, RASP, Threat Hunter, scheduled malware scanning, and an expanded allowance of 1,000 AI analysis credits.

What does Always-On Protection add?

Free includes the firewall as a WordPress plugin. Pro Always-On Protection loads BitFire before WordPress, extending inspection to PHP requests that bypass normal plugin loading. It puts your security layer earlier in the path of an attack.

What is the difference between a firewall and RASP?

The firewall evaluates incoming requests. RASP checks whether selected operations inside the application are authorized, such as writing PHP files or creating an administrator account. They are complementary layers. An exploit that is unfamiliar to request filtering may still be blocked when it attempts an unauthorized operation covered by RASP.

Can BitFire protect against an unknown vulnerability?

Yes. Pro runtime protection can block an unknown exploit when it attempts an unauthorized PHP file write, administrator privilege change, or administrator impersonation. It checks authorization rather than waiting for a signature that identifies the specific exploit.

Can I control what gets blocked?

Yes. Review blocked requests in your dashboard, see why they were flagged, and approve legitimate traffic. Manage exceptions for your forms, store, and integrations from the same place you investigate suspicious activity.

Does BitFire block legitimate search-engine crawlers?

BitFire provides configurable bot policies. You can allow a bot, authenticate it using source-network information, or block it. Review your crawler policies during setup so the search engines and services your site relies on have the access they need.

Can I use BitFire with Cloudflare?

Yes. Keep your CDN and add protection inside WordPress. Pro RASP adds checks on unauthorized file writes and administrator changes, complementing the filtering at your site's edge.

Can BitFire help investigate an infected site?

Start with a malware scan to find suspicious files. Then use Pro Threat Hunter to investigate what could bring the infection back: scheduled tasks, hidden administrator access, database content, startup files, and background processes. Need expert help? Talk to BitFire about cleanup and incident response.

How does AI malware analysis work?

Submit suspicious code to BitFire's AI analysis service for help understanding what it does and why it was flagged. Use the assessment alongside scan evidence to decide what to allow, repair, or remove. Free includes 12 AI analysis credits for the lifetime of the domain. Pro includes 1,000 credits. See the malware scanning guide for workflow and usage details.

How much does Pro cost?

Pro is billed annually, with discounts for multiple sites. Optional paid Managed Protection and Priority Support packages add hands-on help. Find your plan and current pricing.

Where can I get help?

Use the WordPress support forum or the BitFire support documentation. For deployment assistance, managed protection, or questions about your hosting environment, contact the BitFire team.

更新日志:

5.2.4 5.2.3 5.2.1 5.1.5 5.1.4 5.1.3 5.1.1 5.1.0 5.0.9 5.0.0 4.8.3 4.8.2 4.8.0 4.7.4 4.7.3 4.7.2 4.7.0 4.6.1 4.6 4.5 4.4.9 4.0.1