Linux 软件免费装

Forbid Pwned Passwords

开发者 heyitsmikeyv
更新时间 2018年4月3日 23:46
捐献地址: 去捐款
PHP版本: 5.2.4 及以上
WordPress版本: 4.9
版权: GPLv3
版权网址: 版权信息

标签

security passwords breach pwned haveibeenpwned

下载

详情介绍:

Protect your WordPress site's users from using breached passwords! With Forbid Pwned Passwords, your site's users will receive errors if they attempt to set their password to one found in a known breach, forcing them to choose a new one. This can help to mitigate credential stuffing attacks against your site and its users. This plugin makes use of Troy Hunt's Have I Been Pwned? API. Using k-anonymity methods, only a partial SHA-1 hash of the password is sent to the API in order to produce a list of hashes for local testing. This means no passwords are ever sent to third parties. You can learn more about the Have I Been Pwned API here.

更新日志:

0.1.1