JavaScript is disabled. For a better experience, please enable JavaScript in your browser before proceeding.
You are using an out of date browser. It may not display this or other websites correctly.
You should upgrade or use an
alternative browser .
Wordfence Security Premium
8.0.5 NULLED
7.11.3 – FEBRUARY 15, 2024
Fix: Fixed an issue with sites containing invalid Wordfence Central site data where they could throw an error when viewing Wordfence pages
7.11.2 – FEBRUARY 14, 2024
Improvement: Enhanced the vulnerability scan to check and alert for WordPress core vulnerabilities and to adjust the severity of the scan result based on findings or available updates
Improvement: Updated the bundled GeoIP database
Improvement: Increased compatibility of brute force protection with plugins that override the normal login flow and omit traditional hooks
Change: Adjusted the behavior of automatic quick scans to schedule themselves further away from full scans
Fix: Added detection for a site being linked to a non-matching Wordfence Central record (e.g., when cloning the database to a staging site)
Fix: Streamlined the license and terms of use installation flow to avoid unnecessary prompting
Fix: Fixed an issue where user profiles with a selected locale different from the site itself could end up loading the site’s locale instead
7.11.0 – NOVEMBER 28, 2023
Improvement: Added new functionality for trusted proxy presets to support proxies such as Amazon CloudFront, Ezoic, and Quic.cloud
Improvement: WAF rule and malware signature updates are now signed with SHA-256 as well for hosts that no longer build SHA1 support
Improvement: Updated the bundled trusted CA certificates
Change: The WAF will no longer attempt to fetch rule or blocklist updates when run via WP-CLI
Fix: Removed uses of SQL_CALC_FOUND_ROWS, which is deprecated as of MySQL 8.0.17
Fix: Fixed an issue where final scan summary counts in some instances were not sent to Central
Fix: Fixed a deprecation notice for get_class in PHP 8.3.0
Fix: Corrected an output error in the connectivity section of Diagnostics in text mode
7.10.7 – NOVEMBER 6, 2023
Fix: Compatibility fix for WordPress 6.4 on the login page styling
7.10.6 – OCTOBER 30, 2023
Fix: Addressed an issue with multisite installations when the wp_options tables had different encodings/collations
7.10.5 – OCTOBER 23, 2023
Improvement: Updated the bundled GeoIP database
Improvement: Added detection for Cloudflare reverse proxies blocking callbacks to the site
Change: Files are no longer excluded from future scans if a previous scan stopped during their processing
Fix: Added handling for the pending WordPress 6.4 change that removes $wpdb->use_mysqli
Fix: The WAF MySQLi storage engine will now work correctly when either DB_COLLATE or DB_CHARSET are not defined
Fix: Added additional error handling to Central calls to better handle request failures or conflicts
Fix: Addressed a warning that would occur if a non-repo plugin update hook did not provide a last updated date
Fix: Fixed an error in PHP 8 that could occur if the time correction offset was not numeric
Fix: 2FA AJAX calls now use an absolute path rather than a full URL to avoid CORS issues on sites that do not canonicalize www and non-www requests
Fix: Addressed a race condition where multiple concurrent hits on multisite could trigger overlapping role sync tasks
Fix: Improved performance when viewing the user list on large multisites
Fix: Fixed a UI bug where an invalid code on 2FA activation would leave the activate button disabled
Fix: Reverted a change on error modals to bring back the additional close button for better accessibility
7.10.4 – SEPTEMBER 25, 2023
Improvement: “Admin created outside of WordPress” scan results may now be reviewed and approved
Improvement: The WAF storage engine may now be specified by setting the environmental variable “WFWAF_STORAGE_ENGINE”
Improvement: Detect when a plugin or theme with a custom update handler is broken and blocking update version checks
Change: Deprecated support for WordPress versions lower than 4.7.0
Change: Exclude parse errors of a damaged compiled rules file from reporting
Fix: Suppress PHP notices related to rule loading when running WP-CLI
Fix: Fixed an issue with the scan monitor cron that could leave it running unnecessarily
7.10.3 – JULY 31, 2023
Improvement: Updated GeoIP database
Fix: Added missing text domain to translation function call
Fix: Corrected inconsistent styling of switch controls
Change: Made MySQLi storage engine the default for Flywheel hosted sites
7.10.0 – JUNE 21, 2023
Improvement: Added translation support for strings from login security plugin
Improvement: Added translator notes regarding word order and hidden text
Improvement: Added translation support for additional strings
Improvement: Prevented scans from failing if unreadable directories are encountered
Improvement: Added help link to IPv4 scan option
Improvement: Updated scan result text to clarify meaning of plugins removed from wordpress.org
Improvement: Made “Increased Attack Rate” emails actionable
Improvement: Updated GeoIP database
Improvement: Updated JavaScript libraries
Fix: Corrected IPv6 address expansion
Fix: Ensured long request payloads for malicious requests are recorded in live traffic
Fix: Prevented “commands out of sync” database error messages when the database connection has failed
Fix: Prevented rare JSON encoding issues from breaking free license registration
Fix: Prevented PHP notice from being logged when request parameter is missing
Fix: Prevented deprecation warning in PHP 8.1
Change: Moved detection for old TimThumb files to malware signature
Change: Moved translation file from .po to .pot
Change: Renamed “Macedonia” to “North Macedonia, Republic of”