CyberPulse — Advanced Security & Bot Protection
🛡️ CyberPulse is a powerful security firewall with IP blocking and whitelist that protects your website 24/7.
Every request is analyzed in real time. Bots, scanners, and attackers are blocked instantly — before they reach your site. The plugin detects suspicious behavior, blocks AI data collectors like GPTBot and ClaudeBot, and stops brute force attacks with automatic IP bans.
Why Choose CyberPulse:
- ⚡ Real-Time Protection — monitors every request and blocks threats instantly
- 🍃 Lightweight & Fast — no database load, logs stored in files with automatic cleanup
- 🌍 10 Languages — Russian, English, German, French, Italian, Spanish, Portuguese, Chinese, Japanese, Korean
- 🚀 Easy to Use — install and protect your site in under a minute
- 🚫 No Ads — clean interface, no upsells in your admin panel
- 🔗 Works with Caching — compatible with WP Rocket, W3 Total Cache, LiteSpeed Cache, and CDN services
Protection Features:
- 🤖 AI Scraping Protection — blocks GPTBot, ClaudeBot, PerplexityBot, CCBot, and other AI data collectors
- 🔍 Multi-layer bot detection (11 independent checks: User-Agent, HTTP headers, Referer, Accept-Language, and more)
- 🔐 Brute force protection — automatic permanent /24 subnet ban after exceeding attempt limit
- 🌍 IP Management — block IPs, subnets (/24), whitelist trusted addresses, detect visitor country by IP
- 📁 WordPress system files hiding — blocks access to wp-config.php, .env, .git, and other sensitive files
- ⏱️ Rate Limiting — configurable request limits to prevent DDoS and aggressive scraping
- ✅ IP Whitelist — manual and automatic (server IP, search engines, administrator IPs)
- 🛡️ XSS attack protection — blocks cross-site scripting in requests
- 🔎 404 scanner detection — blocks vulnerability scanners by excessive 404 errors
- 🔒 URL Firewall — manual path blocking for specific endpoints
- 👤 User-Agent blacklist with statistics — block specific bots by User-Agent
- 🔗 Referer verification — blocks suspicious requests without proper Referer header
- 📊 Security score dashboard — hourly attack histogram, fix recommendations
- 📧 Email alerts on attack spikes
- 📝 Event audit log — track logins, settings changes, and plugin activity
- 🎨 Dark & Light theme for admin panel
External Services
This plugin connects to external services to provide specific functionality.
🌍 IP Geolocation * Service: ip-api.com * Purpose: Determines visitor country for statistics * Data sent: Visitor IP address * When: On each page visit from non-whitelisted IP * Terms of Service: https://ip-api.com/docs/legal * Privacy Policy: https://ip-api.com/docs/legal
🖥️ Server IP Detection * Service: https://www.ipify.org/ * Purpose: Detects the server’s public IP address * Data sent: None (only receives IP) * When: Once on plugin activation, then cached for 24 hours
🔒 Threat Intelligence * Service: blocklist.de, abuse.ch (FeodoTracker), Tor Project * Purpose: Checks visitor IPs against known malicious IP databases * Data sent: None (downloads threat lists locally) * When: Periodically (cached for 24 hours) * blocklist.de: https://www.blocklist.de/en/impressum.html * abuse.ch: https://abuse.ch/ * Tor Project: https://www.torproject.org/about/trademark/
🔄 WordPress.org API * Service: api.wordpress.org * Purpose: Checks for WordPress core updates (security score feature) * Data sent: None (standard WordPress update check) * When: On security score calculation * Privacy Policy: https://wordpress.org/about/privacy/
Source Code
The original unminified developer source code is available at: https://github.com/gataurus/cyberpulse
