Title: Stop XML-RPC Attacks
Author: Pascal CESCATO
Published: <strong>26 avril 2019</strong>
Last modified: 23 mai 2026

---

Recherche d’extensions

![](https://ps.w.org/stop-xml-rpc-attacks/assets/banner-772x250.png?rev=2075425)

![](https://ps.w.org/stop-xml-rpc-attacks/assets/icon-256x256.png?rev=2075425)

# Stop XML-RPC Attacks

 Par [Pascal CESCATO](https://profiles.wordpress.org/pcescato/)

[Télécharger](https://downloads.wordpress.org/plugin/stop-xml-rpc-attacks.2.0.0.zip)

 * [Détails](https://fr.wordpress.org/plugins/stop-xml-rpc-attacks/#description)
 * [Avis](https://fr.wordpress.org/plugins/stop-xml-rpc-attacks/#reviews)
 *  [Installation](https://fr.wordpress.org/plugins/stop-xml-rpc-attacks/#installation)
 * [Développement](https://fr.wordpress.org/plugins/stop-xml-rpc-attacks/#developers)

 [Support](https://wordpress.org/support/plugin/stop-xml-rpc-attacks/)

## Description

Stop XML-RPC Attacks protects your WordPress site from XML-RPC brute force attacks,
DDoS attempts, and reconnaissance probes while maintaining compatibility with essential
services like Jetpack and WooCommerce.

**Features:**

 * Three security modes: Full Disable, Guest Disable, or Selective Blocking
 * Blocks dangerous methods: system.multicall, pingback.ping, and more
 * Compatible with Jetpack and WooCommerce
 * Optional user enumeration blocking
 * Attack logging for monitoring
 * Zero configuration required – works out of the box
 * Clean, intuitive admin interface

## Installation

 1. Upload the plugin files to `/wp-content/plugins/stop-xmlrpc-attacks/`
 2. Activate the plugin through the ‘Plugins’ menu in WordPress
 3. Go to Settings > XML-RPC Security to configure (optional)

## FAQ

### Will this break Jetpack?

No! The default « Selective Blocking » mode is fully compatible with Jetpack and
WooCommerce.

### What’s the difference between the security modes?

 * **Full Disable**: Maximum security, disables XML-RPC completely
 * **Guest Disable**: Balanced approach, only allows XML-RPC for logged-in users
 * **Selective Blocking**: Best compatibility, only blocks dangerous methods

### How do I enable logging?

Go to Settings > XML-RPC Security and check « Enable Attack Logging ». Logs will
be written to your debug.log file when WP_DEBUG is enabled.

## Avis

![](https://secure.gravatar.com/avatar/b959b03e0bfa53fc258b2f1e22cfa5bc921f1f28d8f4b5c75afb22617b4d166d?
s=60&d=retro&r=g)

### 󠀁[Great](https://wordpress.org/support/topic/great-14892/)󠁿

 [Anonymous User 16344271](https://profiles.wordpress.org/anonymized-16344271/) 
24 septembre 2022 1 réponse

Nice plugin thanks

![](https://secure.gravatar.com/avatar/9ed8d960761ad688c132f448fd549cda282c8868b0f9e9587ce5bed623d9694d?
s=60&d=retro&r=g)

### 󠀁[Works silently](https://wordpress.org/support/topic/works-silently-2/)󠁿

 [Sandip Roy](https://profiles.wordpress.org/sandip-roy/) 21 février 2022

It works silently in the background. This is the only security plugin I use, since
a W***fence update broke my site about a year back. Gives me a peace of mind.

![](https://secure.gravatar.com/avatar/c3e0ae8928317e1270c5e6559c165a762495a990ceac61b8b86557b0934d5b61?
s=60&d=retro&r=g)

### 󠀁[thanks](https://wordpress.org/support/topic/thanks-2200/)󠁿

 [baf285](https://profiles.wordpress.org/baf285/) 7 janvier 2022 1 réponse

all good, thanks

![](https://secure.gravatar.com/avatar/aa109f51d0a70582dee4ee0220fbdfc40a6f5a8e65d762a55a624cb6b0b67a27?
s=60&d=retro&r=g)

### 󠀁[Simplet et efficace](https://wordpress.org/support/topic/simplet-et-efficace/)󠁿

 [lesgitesdusomail](https://profiles.wordpress.org/lesgitesdusomail/) 17 octobre
2019 1 réponse

Tout est dans le titre. Reste à dire : Merci !

 [ Lire les 4 avis ](https://wordpress.org/support/plugin/stop-xml-rpc-attacks/reviews/)

## Contributeurs/contributrices & développeurs/développeuses

« Stop XML-RPC Attacks » est un logiciel libre. Les personnes suivantes ont contribué
à cette extension.

Contributeurs

 *   [ Pascal CESCATO ](https://profiles.wordpress.org/pcescato/)

“Stop XML-RPC Attacks” a été traduit dans 2 locales. Remerciez [l’équipe de traduction](https://translate.wordpress.org/projects/wp-plugins/stop-xml-rpc-attacks/contributors)
pour ses contributions.

[Traduisez « Stop XML-RPC Attacks » dans votre langue.](https://translate.wordpress.org/projects/wp-plugins/stop-xml-rpc-attacks)

### Le développement vous intéresse ?

[Parcourir le code](https://plugins.trac.wordpress.org/browser/stop-xml-rpc-attacks/),
consulter le [SVN dépôt](https://plugins.svn.wordpress.org/stop-xml-rpc-attacks/),
ou s’inscrire au [journal de développement](https://plugins.trac.wordpress.org/log/stop-xml-rpc-attacks/)
par [RSS](https://plugins.trac.wordpress.org/log/stop-xml-rpc-attacks/?limit=100&mode=stop_on_copy&format=rss).

## Journal des modifications

#### 2.0.0

 * Added admin interface with visual settings
 * Three security modes to choose from
 * Optional attack logging
 * Improved code quality and security
 * Full internationalization support

#### 1.0.1

 * Initial release
 * Basic blocking of dangerous methods

## Méta

 *  Version **2.0.0**
 *  Dernière mise à jour **il y a 1 mois**
 *  Installations actives **6 000+**
 *  Version de WordPress ** 6.0 ou plus **
 *  Testé jusqu’à **7.0**
 *  Version de PHP ** 7.4 ou plus **
 *  Langues
 * [English (US)](https://wordpress.org/plugins/stop-xml-rpc-attacks/), [French (France)](https://fr.wordpress.org/plugins/stop-xml-rpc-attacks/),
   et [German](https://de.wordpress.org/plugins/stop-xml-rpc-attacks/).
 *  [Traduisez la dans votre langue](https://translate.wordpress.org/projects/wp-plugins/stop-xml-rpc-attacks)
 * Étiquettes
 * [Brute Force](https://fr.wordpress.org/plugins/tags/brute-force/)[ddos](https://fr.wordpress.org/plugins/tags/ddos/)
   [jetpack](https://fr.wordpress.org/plugins/tags/jetpack/)[security](https://fr.wordpress.org/plugins/tags/security/)
   [xmlrpc](https://fr.wordpress.org/plugins/tags/xmlrpc/)
 *  [Vue avancée](https://fr.wordpress.org/plugins/stop-xml-rpc-attacks/advanced/)

## Évaluations

 5 sur 5 étoiles.

 *  [  4 avis à 5 étoiles     ](https://wordpress.org/support/plugin/stop-xml-rpc-attacks/reviews/?filter=5)
 *  [  0 avis à 4 étoile     ](https://wordpress.org/support/plugin/stop-xml-rpc-attacks/reviews/?filter=4)
 *  [  0 avis à 3 étoile     ](https://wordpress.org/support/plugin/stop-xml-rpc-attacks/reviews/?filter=3)
 *  [  0 avis à 2 étoile     ](https://wordpress.org/support/plugin/stop-xml-rpc-attacks/reviews/?filter=2)
 *  [  0 avis à 1 étoile     ](https://wordpress.org/support/plugin/stop-xml-rpc-attacks/reviews/?filter=1)

[Your review](https://wordpress.org/support/plugin/stop-xml-rpc-attacks/reviews/#new-post)

[Voir tous les avis](https://wordpress.org/support/plugin/stop-xml-rpc-attacks/reviews/)

## Contributeurs

 *   [ Pascal CESCATO ](https://profiles.wordpress.org/pcescato/)

## Support

Quelque chose à dire ? Besoin d’aide ?

 [Voir le forum de support](https://wordpress.org/support/plugin/stop-xml-rpc-attacks/)