Vulnerability Database

Wordpress Username Enumeration

Username enumeration allows an attacker to guess usernames, which may enable them to log in to the application. This attack is often performed in combination with brute force attacks.

Attackers can enumerate Wordpress usernames which can be subsequently used for password spraying and other types of brute force attacks.

Solution

Consider disabling username enumeration by using specialised security plugins.

Ultimate

Enterprise
  • All Tools, Services, and Plans
  • Suitable For Enterprises
  • Single Sign-On Integration, Single Tenant
  • Dedicated Support, Custom Integrations
  • Annual or Monthly, Fixed-cost Billing